
I WANT TO PERMIT THE IP PROTOCOL FOR ALL HOSTS (.17 -> .30 ) ON A CLASS C .16 NETWORK (/28 ( THE SOURCE NETWORK ) TO GAIN ACCESS TO AN UNSUBNETTED CLASS C NETWOK (DESTINATION )BUT ONLY HOSTS .1 -> .127 SO I WILL USE WILDCARD OF .127 to allow first 128 hosts only.
IS THIS HOW YOU DO IT
# DENY IP PROTOCCOL x.x.x.16 0.0.0.13(SCR) x.x.x.128 0.0.0.127
# PERMIT IP PROTOCOL x.x.x.16 0.0.0.13 (SRC) x.x.x.0 0.0.0.127
WOULD LINE 1 DENY ALL 14 HOSTS ON .16 SUBNET FROM ACCESSING UPPER RANGE OF UNSUBNETTED CLASS C HOSTS?
IS IT VALID TO DO .128 in 4th octet of SRC FILTER ADDRESS and THEN A WILDCARD MASK OF .128 IN 4th OCTET OF WILDCARD MASK ? WILL THIS BLOCK ACCESS TO THE UPPER RANGE
BUT THEN IN LINE 2 ALLOW PKTS THAT MATCH SCR RANGE WITH LOWER RANGE .0 in 4th octet (SRC) and .127 in 4th octet of wildcard mask.