VACL access-lists

From: James Simons (ccie.jimmy@gmail.com)
Date: Sat Jun 03 2006 - 17:25:11 ART


hello all,

I was trying to identify all ip traffic on a lab and then filter it using a
vlan access-list (vacl). I used a mac access-list and listed the ether type
as 0x800. I noticed that the mac access-list wasn't identifying the
traffic. so I went back to using an extended ip access-list and it worked.

could someone please let me know what the difference in the follwoing two
access lists are? I would think they should both match all ip traffic.

mac access-list extended IP_1
 permit any any 0x800 0x0

ip access-list extended IP_2
 permit ip any any

thanks,

Jimmy



This archive was generated by hypermail 2.1.4 : Sat Jul 01 2006 - 07:57:31 ART