RE: ACL-min lines

From: Wilson, Ryan # Atlanta (Ryan.Wilson@relayhealth.com)
Date: Sat Nov 10 2007 - 13:42:26 ART


Darn!

-----Original Message-----
From: Scott Morris [mailto:smorris@ipexpert.com]
Sent: Saturday, November 10, 2007 11:37 AM
To: Wilson, Ryan # Atlanta; 'Bertalan Dergez (bedergez)'; 'Cisco
certification'
Subject: RE: ACL-min lines

In this case, no. because you need to be able to allow all the things
EXCEPT for that one /24, so you need to be fairly well aware of the bit
boundaries.

Scott

-----Original Message-----
From: Wilson, Ryan # Atlanta [mailto:Ryan.Wilson@relayhealth.com]
Sent: Saturday, November 10, 2007 11:23 AM
To: Scott Morris; Bertalan Dergez (bedergez); Cisco certification
Subject: RE: ACL-min lines

I'm thinking this would take a minute or two using binary. Is there a
trick
behind it to speed things up?

Ryan

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Scott Morris
Sent: Saturday, November 10, 2007 10:44 AM
To: 'Bertalan Dergez (bedergez)'; 'Cisco certification'
Subject: RE: ACL-min lines

That's no fun if you actually allow that subnet to be denied. :)

But yes, the wonders of binary at work!

Scott

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Bertalan Dergez (bedergez)
Sent: Saturday, November 10, 2007 10:26 AM
To: Cisco certification
Subject: RE: ACL-min lines

Hi,

access-list 1 permit 150.16.0.0 0.0.7.255 access-list 1 permit
150.16.8.0
0.0.1.255 access-list 1 permit 150.16.11.0 0.0.0.255 access-list 1
permit
150.16.12.0 0.0.3.255 access-list 1 permit 150.16.16.0 0.0.15.255
access-list 1 permit 150.16.32.0 0.0.31.255 access-list 1 permit
150.16.64.0
0.0.63.255 access-list 1 permit 150.16.128.0 0.0.127.255 access-list 1
permit 10.10.0.0 0.0.255.255

         
         
Bertalan Dergez
Systems Engineer

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Scott Morris
Sent: 2007. november 10. 16:16
To: 'CJ'; 'Cisco certification'
Subject: RE: ACL-min lines

acl 10 permit 150.16.0.0 0.0.255.255
acl 10 permit 10.10.0.0 0.0.255.255

:)

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
CJ
Sent: Saturday, November 10, 2007 2:57 AM
To: Cisco certification
Subject: ACL-min lines

Dear group

By only using permit statements what would be the best way to do the
following in as minimum acl entries as possible,

- deny 150.16.10.0/24
- permit 150.16.0.0/16
- permit 10.10.0.0/16



This archive was generated by hypermail 2.1.4 : Sat Dec 01 2007 - 06:37:29 ART