Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 
New Member

access to two ips in a vlan

HI all experts

1.   we have two vlans .and in vlan 50 ( we have servers ..these servers shouldnt accessed to outside world(no internet) and should be provided access to only two IPs of vlan 60 i.e ( & how to use access list and where to implement this.

interface Vlan50

description vlan for F&R

ip address


interface Vlan60

description vlan for HR&AD

ip address

2.     . vlan 50 should reach the gateway ip

Switch# sh ip route

Codes: C - connected, S - static, R - RIP, M - mobile,

       D - EIGRP, EX - EIGRP external, O - OSPF, IA - O

       N1 - OSPF NSSA external type 1, N2 - OSPF NSSA e

       E1 - OSPF external type 1, E2 - OSPF external ty

       i - IS-IS, su - IS-IS summary, L1 - IS-IS level-

       ia - IS-IS inter area, * - candidate default, U

       o - ODR, P - periodic downloaded static route

Gateway of last resort is to network is variably subnetted, 12 subnets, 2 ma

C is directly connected, Vlan50

C is directly connected, Vlan60

S* [1/0] via

thanks & regards



access to two ips in a vlan

Hi Srikanth,

It is simple, you need to define an extended accesslist and apply to the your servers vlan (vlan 50).

Like this you can add on if anything needs to be access from vlan50. But keep "deny ip any any" at the end as you dont want the server vlan access to internet.

ip access-list ext vlan50
permit ip any host
permit ip any host
deny ip any any

interface Vlan50
description vlan for F&R
ip address
ip access-group vlan50 in

Please rate the helpfull posts.

CreatePlease to create content