cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1589
Views
0
Helpful
1
Replies

Trustsec SGACL

I am creating rules (SGACL) for a trustsec matrix.

I found a variation on how to permit and deny service ports.

Please tell me if there is a way to deny and permit ip addresses of hosts?

1 Accepted Solution

Accepted Solutions

Damien Miller
VIP Alumni
VIP Alumni

SGACLs are IP agnostic other than the extent where they can apply to all, or selectively to ipv4/ipv6 traffic. You cannot directly place an IP address within an SGACL, it is strictly SGT to SGT enforcement. 

 

View solution in original post

1 Reply 1

Damien Miller
VIP Alumni
VIP Alumni

SGACLs are IP agnostic other than the extent where they can apply to all, or selectively to ipv4/ipv6 traffic. You cannot directly place an IP address within an SGACL, it is strictly SGT to SGT enforcement.