Sunday 23 March 2014

Extended ACL (Host to Network blocking)


Extended ACL for Host to Network blocking

HCL(config)#ip access-list extended hcl
HCL(config-ext-nacl)#deny icmp host 30.0.0.1 10.0.0.0 0.255.255.255
HCL(config-ext-nacl)#permit ip any any
HCL(config-ext-nacl)#inter fa 0/0
HCL(config-if)#ip access-group hcl out
.......................................OR...........................................

HCL(config)#ip access-list extended 110
HCL(config-ext-nacl)#deny icmp host 30.0.0.1 10.0.0.0 0.255.255.255
HCL(config-ext-nacl)#permit ip any any
HCL(config-ext-nacl)#inter fa 0/0
HCL(config-if)#ip access-group 110 out
.......................................OR...........................................

HCL(config)#access-list 110 deny icmp host 30.0.0.1 10.0.0.0 0.255.255.255
HCL(config)#access-list 110 permit ip any any
HCL(config)#inter fa 0/0
HCL(config-if)#ip access-group 110 out

No comments:

Post a Comment