then we need apply the access list to interface or vlan ,here is your second answer :
if you want apply it to one interface so you should change the layer 2 behavior to 3 ,i mean should do this :
and then assign an ip address :
ip address x.x.x.x x.x.x.x
here is the direction of your access list
ip access-group 100 in or out
by this way you can only assign your access list to one port,another way is to assign an ip address and access list to a SVI or a layer 3 vlan which contains one or two or more ports,i think the second way is better.
We are pleased to announce availability of Beta software for 16.6.3. 16.6.3 will be the second rebuild on the 16.6 release train targeted towards Catalyst 9500/9400/9300/3850/3650 switching platforms. We are looking for early feedback from custome...