Compare cert salaries and plan your next career move
hoboscratch wrote: hmm, well i've been messing around with it in boson and it looks like there are quite a few different ways you can deny traffic via access lists. I'm sure it would be in my best interests to do it like you showed up above though, and narrow it down to what you specifically need to deny, instead of creating a broad statement.
markzab wrote: (The reason I didn't start my access list at 18.0--the beginning of the range we need to block--is because each block size must start at 0, or a multiple of the block size. A block size of 16 would allow us 0-15, 16-31, 32-47, etc.)
EdTheLad wrote: markzab wrote: (The reason I didn't start my access list at 18.0--the beginning of the range we need to block--is because each block size must start at 0, or a multiple of the block size. A block size of 16 would allow us 0-15, 16-31, 32-47, etc.) Not true, as i mentioned you can start at any address within the block the ios will understand where the block begins, for ccna i recommend using the start of the block.Cisco also recommends using the start of the block to avoid obscure addresses.I'm just pointing out its not a requirement.
EdTheLad wrote: I think you boss might get pissed when he cant access his mp3 server on 192.168.60.1, might be better to use: access-list 10 deny 192.168.32.0 0.0.15.255 access-list 10 deny 192.168.48.0 0.0.7.255 access-list 10 permit any
Ok, who the hell put my MP3 server in the Finance LAN?! Damnit Ed, where the hell are you? Get your butt down here!
Darthn3ss wrote: i guess i'm next. i'm having some real issues here. first one is placement. I have to have 1 extended ACL. it only needs to accomplish three things... all hosts can only reach an IP @ HTTP all hosts can not reach an server at all and then i have to allow half of an ip range to access a range of IPs and the other half should not be able to reach them. i think part of my problem is placement of the ACL. Extended ACLs need to be closest to the source, right? if anyone could help, i'd appreciate it. i re-read the chapter in my CCNA book and didn't find that it helped much.
Compare salaries for top cybersecurity certifications. Free download for TechExams community.