Thursday, September 17, 2020

Help with ACL

Hey guys,

I have an old FTOS 8.3 Dell switch. I need to isolate a workstation on that switch.

So the network is 192.168.255.0/24 The workstation is 192.168.255.35 The Storage is 192.168.255.34 The firewall/router is 192.168.255.1

There is a bunch of other stuff on the network. I want to block the workstation from everything except the storage and internet.

I can create a rule on the firewall to block the workstation from access to other systems but that’s only layer 3.

I guess an ACL is also layer 3 but works on the switch so it should prevent the workstation from seeing out, except to the storage and the router.

Would I use a standard ACL for this or an extended ACL?

Say for example the workstation is on gigabit Ethernet port 34. What would the command look like and would I apply it inbound or outbound?



No comments:

Post a Comment