Cisco Support Community
Community Member

RACL or VLAN Map - 4500

I am trying to decide what would be better and how to start. We have two Catalyst 4500 series switches and we need to restrict two VLANs from accessing specific internal networks and services but then still allow them to access the internet. Our first thought was to use VACL's but that is only for intra-VLAN but after some research we have discovered that is not what we need to restrict. I know how to build permit access to specific networks/host and services but that has an implecit deny IP any any at the end and I need to put a permit IP any any. Any idea's or suggestions and a brief sample of how I should start would be greatly appreciated.

Everyone's tags (2)
CreatePlease to create content