comments  in line below

""Karagozian Sarkis""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Can someone explain what these ACLs do ???
> When applied to an interface (in)
>
> Interace e0
> !
> !
>   ip access-group 194 in


you sure about this one? see below.


>     no ip redirects
>     no ip unreachables
>     no ip proxy-arp
>     ip route-cache same-interface
> !
>    access-list 194 deny   ip any any

this denies IP into the router from stations connected via E0. hope this is
an IPX segment :->

>    access-list 195 deny   udp any gt 1024 any eq 1434
>    access-list 195 permit ip any any

denies udp inquiries to any address with a destination port of 1434 - this
is the port that slammer slammed.


>    access-list 196 deny   udp any gt 1024 any eq 1434
>    access-list 196 permit ip any any


same as for 195

>
> These were applied since the SQL Worm attack...


195 and 196 where applied where exactly? all interfaces, one would think.


>
> Thanks




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=62848&t=62843
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to