<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Acl - Use port or vlan? in Switches, Hubs, and Modems</title>
    <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249023#M15192</link>
    <description>The source port-filter solution maybe it's good.&lt;BR /&gt;&lt;BR /&gt;Can i say:&lt;BR /&gt;&lt;BR /&gt;Port A1 connects port A2 and A3 and receives only from A2 and A3?&lt;BR /&gt;&lt;BR /&gt;Ports A2 and A3 can see all other ports</description>
    <pubDate>Fri, 08 Aug 2008 19:05:14 GMT</pubDate>
    <dc:creator>Angelo Pellegrinon</dc:creator>
    <dc:date>2008-08-08T19:05:14Z</dc:date>
    <item>
      <title>Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249015#M15184</link>
      <description>Hello.&lt;BR /&gt;I have an HP procurve 5400 and I need to use special acl for 3 pc groups.&lt;BR /&gt;&lt;BR /&gt;The pcs are in the SAME SUBNET ad I must have:&lt;BR /&gt;PC GROUP A: Allow speacking with PC GROUP B&lt;BR /&gt;PC GROUP B: Allow speacking with PC GROUP C&lt;BR /&gt;PC GROUP A: Block speacking with PC GROUP C&lt;BR /&gt;&lt;BR /&gt;Can i make 3 vlans and use static routing or special acl? Is it possible with SAME SUBNETS?&lt;BR /&gt;&lt;BR /&gt;How can i do it?&lt;BR /&gt;&lt;BR /&gt;Is there any other solution?&lt;BR /&gt;&lt;BR /&gt;Sorry for my English and thank's in advance&lt;BR /&gt;&lt;BR /&gt;Angelo</description>
      <pubDate>Fri, 08 Aug 2008 17:58:52 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249015#M15184</guid>
      <dc:creator>Angelo Pellegrinon</dc:creator>
      <dc:date>2008-08-08T17:58:52Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249016#M15185</link>
      <description>hi Angelo &lt;BR /&gt;&lt;BR /&gt;***Can i make 3 vlans and use static routing or special acl? Is it possible with SAME SUBNETS?&lt;BR /&gt;&lt;BR /&gt;no Angelo you don't create same subnet tree vlan it's impossible &lt;BR /&gt;&lt;BR /&gt;for running this operation two way &lt;BR /&gt;&lt;BR /&gt;way 1-assign statically each group pc ip address and attach acl on switch port(static)very bed.&lt;BR /&gt;&lt;BR /&gt;way 2-my advice you can use IDM you can create on IDM user base access list no need look port, no need static ip ,no need vlan very successfull&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;cenk</description>
      <pubDate>Fri, 08 Aug 2008 18:10:09 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249016#M15185</guid>
      <dc:creator>cenk sasmaztin</dc:creator>
      <dc:date>2008-08-08T18:10:09Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249017#M15186</link>
      <description>or each user group carry other subnet and you can sperate vlan your network &lt;BR /&gt;&lt;BR /&gt;in that case attach user group acl on vlan interface &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;cenk</description>
      <pubDate>Fri, 08 Aug 2008 18:12:12 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249017#M15186</guid>
      <dc:creator>cenk sasmaztin</dc:creator>
      <dc:date>2008-08-08T18:12:12Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249018#M15187</link>
      <description>I try to explain better what i have to do.&lt;BR /&gt;I have one Voip Server (GROUP A), this server uses a PRI over erthernet box (GROUP B) and a lot of VoIP telephones (GROUP C).&lt;BR /&gt;&lt;BR /&gt;A sees B&amp;amp;C, B sees A, C sees A&lt;BR /&gt;&lt;BR /&gt;I must optimize the traffic between A and B. Unfortunately i can't attach a new nic on he server (and dedicate a vlan for those ips.)&lt;BR /&gt;&lt;BR /&gt;There are no users and i cant' utilize vlan tagged packets (the PRI box is "stupid")</description>
      <pubDate>Fri, 08 Aug 2008 18:28:08 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249018#M15187</guid>
      <dc:creator>Angelo Pellegrinon</dc:creator>
      <dc:date>2008-08-08T18:28:08Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249019#M15188</link>
      <description>Maybe the acl on ports is the best solution?&lt;BR /&gt;&lt;BR /&gt;The server's ip is static, the pri box is static, only telephones ips are not static. Buy i wish to do something like:&lt;BR /&gt;&lt;BR /&gt;ip xxx.xxx.xxx.1(pri box) accepts only from xxx.xxx.xxx.200 and xxx.xxx.xxx.201 (voip servers)&lt;BR /&gt;&lt;BR /&gt;and&lt;BR /&gt;&lt;BR /&gt;ip xxx.xxx.xxx.1 sends ony to xxx.xxx.xxx.200 and xxx.xxx.xxx.201&lt;BR /&gt;&lt;BR /&gt;I must say that the box can only speak and only accept packets from/to the server. I don't whant the pri box to receive other network packets like broadcast..</description>
      <pubDate>Fri, 08 Aug 2008 18:32:57 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249019#M15188</guid>
      <dc:creator>Angelo Pellegrinon</dc:creator>
      <dc:date>2008-08-08T18:32:57Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249020#M15189</link>
      <description>A sees B&amp;amp;C, B sees A, C sees A******:D&lt;BR /&gt;&lt;BR /&gt;so B notsee c  all other group between connect&lt;BR /&gt;&lt;BR /&gt;is this true ?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;there fore you make create tree vlan &lt;BR /&gt;&lt;BR /&gt;and you can running routing between vlan&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;for example &lt;BR /&gt;&lt;BR /&gt;group A vlan 10 172.16.10.1/24&lt;BR /&gt;group B vlan 20 172.16.20.1/24&lt;BR /&gt;group C vlan 30 172.16.30.1/24&lt;BR /&gt;&lt;BR /&gt;and ip routing enable on switch &lt;BR /&gt;&lt;BR /&gt;now each vlan connect between (with routing)&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;you can create acl and assign vlan b and vlan c&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;cenk</description>
      <pubDate>Fri, 08 Aug 2008 18:50:19 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249020#M15189</guid>
      <dc:creator>cenk sasmaztin</dc:creator>
      <dc:date>2008-08-08T18:50:19Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249021#M15190</link>
      <description>or you can use source port filtering &lt;BR /&gt;&lt;BR /&gt;source port-filter very easy way for seperate switch port for example&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;coresw2(config)# filter source-port A1 drop A10-A20&lt;BR /&gt;&lt;BR /&gt;int A1 dont connect A10-A20 interface but connection all other interface &lt;BR /&gt;&lt;BR /&gt;very easy &lt;BR /&gt;&lt;BR /&gt;cenk</description>
      <pubDate>Fri, 08 Aug 2008 19:00:30 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249021#M15190</guid>
      <dc:creator>cenk sasmaztin</dc:creator>
      <dc:date>2008-08-08T19:00:30Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249022#M15191</link>
      <description>OK!&lt;BR /&gt;&lt;BR /&gt;My problem is that the voip servers, the phones and the pri box are in the same network.&lt;BR /&gt;&lt;BR /&gt;Is it possible if a put the pri box in other network?&lt;BR /&gt;&lt;BR /&gt;Server and phone in vlan 100, pri box in vlan 200.&lt;BR /&gt;&lt;BR /&gt;Ogni server ips in vlan 100 can see vlan 200 and vice versa</description>
      <pubDate>Fri, 08 Aug 2008 19:02:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249022#M15191</guid>
      <dc:creator>Angelo Pellegrinon</dc:creator>
      <dc:date>2008-08-08T19:02:36Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249023#M15192</link>
      <description>The source port-filter solution maybe it's good.&lt;BR /&gt;&lt;BR /&gt;Can i say:&lt;BR /&gt;&lt;BR /&gt;Port A1 connects port A2 and A3 and receives only from A2 and A3?&lt;BR /&gt;&lt;BR /&gt;Ports A2 and A3 can see all other ports</description>
      <pubDate>Fri, 08 Aug 2008 19:05:14 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249023#M15192</guid>
      <dc:creator>Angelo Pellegrinon</dc:creator>
      <dc:date>2008-08-08T19:05:14Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249024#M15193</link>
      <description>vlan sperate only L2 broadcast domain &lt;BR /&gt;you can ip routing command on switch running routing between vlan &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;for example &lt;BR /&gt;&lt;BR /&gt;vlan 10 ip address 172.16.10.1/24&lt;BR /&gt;&lt;BR /&gt;vlan 10 member pc &lt;BR /&gt;ip address 172.16.10.10/24&lt;BR /&gt;dg:172.16.10.1&lt;BR /&gt;&lt;BR /&gt;vlan 20 ip address 172.16.20.1/24&lt;BR /&gt;vlan 20 member pc &lt;BR /&gt;ip adress 172.16.20.10/24&lt;BR /&gt;dg:172.16.20.1&lt;BR /&gt;&lt;BR /&gt;you can ping test between pc you can see ping ok.&lt;BR /&gt;vlan sperate only L2 you can want connect different vlan's pc enable ip routing on switch and assign vlan interface ip address &lt;BR /&gt;pc default gateway address &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;cenk &lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 08 Aug 2008 19:11:49 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249024#M15193</guid>
      <dc:creator>cenk sasmaztin</dc:creator>
      <dc:date>2008-08-08T19:11:49Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249025#M15194</link>
      <description>magic command :)&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;coresw2(config)# filter source-port A1 drop A4-A24,B1-B24......&lt;BR /&gt;&lt;BR /&gt;a1 connect only A2 and A3 interface &lt;BR /&gt;&lt;BR /&gt;A2 and A3 interface connect all other interface&lt;BR /&gt;&lt;BR /&gt;cenk</description>
      <pubDate>Fri, 08 Aug 2008 19:18:32 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249025#M15194</guid>
      <dc:creator>cenk sasmaztin</dc:creator>
      <dc:date>2008-08-08T19:18:32Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249026#M15195</link>
      <description>Angelo can you test now ?</description>
      <pubDate>Fri, 08 Aug 2008 19:29:30 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249026#M15195</guid>
      <dc:creator>cenk sasmaztin</dc:creator>
      <dc:date>2008-08-08T19:29:30Z</dc:date>
    </item>
    <item>
      <title>Re: Acl - Use port or vlan?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249027#M15196</link>
      <description>Hi!&lt;BR /&gt;&lt;BR /&gt;I'm going to try it on Monday and then i'll tell you! &lt;BR /&gt;&lt;BR /&gt;Thanks in advance!&lt;BR /&gt;Angelo</description>
      <pubDate>Sat, 09 Aug 2008 09:34:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/acl-use-port-or-vlan/m-p/4249027#M15196</guid>
      <dc:creator>Angelo Pellegrinon</dc:creator>
      <dc:date>2008-08-09T09:34:37Z</dc:date>
    </item>
  </channel>
</rss>

