cancel
Showing results for 
Search instead for 
Did you mean: 

access-list on VE interface blocks traffic for whole VLAN

mielch_qwerty
New Contributor II
Hello all. I will be grateful for the help
I have applied ACL on a VE interface and it seems ACL was applied not only on VE but on physical interface too. Is it correct?
I have not found any info about it, except for "enable acl-per-port-per-vlan" but am not sure whether it is what i need.
Thank you.


13 REPLIES 13

Hello Mielch,

Ve 1 is mapped to vlan 1 above. so the ACL applies to the vlan 1 ports 1/1/1 & 1/1/2.

ok, thank you for help 🙂 that's a pity though, that this behavior is not mentioned in any documentation

mielch_qwerty
New Contributor II
Thanks to r/Brocade on reddit i have found an explanation.
There is routing code on ICX and ve interface is like a subinterface on a cisco router other than an interface vlan on a cisco switch. Thats why the ACL behavior on VE is so.