Ingress Filtering

The ingress filtering feature provides for a means of limiting the forwarding of received frames on the ingress port based on the VLAN egress list for that port. VLAN IDs of a port‘s incoming frames are compared to the port‘s egress list. If the received VLAN ID does not match a VLAN ID on the port‘s egress list, the frame is dropped. See VLAN Configuration for VLAN egress list information. Ingress filtering is disabled by default.

Use the set port ingress-filter command in any command mode to enable ingress filtering on the specified ports.

The following example enables ingress filtering on port ge.1.1

System(rw)->set port ingress-filter ge.1.1 enable
System(rw)->>show port ingress-filter ge.1.1
Port          State
------------  --------
ge.1.1        enabled