Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

PIX ACCESS LISTS

Status
Not open for further replies.

jimyuk

Technical User
Sep 30, 2003
9
GB
Hi we have a PIX 501 firewall and i wish to block some websites like hotmail, Yahoo, MSN
Please can someone tell me the commands that will enable me to achieve this, i have spent sometime try'in some access-list configurations but with no sucsess..

Cheers
 
Specifically you would use something like :

access-list acl_outgoing deny tcp <lan subnet> <lan mask> host <ip of website> eq 80
#just repeat this line and exchange the ip of the website.
access-list acl_outgoing permit ip <lan subnet> <lan mask> any

access-group acl_ougoing in interface inside


Jan

Network Systems Engineer
CCNA/CQS
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top