I created the DHCP, Sub-Interfaces on Te0/0 Then created the ACLs, 100,101,102 for each Vlan to block each other Then applied the Interface Access Control to Te0/0 I am still able to ping between several of the Vlans. Is there something I am missing? |
Edited by Patrick at 2022-7-27 23:53 Dear sir, Sorry for the late replying. After viewing your description and configuration, I found that you set the wrong wildcard-mask of ACL. The wildcard-mask should be 0.0.0.127 according to the submask 255.255.255.128, and 0.0.0.63 for 255.255.255.192 in the same way. And It's recommended that using the inbound for the Extended ACL filter direction. Best regards, Patrick |
Patrick replied at 2022-7-27 11:53 Thank you, will give this a try. |
Mario replied at 2022-7-28 06:35 Hi, I have a similar scenario where ACLs are working as expected, blocking inter-VLAN routing to all sub-interface LANs. However, this time, I need to allow some devices on VLAN 10 (10.1.1.10) to communicate with VLAN 20 (20.1.1.10). For example, I have a service on VLAN 10 that needs to be accessed from VLAN 20. I have set up ACLs on both VLAN interfaces to permit traffic between these VLANs, but it doesn't seem to be working. Both VLANs are unable to communicate, although they can ping the gateway of each VLAN. I have attached an image for reference. Can you check and suggest what I might be missing? |
This site contains user submitted content, comments and opinions and is for informational purposes only. Ruijie may provide or recommend responses as a possible solution based on the information provided; every potential issue may involve several factors not detailed in the conversations captured in an electronic forum and Ruijie can therefore provide no guarantee as to the efficacy of any proposed solutions on the community forums. Ruijie disclaims any and all liability for the acts, omissions and conduct of any third parties in connection with or related to your use of the site. All postings and use of the content on this site are subject to the Ruijie Community Terms of Use.
More ways to get help: Visit Support Videos, call us via Service Hotline, Facebook or Live Chat.
©2000-2023 Ruijie Networks Co,Ltd