RE: Reflexive Access Lists?

From: Brian Dennis (brian@labforge.com)
Date: Wed Jul 23 2003 - 02:49:53 GMT-3


BGP isn't an IP protocol as OSPF or EIGRP are. You need to add this:

permit tcp any any eq bgp
permit tcp any eq bgp any

Brian Dennis, CCIE #2210 (R&S/ISP-Dial/Security)

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Poor Ghost
Sent: Tuesday, July 22, 2003 10:42 PM
To: ccielab@groupstudy.com
Cc: ccielab@groupstudy.com
Subject: Reflexive Access Lists?

Hi,all.according to the documents,extended ip access-list can be defined
as
follow.

ip access-list extended inboundfilters
 permit bgp any any
 permit eigrpany any deny
 icmp any any
 evaluate tcptraffic
!

But when I enter extended ip access-list configuration mode,the command
'permit bgp any any' does notexist.
Who can tell me why?Please help me!Thanks a lot!Best regards



This archive was generated by hypermail 2.1.4 : Wed Aug 06 2003 - 06:52:49 GMT-3