Compare cert salaries and plan your next career move
deny ip host 10.0.0.128 any permit ip any any
meadIT wrote: » I believe this line is the only one you would need for an extended ACL: deny ip 10.0.0.128 [subnet mask] [dest ip] [dest mask] You'll also have to follow it up with a permit ip any any or all packets from any host will be discarded. (If the packet does not match any part of the access list, it is denied by default) Edit: Actually, you wouldn't need to include the subnet mask or anything like that, you would just need this:deny ip host 10.0.0.128 any permit ip any any This will block any packets from the IP address addressed to any address, and then permit any other source to pass through.
linux44 wrote: » i want to deny all the traffic and that mean udp,tcp, are u trying to say that tcp is part of ip ?
Compare salaries for top cybersecurity certifications. Free download for TechExams community.