Re: ISDN traffic acl definition

From: Javier Tomé (fjtm@tid.es)
Date: Wed Oct 05 2005 - 01:53:39 GMT-3


Your solution seems to me correct. Other approach could be to allow only
ICMP packets on the ACL and suppress the broadcast keyword on the
'dialer map' statement (only if the solution is based on legacy ISDN).
Anyway this should be worse as the ISDN line will bring up if ICMP
broadcast or multicast traffic is initiated from your router to the
other side.

Any thoughts?

Javi

cscoitit cscoitit wrote:

> Hi,
>
>I am doing a workbook question and it asks to allow icmp and deny broadcast and multicast. what is the correct solution.
>I like to confirm whether these accomplishes the task.
>
>acl 101 permit icmp any any
>acl 101 deny ip any host 255.255.255.255
>acl 101 deny ip any 224.0.0.0 15.255.255.255
>
>HTH
>cscoitit
>
>
>---------------------------------
>Find your next car at Yahoo! Canada Autos
>
>_______________________________________________________________________
>Subscription information may be found at:
>http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Sun Nov 06 2005 - 22:00:49 GMT-3