Cisco NME-16ES-1G User Guide - Page 143
Compiling ACLs Example - p installation guide
UPC - 882658036101
View all Cisco NME-16ES-1G manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 143 highlights
16- and 36-Port Ethernet Switch Module for Cisco 2600 Series, Cisco 3600 Series, and Cisco 3700 Series Configuration Examples for the 16- and 36-Port Ethernet Switch Module Compiling ACLs Example For detailed information about compiling ACLs, refer to the Security Configuration Guide and the "IP Services" chapter of the Cisco IOS IP and IP Routing Configuration Guide for Cisco IOS Release 12.2. Figure 21 shows a small networked office with a stack of Catalyst 2950 switches that are connected to a Cisco router with an Ethernet switch network module installed. A host is connected to the network through the Internet using a WAN link. Use switch ACLs to do these: • Create a standard ACL, and filter traffic from a specific Internet host with an address 172.20.128.64. • Create an extended ACL, and filter traffic to deny HTTP access to all Internet hosts but allow all other types of access. Figure 21 Using Switch ACLs to Control Traffic Internet Workstation Cisco router with Ethernet switch network module Catalyst 2950 Catalyst 2950 88856 End workstations The following example uses a standard ACL to allow access to a specific Internet host with the address 172.20.128.64: Switch(config)# access-list 6 permit 172.20.128.64 0.0.0.0 Switch(config)# end Switch(config)# interface gigabitethernet0/1 Switch(config-if)# ip access-group 6 in Cisco IOS Release 12.2(2)XT, 12.2(8)T, and 12.2(15)ZJ 143