I have just found that it is good practice to not allow the source port if below 1024
Regards D'Wayne Saunders Data Network Administrator -----Original Message----- From: Aaron Laws [mailto:[EMAIL PROTECTED]] Sent: Thursday, 12 December 2002 8:35 AM To: [EMAIL PROTECTED] Subject: RE: extended access-list in/ out [7:58750] Do you even need to specify the source port? Why wouldn't you just do: access-list 101 permit tcp any any eq telnet? Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=59021&t=58750 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

