Types of ACLs Supported
Supported Interfaces
Application
• IPv4 ACLs
• IPv6 ACLs
• MAC ACLs
• VLANs
VLAN
ACL
• IPv4 ACLs
• IPv6 ACLs
• VTYs
VTY ACL
Related Topics
, on page 295
, on page 285
Order of ACL Application
When the device processes a packet, it determines the forwarding path of the packet. The path determines
which ACLs that the device applies to the traffic. The device applies the ACLs in the following order:
1.
Port ACL
2.
Ingress VACL
3.
Ingress router ACL
4.
Ingress VTY ACL
5.
Egress VTY ACL
6.
Egress router ACL
7.
Egress VACL
If the packet is bridged within the ingress VLAN, the device does not apply router ACLs.
Figure 7: Order of ACL Application
The following figure shows the order in which the device applies ACLs.
Cisco Nexus 9000 Series NX-OS Security Configuration Guide, Release 9.x
215
Configuring IP ACLs
Order of ACL Application