<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Access Control List Inbound vs Outbound in ExtremeSwitching (EXOS/Switch Engine)</title>
    <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/access-control-list-inbound-vs-outbound/m-p/66692#M18380</link>
    <description>Hi &lt;USER-MENTION data-id="8151213"&gt;@Joshua Puusep&lt;/USER-MENTION&gt; ,&lt;BR /&gt;
&lt;BR /&gt;
You're correct we're actually routing these over MPLS so there is a connection as well as a backup VPN tunnel for redundancy of connection. The issue I had was thinking of ACL's from an L2 perspective rather than L3. Inbound ACL's are inbound to the routing instance not the L2 Interface and Outbound is outbound of the routing instance. Once I was able to grasp this and diagram I was able to get the ACL's working correctly. &lt;BR /&gt;
&lt;BR /&gt;
Thanks for the reply!</description>
    <pubDate>Thu, 10 Oct 2019 22:08:34 GMT</pubDate>
    <dc:creator>wmtanderson</dc:creator>
    <dc:date>2019-10-10T22:08:34Z</dc:date>
    <item>
      <title>Access Control List Inbound vs Outbound</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/access-control-list-inbound-vs-outbound/m-p/66690#M18378</link>
      <description>I'm new to Network Administration but I'm working on configuring ACL's to allow two subnets to communicate with each other across two sites. Isolation needs to exist so hosts within the subnets can only communicate to each other and the internet.&lt;BR /&gt;
&lt;BR /&gt;
As an example:&lt;BR /&gt;
&lt;BR /&gt;
10.10.10.0/21 - Remote Subnet &lt;BR /&gt;
10.10.5.0/21 - Local Subnet&lt;BR /&gt;
Both should have internet access and be able to communicate to each other only . &lt;BR /&gt;
&lt;BR /&gt;
&lt;BR /&gt;
 I'm hoping to find some documentation on the differences processing packets between inbound and outbound ACL's. We're currently using EOS on two S Series switches and the ACL's we have configured are not functioning but rather than delete the ACL's I'd like to use this as an opportunity to troubleshoot the ACL's.</description>
      <pubDate>Tue, 08 Oct 2019 01:55:39 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/access-control-list-inbound-vs-outbound/m-p/66690#M18378</guid>
      <dc:creator>wmtanderson</dc:creator>
      <dc:date>2019-10-08T01:55:39Z</dc:date>
    </item>
    <item>
      <title>Re: Access Control List Inbound vs Outbound</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/access-control-list-inbound-vs-outbound/m-p/66691#M18379</link>
      <description>FYI, Those subnets are private, i.e. you cannot typically route them over the internet without tunneling.&lt;BR /&gt;
&lt;A href="https://en.wikipedia.org/wiki/Private_network" target="_blank" rel="nofollow noreferrer noopener"&gt;https://en.wikipedia.org/wiki/Private_network&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
Chapter 54 in the S-series configuration guide explains the use of ACL's:&lt;BR /&gt;
&lt;A href="https://documentation.extremenetworks.com/eos_config/downloads/S_K_7100_Configuration_Guide.pdf" target="_blank" rel="nofollow noreferrer noopener"&gt;https://documentation.extremenetworks.com/eos_config/downloads/S_K_7100_Configuration_Guide.pdf&lt;/A&gt;</description>
      <pubDate>Thu, 10 Oct 2019 22:02:48 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/access-control-list-inbound-vs-outbound/m-p/66691#M18379</guid>
      <dc:creator>Joshua_Puusep</dc:creator>
      <dc:date>2019-10-10T22:02:48Z</dc:date>
    </item>
    <item>
      <title>Re: Access Control List Inbound vs Outbound</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/access-control-list-inbound-vs-outbound/m-p/66692#M18380</link>
      <description>Hi &lt;USER-MENTION data-id="8151213"&gt;@Joshua Puusep&lt;/USER-MENTION&gt; ,&lt;BR /&gt;
&lt;BR /&gt;
You're correct we're actually routing these over MPLS so there is a connection as well as a backup VPN tunnel for redundancy of connection. The issue I had was thinking of ACL's from an L2 perspective rather than L3. Inbound ACL's are inbound to the routing instance not the L2 Interface and Outbound is outbound of the routing instance. Once I was able to grasp this and diagram I was able to get the ACL's working correctly. &lt;BR /&gt;
&lt;BR /&gt;
Thanks for the reply!</description>
      <pubDate>Thu, 10 Oct 2019 22:08:34 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/access-control-list-inbound-vs-outbound/m-p/66692#M18380</guid>
      <dc:creator>wmtanderson</dc:creator>
      <dc:date>2019-10-10T22:08:34Z</dc:date>
    </item>
  </channel>
</rss>

