forget to mention, upgraded to vpp v18.04-rc2~26-gac2b736~b45 Current setup: GigabitEthernet0/14/0.1, Idx 9, ip 192.168.0.0/24, vlan 1 GigabitEthernet0/14/0.2, Idx 12, ip 192.168.2.0/24, vlan 2
I don't want devices on vlan1 and vlan2 to communicate with each other. I tried to use macip via VAT vat# macip_acl_add ipv4 deny ip 192.168.2.0/24 vat# macip_acl_interface_add_del sw_if_index 9 add acl 0 But, devices under 192.168.0.0/24 can't communicate with each other. Thanks