Example of an Extended ACL. Suppose that you want to implement these
policies on ports 1, 2, and 3:
A. Permit Telnet traffic from 10.10.10.44 inbound on port 1 to 10.10.20.78,
deny all other inbound IP traffic from network 10.10.10.0 (VLAN 10) to
10.10.20.0 (VLAN 20), and permit all other IP traffic from any source to
any destination. (See "A" in figure 9-15, below.)
B. Permit FTP traffic from IP address 10.10.20.100 on port 2 to 10.10.30.55.
Deny FTP traffic from other hosts on network10.10.20.0 to any destina
tion, but permit all other traffic.
10.10.10.0
10.10.20.0
10.10.30.0
Figure 9-15. Example of an Extended ACL
IPv4 Access Control Lists (ACLs)
Configuring and Assigning an ACL
2610 Switch
VLAN 10
1
A
10.10.10.1
VLAN 20
2
10.10.20.1
B
VLAN 30
3
10.10.30.1
9-49