Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

acl

hi! Is there any cisco tools that can ease management or replace acl within vlan? Can NAC do that? Pls advise. Thanks.

4 REPLIES

Re: acl

"replace acl within vlan"

can you please spell out more details about your requirement? Which device is this?

Regards

Farrukh

New Member

Re: acl

hi! Sorry some typo errors there.....what i meant is that, is there any tools or device that i can use to ease management or replace acl applied on different vlan interfaces? Can NAC achieve that?

Is there any tools that is more effective than acl to filter packet between my vlan interfaces at the 6509 core?

Thanks.

Gold

Re: acl

a firewall services module/ FWSM. they're very expensive though.

Re: acl

The problem with ACLs are that they are vulnerable to various attacks due to their 'near' stateless nature. Stateful firewalls/packet filters are therefore considered more secure. I would recommend an ASA/FWSM or at least an IOS router running an Advanced Security image (to utilize the zone-based firewall feature). There are free graphical tools provided by Cisco (SDM,ASDM etc.) that can help you manage your firewall rules graphically.

Regards

Farrukh

115
Views
8
Helpful
4
Replies