Which two statements about port ACLs are true?

Which two statements about port ACLs are true? (Choose two.)

Which two statements about port ACLs are true? (Choose two.)

A.
Port ACLs are supported on physical interfaces and are configured on a Layer 2 interface on a
switch.

B.
Port ACLs support both outbound and inbound traffic filtering.

C.
When it is applied to trunk ports, the port ACL filters only native VLAN traffic.

D.
When it is applied to a port with voice VLAN, the port ACL filters both voice and data VLAN traffic.



Leave a Reply 3

Your email address will not be published. Required fields are marked *


Vadim

Vadim

These access lists are applied to switch ports and can be configured to operate in ingress or egress with regard to traffic flows

Ben

Ben

PACL not ACL!
PACL only apply the incoming traffic to the port, be physical or port channel

starts7777

starts7777

Port ACLs are similar to Router ACLs but are supported on physical interfaces and configured on Layer 2 interfaces on a switch. Port ACL supports only inbound traffic filtering. Port ACL can be configured as three type access lists: standard, extended, and MAC-extended.

Processing of the Port ACL is similar to that of the Router ACLs; the switch examines ACLs associated with features configured on a given interface and permits or denies packet forwarding based on packet-matching criteria in the ACL.

When applied to a trunk port, the ACL filters traffic on all VLANs present on the trunk port. When applied to a port with voice VLAN, the ACL filters traffic on both data and voice VLANs.

https://supportforums.cisco.com/discussion/13129931/port-acl-filters-voice-and-data-vlan