Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Access Lists to open a port on multiple IP's 1

Status
Not open for further replies.

mwidner

Technical User
Jan 15, 2003
25
US
Access Lists -- Is it possible to use a "range" of some sort to open a particular port on a range of IP addresses?

For example we use a product that requires access to port 6129 and I wonder if I have to provide this for EVERY IP address or can I use a range?

Sorry if this sound a bit daft... I only have enough knowledge of Cisco commands to make me dangerous!!

Thanks!
 
If the IP's are contiguous you can use the proper subnet and mask. If not, You can use an object group. Place all the IP's in the group and it's only one line in the ACL.

Brent
Systems Engineer / Consultant
CCNP, CCSP
 
or you can create a network object-group and add all those ip in that group so it will be easy for you to add and remove the ip address.

Thanks,
Mustafa gangardiwala

Mustafa Gangardiwala
CCIE-Security # 16253, CISA
CISM,CISSP,INFOSEC, MCSE, CNE
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top