Re: How can you deny RIP in an extended ACL ?

From: Anthony Pace (anthonypace@fastmail.fm)
Date: Sun Jun 08 2003 - 19:05:55 GMT-3


RIP does not have it's own protocol ID (like OSPF or EIGRP), it is
encapsulated in UDP and uses port 520.

ROUTER(config)#access-list 101 permit udp any eq ?
  <0-65535> Port number
  biff Biff (mail notification, comsat, 512)
  bootpc Bootstrap Protocol (BOOTP) client (68)
  bootps Bootstrap Protocol (BOOTP) server (67)
  discard Discard (9)
  dnsix DNSIX security protocol auditing (195)
  domain Domain Name Service (DNS, 53)
  echo Echo (7)
  isakmp Internet Security Association and Key Management Protocol
  (500)
  mobile-ip Mobile IP registration (434)
  nameserver IEN116 name service (obsolete, 42)
  netbios-dgm NetBios datagram service (138)
  netbios-ns NetBios name service (137)
  netbios-ss NetBios session service (139)
  ntp Network Time Protocol (123)
  pim-auto-rp PIM Auto-RP (496)
  rip Routing Information Protocol (router, in.routed, 520)

On Sun, 8 Jun 2003 15:41:49 -0600, "Mr. Richard L. Pickard"
<nettable_walker@attbi.com> said:
> Fiesta
>
> I am noticing that access-list 101 deny RIP any any
> is not an option
>
> [GroupStudy removed an attachment of type image/jpeg which had a name of
> Fiesta Bkgrd.jpg]
>

-- 
  Anthony Pace
  anthonypace@fastmail.fm

-- http://www.fastmail.fm - One of many happy users: http://www.fastmail.fm/docs/quotes.html



This archive was generated by hypermail 2.1.4 : Fri Jul 04 2003 - 11:10:55 GMT-3