cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
529
Views
8
Helpful
4
Replies

acl

dkblee
Level 1
Level 1

hi! Is there any cisco tools that can ease management or replace acl within vlan? Can NAC do that? Pls advise. Thanks.

4 Replies 4

Farrukh Haroon
VIP Alumni
VIP Alumni

"replace acl within vlan"

can you please spell out more details about your requirement? Which device is this?

Regards

Farrukh

hi! Sorry some typo errors there.....what i meant is that, is there any tools or device that i can use to ease management or replace acl applied on different vlan interfaces? Can NAC achieve that?

Is there any tools that is more effective than acl to filter packet between my vlan interfaces at the 6509 core?

Thanks.

a firewall services module/ FWSM. they're very expensive though.

The problem with ACLs are that they are vulnerable to various attacks due to their 'near' stateless nature. Stateful firewalls/packet filters are therefore considered more secure. I would recommend an ASA/FWSM or at least an IOS router running an Advanced Security image (to utilize the zone-based firewall feature). There are free graphical tools provided by Cisco (SDM,ASDM etc.) that can help you manage your firewall rules graphically.

Regards

Farrukh

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: