eem, the xxx part was just to illustrate that it could be called anything. You can't restrict outgoing traffic by putting an acl on the outside interface in the incoming direction. That acl needs to be put on the inside interface.
Also, i hope this is not true : access-list 101 permit ip any host 216.181.x.x , which would let anyone access that address on any kind of ip prot/port, not good !
Jan
Jan
Network Systems Engineer
CCNA/CQS/CCSP