Port ACL
Port ACLs are agnate to Router ACLs but are accurate on concrete interfaces and configured on Layer 2
interfaces on a switch. Anchorage ACL supports alone entering cartage filtering. Anchorage ACL can be configured as three type
access lists: standard, extended, and MAC-extended.
Processing of the Anchorage ACL is agnate to that of the Router ACLs; the about-face examines ACLs associated with
features configured on a accustomed interface and permits or denies packet forwarding based on packet-matching
criteria in the ACL.
When activated to a block port, the ACL filters cartage on all VLANs present on the block port. When activated to a
port with articulation VLAN, the ACL filters cartage on both abstracts and articulation VLANs.
The capital account with Anchorage ACL is that it can clarify IP cartage (using IP admission lists) and non-IP cartage (using MAC
access list). Both types of clarification can be achieved—that is, a Layer 2 interface can accept both an IP admission list
and a MAC admission account activated to it at the aforementioned time.
Note
Port ACLs are not accurate on EtherChannel interfaces.