From: Ben Zheng (bzheng8989@yahoo.com)
Date: Tue Oct 24 2006 - 21:42:22 ART
Hi
Brain at Internetwork Expert has an excellent doc on how to compute
access-list and wildcard pairs.
http://www.internetworkexpert.com/resources/01700370.htm
in the example, a
single access list is used for 10.0.0.0.16, 10.4.0.0/16, 10.32.0.0/16 and
10.36.0.0/16
access-list 1 permit 10.0.0.0 0.36.0.0
The traffic with the
same address in 0 bit wildcard will be permitted.
Assume we have traffic
from 10.32.0.1 which is part of 10.32.0.0/16 network, "1" in last octet
doesn't match the "0" in the access-list, will it still be permit? Why?
Ben
This archive was generated by hypermail 2.1.4 : Wed Nov 01 2006 - 07:29:06 ART