Thursday, April 1, 2021

Cisco ISE - dACL IPv4 and IPv6 traffic

We are in the early stages of a Cisco ISE deployment, we are setting up Guest wired redirect/access using DACL. This functions perfectly in the IPv4 world. What we discovered today is that the DACL only covers IPv4 traffic, the IPv6 traffic is un-filtered. If we try and apply and IPv4 and IPv6 DACL, it fails to apply either. We are testing this on a 3850. Has anyone else had experiences with this? We don't route v6 traffic so disabling IPv6 on the switch comes to mind, but is this a good idea? any thoughts or experiences welcome.

Thanks!



No comments:

Post a Comment