----- Original Message -----
From: A. Geoffrey Cauchi

Access-lists are sequential, use deny before permit!!


Well, not exactly.  I would re-phrase this and say, "Put more specific
before less specific."  Let's say I want to permit host 1.2.3.4/24, and deny
the rest of the subnet 1.2.3.0/24.  If I stuck to putting deny before
permit, my host wouldn't get through.  However, if I stick to putting more
specific before less specific, my host gets through, and all others get
blocked.


-BJ



_________________________________
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to