Statefull inspection

Mar 13, 2009 2 Replies

Hi All,



I have a Cisco 3750 with two VLANs defined on a single port (one for data and one for voice):



interface GigabitEthernetx/y switchport access vlan 5 switchport voice vlan 8



Is there a way to perform the stateful inspection on this port to isolate these two VLANs?



Thanks, AL


snipped-for-privacy@op.pl schrieb:

Why do you want statefull inspection here? A simple static ACL should do, what you want. You may attach the ACL to the VLAN interface, not the switchport.

L3 Switches can use ACL, but the Firewall feature set is only available in routers and ASA/PIX.

This is confusing.

The VLANS *are* isolated. That is what they do.

They can be connected by a router (possibly SVIs in the same device) and it is at that router that you would usually consider any filtering.

Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required