Re: Appletalk filtering

From: Joe Soricelli (jsoricelli@xxxxxxxx)
Date: Sat Jul 10 1999 - 11:42:31 GMT-3


   
It's been my experience that changes to AT like these filters take a long
time to work out. Even though it is ugly, one thing that I've done to save
time is put all of the configs and filters in place and then copy ru st all
routers and reboot the pod.

It comes up clean with the filter policies in place.

Besides, waiting for the reboot was a good time to take a water break during
the lab!!!

-joe
------------------------------------------------------------------
  Joseph M. Soricelli, CCIE #4803, CCNP
  EMAIL: jsoricelli@ccci.com

  Chesapeake Computer Consultants, Inc.
  8110 Gatehouse Road, Suite 101E Phone: (703) 207-0757
  Falls Church, VA 22042 Fax: (703) 207-0441

  FYI - About Chesapeake: We are a Cisco Certified Training and
  professional services partner. We offer most of the Cisco
  training courses as well as training for Fore, NetScout, and
  CheckPoint-1 Firewalls. We provide network consulting services,
  including design, network health, management, firewall,
  and problem solving. We now have 21 CCIEs on our staff
  of instructor/consultants.
-------------------------------------------------------------------

-----Original Message-----
From: Ben Rife <brife@bignet.net>
To: ccielab@groupstudy.com <ccielab@groupstudy.com>; jkupec@fridge.ccci.com
<jkupec@fridge.ccci.com>
Date: Friday, July 09, 1999 5:54 PM
Subject: Re: Appletalk filtering

>Yep, I tried it again and...wait a minute....hey, it worked...buggy, but it
>worked. YESSSSSS!!!!!
>It takes a lot of work to get routes out of your table, even after shut/no
>shut. Is this your experience?
>
>John, thanks for being persistent with me to resolve this issue. I just
>might get a few more winks of sleep tonight.
>I've got 4 days ya know. Earlier, I had to sit myself down, I thought I was
>having a heart attack. Nope, just too much espresso.
>
>So the key to remember here is:
>
> To filter routes and zones in your route table you can use a
>distrib-list in on that router or you can use a zip-reply-list filter on a
>remote router. If you decide the earlier, you need to shut/no shut on the
>connected interface, wait a heck of a long time, bring it up and BAMMM, you
>have the desired result of filtering unwanted routes/zones.
>
>Is this correct?
>
>Again thanks, and congrats on your CCIE John, I wanna be like you. 8*)
>
>Take care,
>
>Ben
>
>
>----- Original Message -----
>From: John Galt Kupec <kupec@home.com>
>To: Ben Rife <brife@bignet.net>
>Sent: Friday, July 09, 1999 5:20 PM
>Subject: Re: Appletalk filtering
>
>
>>
>>
>> Ben Rife wrote:
>> >
>> > John,
>> >
>> > You said I should put an "app distrib-list 600 out" on routerB?
>Wouldn't
>> > that filter routes going out, not in?
>>
>> Yeah, I just corrected myself to the list.
>>
>> Is this about what you tried on routerB first?:
>>
>> access-list 600 permit cable-range 2-2
>>
>> int e0 (or whatever)
>> apple distribute-list 600 in
>>
>



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 08:21:42 GMT-3