On Tue, 17 Aug 1999, Phillip Grasso-Nguyen wrote:
Actually, I don't want to block things from 208.164.68.199,
I want to block incoming connections from 207.211.200.74 to
208.164.68.199.
Cheers,
Vince - [EMAIL PROTECTED] - [EMAIL PROTECTED] ________ __ ____
Unix Networking Operations - FreeBSD-Real Unix for Free / / / / | / |[__ ]
GaiaNet Corporation - M & C Estate / / / / | / | __] ]
Beverly Hills, California USA 90210 / / / / / |/ / | __] ]
HongKong Stars/Gravis UltraSound Mailing Lists Admin /_/_/_/_/|___/|_|[____]
> on the cisco router,
>
> !line below stops anything from
> access-list 10 deny 208.164.68.199
> !line below allows all else
> access-list 10 permit any
>
> !On the incoming interface (e.g. serial 0)
> interface serial 0
> ip access-group 10 in
>
> !or data is going out to the pc on "ethernet0"
> interface ethernet 0
> ip access-group 10 out
>
> Regards
> Phillip********************************************
> Phillip Grasso-Nguyen
> Senior Network Engineer - Core Engineering Team
> Magnadata Australia Powered by
> Davnet Telecommunications
> Level 5, Magna Data House
> 209 Castlereagh Street, Sydney
> NSW, Australia, 2000.
> Tel: +61 2 9272 9600
> Fax: +61 2 9272 9605
> mailto:[EMAIL PROTECTED];[EMAIL PROTECTED]
> http://www.davnet.com.au
> http://www.magna.com.au
> PGP Fingerprint:1083 7987 D33A C7E8 5DB2 AAD2 4F5D 6B99 CBB7 55A4
> PGP Key: http://www.magna.com.au/~phillipg/phillipg.asc
> Australian General Telecommunications Carrier License No 23
> ********************************************
>
> Disclaimer:
> Nothing in this correspondence:
> 1) should be taken as being legal advice;
> 2) shall be construed as a solicitation of
> any kind;
> 3) should be interpreted as a
> signature or mark that can create a legally
> binding commercial relationship; and
> 4) should be omitted in any fair use of this
> correspondence.
> > -----Original Message-----
> > From: [EMAIL PROTECTED]
> > [mailto:[EMAIL PROTECTED]]On Behalf Of Vincent Poy
> > Sent: Tuesday, 17 August 1999 6:16
> > To: Kent Hundley
> > Cc: Gerardo Soto; firewalls
> > Subject: RE: How to block ports 1024 & up in a cisco access-list
> >
> >
> > Speaking about Cisco access lists, how do I block a ip say
> > 208.164.68.199 from connecting with any service to my machine
> > 208.164.68.121?
> >
> >
> > Cheers,
> > Vince - [EMAIL PROTECTED] - [EMAIL PROTECTED]
> > ________ __ ____
> > Unix Networking Operations - FreeBSD-Real Unix for Free / / /
> > / | / |[__ ]
> > GaiaNet Corporation - M & C Estate / / /
> > / | / | __] ]
> > Beverly Hills, California USA 90210 / / / /
> > / |/ / | __] ]
> > HongKong Stars/Gravis UltraSound Mailing Lists Admin
> > /_/_/_/_/|___/|_|[____]
> >
> > -
> > [To unsubscribe, send mail to [EMAIL PROTECTED] with
> > "unsubscribe firewalls" in the body of the message.]
> >
>
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]