I was have a conversation earier today about IPv4 ACL and it was suggested that its better to do this on a switch opposed to a firewall.
For example if I had two VLANs, VLAN 1 and VLAN 2 and I wanted to allow some traffic from V1 to V2 but block other traffic that I would be better off using a L3 switch to do this rather than a firewall.
PS when I am talking about firewalls I am talking abouter enterprise grade equipment not a small home internet router.
Im interested to know peoples thoughts on this.