Cisco Systems 3750E Benutzerhandbuch

Seite von 1236
 
34-39
Catalyst 3750-E and 3560-E Switch Software Configuration Guide
OL-9775-02
Chapter 34      Configuring Network Security with ACLs
Using VLAN Maps with Router ACLs
Figure 34-7
Applying ACLs on Bridged Packets
ACLs and Routed Packets
 shows how ACLs are applied on routed packets. For routed packets, the ACLs are applied 
in this order:
1.
VLAN map for input VLAN
2.
Input router ACL
3.
Output router ACL
4.
VLAN map for output VLAN
Figure 34-8
Applying ACLs on Routed Packets
Frame
Fallback bridge
VLAN 10
Host A
(VLAN 10)
Packet
101358
VLAN 20
Host B
(VLAN 20)
VLAN 10
map
VLAN 20
map
Frame
Routing function
VLAN 10
Host A
(VLAN 10)
Packet
101359
VLAN 20
Host B
(VLAN 20)
VLAN 10
map
Input
router
ACL
Output
router
ACL
VLAN 20
map