Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

router access list question

Status
Not open for further replies.

niqsterd

Technical User
Feb 3, 2007
2
US
Hi,
In a cisco router.
Is there any difference between having ten entries in access list number 1 and having 1 entry each in access lists 1 through 10?

for instance if I want to block traffic to 10 different ip addresses (web sites). Is one method perfered? easier? am I misunderstanding something with access lists?

Why do I see some access lists with the only entry being in an access list other # than 1?. Why not start at #1?

thanks

Niqster
 
No you don't make 10 different lists you make one and then apply that access list to whatever interface you want to control traffic over .
 
the 1 references a group or container
for example access-list 1 permit 10.0.0.1
access-list 1 deny any

above are two rules for access-list (rule set 1)

you then apply this to an interface by using the ip access-gr 1 in or out depending on inbound or outbound traffic
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top