Reflexive ACL v/s Established key ACL

From: Cristian Henry (chenry@reuna.cl)
Date: Wed Apr 30 2003 - 11:54:13 GMT-3


Just to test if I got a correct understanting about it.
Are the following configurations same?, thanks for your valuable opinion

Config 1:
interface ethernet0
 ip access-group 102 in
!
access-list 102 permit tcp any any gt 1023 established

Config 2:

interface ethernet0
 ip access-group inboundfilters in
 ip access-group outboundfilters out
!
ip access-list extended outboundfilters
 permit tcp any any reflect tcptraffic
!
ip access-list extended inboundfilters
 evaluate tcptraffic
!
ip reflexive-list timeout 120

--
Cristian E. Henry
REUNA


This archive was generated by hypermail 2.1.4 : Thu May 01 2003 - 13:36:10 GMT-3