From: Rob Hopkins (rshopkins@xxxxxxxxxxxxx)
Date: Tue May 08 2001 - 01:38:45 GMT-3
In the scenario you mention, "established" key word should not be used
Thanks,
Rob Hopkins
1.6180339887499
----- Original Message -----
From: "Johnny Dedon" <johnny.dedon@exodus.net>
To: "Groupstudy" <ccielab@groupstudy.com>
Sent: Monday, May 07, 2001 5:23 PM
Subject: Access-list question
> If I am asked to only permit ftp sessions if established from a local
subnet
> and I must use an inbound access-list on that local interface, what woud
it
> look like?
>
> something like this?
> access-list 102 permit tcp host 10.10.10.1 gt 1023 199.200.1.0 0.0.0.255
eq
> ftp established
>
> Remember the question is inbound on the local interface not inbound on the
> internet side.
>
> Johnny Dedon
> Senior Staff Consultant
> Exodus Professional Services
> johnny.dedon@exodus.net
> www.exodus.net
> **Please read:http://www.groupstudy.com/list/posting.html
**Please read:http://www.groupstudy.com/list/posting.html
This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 10:30:36 GMT-3