Re: Access-List query

From: Jai Prakash (jpjsr06@gmail.com)
Date: Sat May 13 2006 - 04:28:18 ART


Hi Huzefa,

There is typo error or what ...................... ( 172.16.10 )

Ans for 1st Question ) Your last statement will permit TCP and UDP traffic
as well except for 172.16.10.0/24 network.

Ans for 2nd Question ) The working methodalogy of access-list is first come
first serve..

Let say if any statement which is matching deny for specific network, is
appearing before the statement which says for same network matching
permit..................it will not allow for that network.It checks from
Top-to bottom approach and if any match there........it doesn't check
further more.

So, the outcome is .....it doesn't work on the method of AND or OR
function.......

Best Regards,
Jai

On 5/13/06, HUZEFA RATLAMWALA <ratlamwala.huzefa@gmail.com> wrote:
>
> Group,
> I have a query if I have an access-list saying:
>
> access-list 155 deny ip 172.16.10 0.0.0.255 any
> access-list 155 perm ip any any
>
> Will my last statement also permit the TCP and UDP traffic ?
> And this kind of access-list is an AND function or an OR function ?
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Thu Jun 01 2006 - 06:33:21 ART