The first line:  any host can send ip packets to 194.172.253.0 -
194.172.253.127 on port 53 (DNS)
The second line: denies icmp redirects from anywhere to anywhere.
Third: denies ip packets with a source of localhost.  Prevents spoofing
of localhost address by remote system.

The last two were answered in my previous e-mail.

Josh

-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
Sent: Friday, September 07, 2001 1:20 PM
To: [EMAIL PROTECTED]
Subject: access list again [7:19006]


what will be the result of this

access-list 101 permit udp any 194.172.253.0 0.0.0.127 eq domain
access-list 101 deny   icmp any any redirect
access-list 101 deny   ip 127.0.0.0 0.255.255.255 any
access-list 101 deny   ip 224.0.0.0 31.255.255.255 any
access-list 101 deny   ip host 0.0.0.0 any




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=19011&t=19006
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to