Saturday, March 30, 2019

Physical-based ACLs?

Say I have two physically separate networks that share a common subnet and I wish for a management PC to be able to talk to both networks on layer 2 but not for the two networks to combine. There would be no duplicate IPs and the networks would still function if connected.

What I'm thinking is some form of ACL that permits traffic to and from physical ports 1 and 2, and 2 and 3, but not 1 and 3.

Any ideas? Am I missing something obvious?



No comments:

Post a Comment