Configuring IP ACLs
Application
VLAN
ACL
VTY ACL
Related Topics
Order of ACL Application
When the device processes a packet, it determines the forwarding path of the packet. The path determines
which ACLs that the device applies to the traffic. The device applies the ACLs in the following order:
1. Port ACL
2. Ingress VACL
3. Ingress router ACL
4. Ingress VTY ACL
5. Egress VTY ACL
6. Egress router ACL
7. Egress VACL
If the packet is bridged within the ingress VLAN, the device does not apply router ACLs.
Figure 7: Order of ACL Application
The following figure shows the order in which the device applies ACLs.
Supported Interfaces
• VLANs
• VTYs
About VLAN
ACLs, on page 295
About MAC
ACLs, on page 285
Cisco Nexus 9000 Series NX-OS Security Configuration Guide, Release 9.x
Order of ACL Application
Types of ACLs Supported
• IPv4 ACLs
• IPv6 ACLs
• MAC ACLs
• IPv4 ACLs
• IPv6 ACLs
215