Re: Reflexsive access-list

From: Ahmed Mustafa (ahmed.mustafa@sbcglobal.net)
Date: Thu Feb 19 2004 - 04:24:14 GMT-3


You would still have to allow your routing protocols from outside routers.

If for example, you are running BGP between Internal and external network.
Reflexive access-list will deny any request initiated from outside and that
will bring your bgp domain down.

HTH,

----- Original Message -----
From: <alsontra@hotmail.com>
To: <ccielab@groupstudy.com>
Sent: Thursday, February 19, 2004 1:00 AM
Subject: Reflexsive access-list

> All,
> If I use a reflexive ACL on an interface that is actively
participating in
> BGP, EIGRP and or OSPF, do I need to add statements allowing these
protocols
> thought the ACL? As I understand it, locally originated traffic is not
> affected by ACLs. This would mean that routing protocols are exempt from
> outbound ACLs, reflexive or otherwise. Correct?
>
> Thanks,
> Alsontra
>
> _______________________________________________________________________
> Please help support GroupStudy by purchasing your study materials from:
> http://shop.groupstudy.com
>
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Fri Mar 05 2004 - 07:13:51 GMT-3