I am new to creating ACLs, but here is what I am wanting to do. I have a Procurve 3500 split into two VLANs. The first VLAN is a private, internal VLAN with an IP scheme of 10.0.0.1/24. The second VLAN is designed to run a public WiFi system and has the IP scheme of 10.1.1.1/24. What I am wanting is to create an ACL that allows both VLANs to talk both ways to the internet source which is 10.0.0.2. Then I need to be able to talk from two servers (10.0.0.1, 10.0.0.3) to the wireless VLAN so I can manage the APs remotely, but not have the wireless VLAN be able to initiate communication so the internal network stays secure. Anyone able to assist?