Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

access-l question

Status
Not open for further replies.

Oh

IS-IT--Management
Jun 24, 2002
92
JP
Hi. I want vpn client user can only access ftp. I setting access-list as this way:
access-l 100 permit tcp host 172.x.x.x 192.x.x.0 255.255.255.0 eq access-l 100 permit tcp host 172.x.x.x 192.x.x.0 255.255.255.0 eq ftp but not working. hitcount is 0. when I change to access-l 100 permit IP host 172.x.x.x 192.x.x.0 255.255.255.0 everything is working. Why?
 
Do you see hits on your ACL when you chage it back?

The ACL should be in the format of:

[permit/deny] [ip/tcp/udp] [src-ip] [src-msk] [dst-ip] [dst-msk] [service]

"I can picture a world without war. A world without hate. A world without fear. And I can picture us attacking that world, because they'd never expect it."
- Jack Handey, Deep Thoughts
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top