Cisco VLAN Routing VACLs on Cisco 4507 Switch

Hi All,
 I have 10 VLANs configured in my Cisco 4507 switch, Vlan 2, 3, 4 ,etc,  as, and so on, currently all VLANs can ping each others, for example VLAN 2 can ping 3,4,5, etc, I want to implement some VLAN access list to prevent VLANs to access each other, but I want VLAN 2 to be accessible by all oher VLANs, please support.
ccsistaffConnect With a Mentor Commented:
The config will be done within the router used to route between VLANs.   Use access-lists to permit or deny one network to another and apply them to your router's (sub) interfaces.  

access-list 100 permit ip any
access-list 100 deny ip
ITMaster1979Author Commented:
Ok, do I apply them in the VLAn Interface, in , or out?
is the switch doing routing for the VLANs or is there a router too?  usually these lists are applied to interfaces or subinterfaces on routers, unless the switch functions at layer3.  the lists will be applied inbound.  you may need to add the statement
access-list 100 permit ip any any at the end to allow internet traffic to keep flowing.
ITMaster1979Author Commented:
Its layer 3 switch
ITMaster1979Author Commented:
got it
