PACLIVA-ACL and IP Fragmented
The port ACL to perform access control on the gates at level 2. PACLIVA are only applied to incoming traffic and is only supported in hardware and therefore no packets Forward in software (For example, the packets are CEF forwarding to using the Forward in hardware)
fragmented IP packets
In the case of ACL to be applied to the fragmented IP packets, the reasoning to follow is:
-fragmented packets do not contain information L4, L4 ACLs that are applied
An example of an ACL is L3:
access-list 101 deny ip any any
An example of an ACL L4 is:
access-list 101 deny ip any any eq 80
0 comments:
Post a Comment