From: John Neiberger (neiby@xxxxxxxxxx)
Date: Tue Nov 20 2001 - 13:05:32 GMT-3
You're absolutely right. In the first access-list I created it wouldn't
allow the return traffic. However, the second one should handle this
correctly.
I need to either pay more attention or get some more coffee! <g>
Thanks,
John
On Tue, 20 Nov 2001 15:54:45 -0000, McCallum, Robert wrote:
| I am sure he also stated the reply frame which would include 05 09 and 0d
|
| -----Original Message-----
| From: John Neiberger [mailto:neiby@excite.com]
| Sent: 20 November 2001 15:47
| To: JAMES; ccielab@groupstudy.com
| Subject: Re: DLSw+ and SNA frame...?
|
|
| I believe you could do that like this:
|
| access-list 201 permit 0x0404 0x0000
| access-list 201 permit 0x0808 0x0000
| access-list 201 permit 0x0c0c 0x0000
|
| dlsw remote-peer 0 tcp a.b.c.d lsap-output-list 201
|
| You can also shorten your access list to this but it will permit more
than
| those three saps:
|
| access-list 201 permit 0x0000 0x0d0d
|
| Here's a great link on this topic:
|
| http://www.cisco.com/warp/public/698/acl200.html
|
| HTH,
| John
|
|
| On Tue, 20 Nov 2001 23:29:46 +0900, JAMES wrote:
|
| | Hello Group,
| |
| | Just wanted some feedback on DLSw+ and SNA frame...?
| |
| | I just want to transfer about SNA frame type 0x04, 0x08, 0x0c and
| | their reply frame on the DLSw+ link ...
| | However, I want to deny other...
| |
| | So, I will use access-list 201... and access-expression command..
| | However, I don't know these commands and method...Correctly..!!!
| |
| | How can I solve this problem..?
| | Anyone would have suggestions or URL for this question...?
| |
| | Thanks,
| | James
| |
| | God will be with you..!!!
This archive was generated by hypermail 2.1.4 : Fri Jun 21 2002 - 06:45:19 GMT-3