From: John Conzone (jkconzone@xxxxxxxx)
Date: Fri Aug 25 2000 - 18:56:34 GMT-3
Stylen hit it. R1 won't filter packets sourced from itself. Put it on R2
or R3.
----- Original Message -----
From: "Harbir Kohli" <harbirk@sympatico.ca>
To: "'Ccielab" <ccielab@groupstudy.com>
Sent: Friday, August 25, 2000 5:15 PM
Subject: Access list to deny ping
> Hello Group
>
> I seem to have problems getting an access-list to work.
> R1 - Ethernet - R2 -Serial -R3 -Lo0
>
> I want to prevent ping from being sent to R3.Lo0.
>
> I wrote
> Router R1
> access-list 101 deny icmp any any echo
> access-list 101 deny icmp any any echo-reply
> and
> int e0
> ip access-group 101 out
>
> Yet my pings still seem to get through
>
> What is wrong ?
>
> BTW will the above access-list also deny all IP traffic due to the
> implicit deny or not ?
>
This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 08:24:30 GMT-3