can someone suggest me an ACL solution to stop Branch Office VLAN 1 Accessing Head office VLAN 20.
Head office VLAN 20 should not have HO VLAN 1 access or branch office access
Please check both router configs posted here
Head Office Router
interface Tunnel0
ip address...