RE: Access List

From: Scott Morris (swm@emanon.com)
Date: Tue Jun 13 2006 - 23:02:23 ART


Just re-read the e-mail. :) I think the question was about the permit
part....

Anyway... Wouldn't this depend on how the ACL was applied? If used as a
simple packet filter applied to an interface, then perhaps yes. If used as
part of a route-map or class-map entry to match things then apply an action,
perhaps not.

I'm not sure we have enough detail here to give a 100% yes or no answer.

Just my $.02 (now that I've read the whole thing!) :)

 
Scott Morris, CCIE4 (R&S/ISP-Dial/Security/Service Provider) #4713, JNCIE
#153, CISSP, et al.
CCSI/JNCI
IPExpert CCIE Program Manager
IPExpert Sr. Technical Instructor
smorris@ipexpert.com
http://www.ipexpert.com
 
 

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of Bob
Sinclair
Sent: Tuesday, June 13, 2006 7:54 PM
To: Sami; Cisco certification
Subject: Re: Access List

Sami,

I agree with you. The writer should either change the access-list to a
"deny", or change the prefix to zero in the last bit of the first octet.

HTH,

Bob Sinclair
CCIE #10427, CCSI 30427
www.netmasterclass.net

  ----- Original Message -----
  From: Sami
  To: Cisco certification
  Sent: Tuesday, June 13, 2006 6:30 PM
  Subject: Access List

  Group,

  One of task says filter out all odd network from first octet , and
solution
  given is

  ip access list 1 permit 1.0.0.0 254.255.255.255

  why first octet of network is 1 ?

  shouldn't it be 0.0.0.0 ( any ) 254.255.255.255 ?

  Thanks

  _______________________________________________________________________
  Subscription information may be found at:
  http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Sat Jul 01 2006 - 07:57:32 ART