Compare cert salaries and plan your next career move
optimus wrote: Yeah Darkuser, It says it right in the ExamCram book, newest addition. Packets originating from the IOS, do not get applied to the access lists on that said router. The ACLs only are applied for traffic coming from any other place, except the router in question with the ACLs (hence, production traffic transversing the router like you said, etc.) Surprised nobody else has stepped up to the plate on this. Sims online, questions online, Cisco Press, and Lammel, and for some reason I never noticed it before until I read the ExamCram book, and I was a bit shocked at my discovery. When you think about, how worried really is someone about traffic that originates from the router? Normally, nobody is. It is intersting though. One good test is to blcok port 23 on an outbound access list: 'access-list 100 deny tcp any any eq 23' Then use the router to telnet to another router. I have a sim and the access list does not block the telnet. If it is from a station though, you do get blocked. So the traffic that originates from the router is not blocked. I have a couple 2620s at home. I think it is time I tried it on them. - Optimus
Compare salaries for top cybersecurity certifications. Free download for TechExams community.