question 1. im trying to understand (vacls) but cannot get my head around it and ive been doing some reading looking at the below example can anyone help ?
(config)#ip access-list extended local-17
(config-acl)#permit ip host 192.168.99.17 192.168.99.0 0.0.0.255 - means allow this single host to its own network
(config)#vlan access-map block-17 10
(config-access-map)#match ip address local-17 - means match the above ip address
(config-access-map)#action drop - means drop all traffic from any other ip address except 192.168.99.17
(config-access-map)#vlan access-map block-17 20
(config-access-map)#action forward - as the key word is (block) i am not sure what this means as it states (forward) ?
(config)#vlan filter block-17 vlan-list 99 - allows the above to happen