Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

Ports/vlan w/o need for acl

On a port or vlan that doesn't need acl filtering is it more effecient to have nothing or a single permit ip any any?  I understand that there's a default implied deny ip any any to block anything not allowed in a proceeding permit statement  but I assume that only applies if an acl is assigned so I would think if you're going to just permit ip any any in an acl with out any denying before it i's better not to waste any processor time running packets through an acl filter since there's nothing to be rejected anyway.

1 ACCEPTED SOLUTION

Accepted Solutions
Green

Ports/vlan w/o need for acl

Hi Vini, if I interpret correctly, there is no need for an acess list as it just takes system resources for no need.

-Tom
Please mark answered for helpful posts

-Tom Please mark answered for helpful posts http://blogs.cisco.com/smallbusiness/
1 REPLY
Green

Ports/vlan w/o need for acl

Hi Vini, if I interpret correctly, there is no need for an acess list as it just takes system resources for no need.

-Tom
Please mark answered for helpful posts

-Tom Please mark answered for helpful posts http://blogs.cisco.com/smallbusiness/
278
Views
0
Helpful
1
Replies
CreatePlease to create content