Sunday, 23 March 2014

Extended ACL (network to Host blocking)



Extended ACL for network to Host blocking

HCL(config)#ip access-list extended hcl
HCL(config-ext-nacl)#deny icmp 30.0.0.0 0.255.255.255 host 10.0.0.1
HCL(config-ext-nacl)#permit ip any any
HCL(config-ext-nacl)#inter fa 0/0
HCL(config-if)#ip access-group hcl out
........................................OR.................................................

HCL(config)#ip access-list extended 110
HCL(config-ext-nacl)#deny icmp 30.0.0.0 0.255.255.255 host 10.0.0.1
HCL(config-ext-nacl)#permit ip any any
HCL(config-ext-nacl)#inter fa 0/0
HCL(config-if)#ip access-group 110 out
........................................OR.................................................

HCL(config)#access-list 110 deny icmp 30.0.0.0 0.255.255.255 host 10.0.0.1
HCL(config)#access-list 110 permit ip any any
HCL(config)#inter fa 0/0
HCL(config-if)#ip access-group 110 out

No comments:

Post a Comment