Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Cisco 1800 Newbie ACL Question.

Status
Not open for further replies.

somascope

IS-IT--Management
Jun 4, 2006
7
US
Hi all,

I just recently received a new Cisco 1800 and have starting configuring it in a test environment. I am not terribly familiar with these combined router/firewall deals, and have only limited experience with 2600 routers and PIX firewalls. I am configuring the 1800 through the web browser and am trying to create an outside interface inbound acl. Essentially, my test ACL looks like this:

permit any any echo-reply/icmp
permit any any unreachable/icmp
permit any any time-exceeded/icmp
permit any any source-quench/icmp
deny any any ip

My problem is that this cuts off my internet activity. My question is how do I go about creating a secure outside_inbound acl and still have my internet traffic. I know I am missing something simple. All my inside_outbound are permit any any ip at this time.
 
Maybe something like permit tcp any any established before the deny.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top