Re: ACL-min lines

From: Tarun Pahuja (pahujat@gmail.com)
Date: Sun Nov 11 2007 - 09:23:59 ART


Folks,
           Wildcard making can be tricky sometimes, specially when it is not
at subnet boundaries. One trick for calculating wildcard mark from subnet
mask is to enter the subnet mask inplace of wildcard mask under the ospf
process. The router automatically converts the subnet mask into wildcard
mask. I have found this trick very useful. For complicated wild cardmasking
one can always use a wildcard mask ultility free from Boson. Just enter the
wildcard mask and it will tell you what subnets would be allowed. This
untility will not be available in the lab exam,and can only be used for
verification and learning wildcard masking in access-lists.

http://www.boson.com/FreeUtilities.html

HTH,
Tarun

On Nov 10, 2007 12:48 PM, Scott Morris <smorris@ipexpert.com> wrote:

> Same logic though, break into binary and see the similarities.
>
> 5 00000101
> 10 00001010
> 13 00001101
> 14 00001110
>
> So what things are similar and what things are different? What pairs can
> be
> put together?
>
> Take a look at 5/13 and 10/14 and see what things make sense there.
>
> Scott
>
> -----Original Message-----
> From: Sadiq Yakasai [mailto:sadiqtanko@gmail.com]
> Sent: Saturday, November 10, 2007 12:32 PM
> To: smorris@ipexpert.com
> Cc: Gupta, Gopal (NWCC); CJ; Cisco certification
> Subject: Re: ACL-min lines
>
> I am terribly sorry to keep you guys busy, pulling ur hair out there...
>
> After reviewing my notes, its actually
>
> Using 2 lines, permit 5,10,13,14 subnets and deny all others from
> 192.168.1.0 to 192.168.16.0/24
>
> Its 13 not 11.... at least uve done some binary revision there :D
>
> Sadiq
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Sat Dec 01 2007 - 06:37:29 ART