Extended ACL - PowerPoint PPT Presentation

1 / 32
About This Presentation
Title:

Extended ACL

Description:

Filtering Tool SRC and DST Protocol #s. Multi Line Text File (One Command Issued Many times) ... 1. Protocol. 2. SRC IP SRC Wildcard. Host SRC IP. ANY. 3. DST ... – PowerPoint PPT presentation

Number of Views:70
Avg rating:3.0/5.0
Slides: 33
Provided by: Mik7416
Category:

less

Transcript and Presenter's Notes

Title: Extended ACL


1
Extended ACL
  • CISCO

2
Extended ACL
  • Definition
  • Configuration
  • Interface Application

3
Definition
  • Filtering Tool SRC and DST Protocol s
  • Multi Line Text File (One Command Issued Many
    times)
  • Range (100-199 extended 2000 2699)
  • First Hit Filtering
  • Applications
  • Interface Ports i.e. EO, SO
  • Line VTY Telnet
  • CON
    Direct
  • AUX
    Modem
  • Implied Deny All
  • Interesting Traffic Crypto Maps

  • Route Maps


SO
EO
4
Configuration
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
Range 100-199 2000-2699
Protocol OSPF EIGRP ICMP TCP UDP
IP
5
Configuration
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
192.168.5.0 0.0.0.255
192.168.5.254 0.0.0.0
Host 192.168.5.254
0.0.0.0 255.255.255.255
ANY
6
Configuration
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
IP/EIGRP/OSPF LOG PRECEDENCE TOS
CONSOLE
NORMAL
DELAY
TYPE OF SERVICE
THROUGHPUT
7
TCP-IP CONFIGURATION
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
8
TCP-IP CONFIGURATION
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
53
DNS PORT
9
CONFIGURATION
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
10
CONFIGURATION
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
23
Use Ports
TELNET
A
B
23
11
CONFIGURATION
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
20/21
Use Ports
FTP
A
B
20/21
12
CONFIGURATION
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
TFTP
69
13
CONFIGURATION
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
POPULAR PORT 1-1024
14
CONFIGURATION
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
PING
A
B
15
CONFIGURATION
Access-List ACL Permit Deny
1. Protocol 2. SRC IP SRC Wildcard Host
SRC IP ANY 3. DST IP DST Wildcard Host
SRC IP ANY 4. Operator Port Port
16
Standard IP
  • Definition
  • Configuration
  • Interface Application

17
DESIGN
18
DESIGN
BEST PLACE FOR ACL
19
DESIGN
EXTENDED ACL
BOTH SRC AND DST
20
DESIGN
21
DESIGN
22
ROUTER - ACL
23
ROUTER CONFIG CONT
24
ROUTER
25
ROUTER
26
DESIGN
254
FIREWALL
.252
27
PING FROM 192.168.5.254
28
WORKS
29
To Block Other
30
(No Transcript)
31
Unreachable
32
Extended ACL
  • Definition
  • Configuration
  • Interface Application
Write a Comment
User Comments (0)
About PowerShow.com