Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Filter Bogon list

Status
Not open for further replies.

PCTechNerd

IS-IT--Management
Aug 23, 2007
40
US
Hello, I have an ASA 5505 and I'm trying to help get the company PCI compliant. I was told I need to set the 5505 to filter the IP addresses on the bogon list (which I have now) but I don't know how to do that. can someone help?
 
Not sure how up to date this is but:

access-list acl_outside deny ip 0.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 1.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 2.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 5.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 10.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 14.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 23.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 27.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 31.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 36.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 37.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 39.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 42.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 46.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 49.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 50.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 100.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 101.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 102.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 103.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 104.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 105.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 106.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 107.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 108.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 109.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 110.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 111.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 127.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 169.254.0.0 0.0.255.255 any
access-list acl_outside deny ip 172.16.0.0 0.15.255.255 any
access-list acl_outside deny ip 175.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 176.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 177.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 178.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 179.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 180.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 181.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 182.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 183.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 184.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 185.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 192.0.2.0 0.0.0.255 any
access-list acl_outside deny ip 192.168.0.0 0.0.255.255 any
access-list acl_outside deny ip 197.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 223.0.0.0 0.255.255.255 any
access-list acl_outside deny ip 224.0.0.0 31.255.255.255 any


access-group acl_outside in interface outside

 
slight problem, this is the response i get:

Result of the command: "access-list acl_outside deny ip 0.0.0.0 0.255.255.255 any"

WARNING: <acl_outside> found duplicate element


Result of the command: "access-list acl_outside deny ip 1.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <1.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 2.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <2.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 5.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <5.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 10.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <10.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 14.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <14.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 23.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <23.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 27.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <27.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 31.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <31.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 36.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <36.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 37.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <37.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 39.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <39.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 42.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <42.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 46.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <46.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 49.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <49.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 50.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <50.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 100.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <100.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 101.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <101.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 102.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <102.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 103.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <103.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 104.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <104.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 105.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <105.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 106.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <106.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 107.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <107.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 108.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <108.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 109.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <109.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 110.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <110.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 111.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <111.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 127.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <127.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 169.254.0.0 0.0.255.255 any"

ERROR: IP address,mask <169.254.0.0,0.0.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 172.16.0.0 0.15.255.255 any"

ERROR: IP address,mask <172.16.0.0,0.15.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 175.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <175.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 176.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <176.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 177.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <177.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 178.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <178.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 179.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <179.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 180.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <180.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 181.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <181.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 182.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <182.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 183.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <183.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 184.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <184.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 185.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <185.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 192.0.2.0 0.0.0.255 any"

ERROR: IP address,mask <192.0.2.0,0.0.0.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 192.168.0.0 0.0.255.255 any"

ERROR: IP address,mask <192.168.0.0,0.0.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 197.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <197.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 223.0.0.0 0.255.255.255 any"

ERROR: IP address,mask <223.0.0.0,0.255.255.255> doesn't pair


Result of the command: "access-list acl_outside deny ip 224.0.0.0 31.255.255.255 any"

ERROR: IP address,mask <224.0.0.0,31.255.255.255> doesn't pair


i keep getting errors, did i do something wrong?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top