Official Lammle User Forum
|
#1
|
|||
|
|||
|
good,
Permissions wanted to create a (permit) to the host in the 192168112217 ACLs and extended VLAN100_IN VLAN100_OUT to have Access to the host 192.168.250.33, marked configuration I did the following ACLs colorful, but are not working, not responding to ping 192.168.250.33 (timed). follows the following ACLs: Extended IP access list VLAN100_IN 10 deny tcp any any eq 138 20 deny udp any any eq netbios-dgm (854797 matches) 30 deny udp any any eq netbios-ns (380638 matches) 40 permit icmp any any (5833375 matches) 50 permit tcp any any established (66689567 matches) 60 permit tcp any host 195.8.4.138 (4709 matches) 70 permit tcp any any eq www (189 matches) 80 permit tcp any any eq 443 (11 matches) 90 permit udp any any eq domain (13239562 matches) 100 permit udp any eq syslog any eq syslog (1700800 matches) 110 permit udp any eq rip any eq rip 120 permit tcp host 192.168.250.33 host 192.168.0.33 (24 matches) 130 permit udp host 192.168.250.33 host 192.168.0.33 (8 matches) 140 permit icmp any 192.168.0.0 0.0.0.255 150 permit icmp any 192.168.114.0 0.0.0.255 151 permit icmp host 192.168.112.217 host 192.168.250.33 160 deny ip any any log (1299 matches) Extended IP access list VLAN100_OUT 10 deny tcp any any eq 138 (152 matches) 20 deny udp any any eq netbios-dgm 30 deny udp any any eq netbios-ns (1252 matches) 40 permit icmp any any (7058939 matches) 50 permit tcp any any established (36842089 matches) 60 permit udp any gt 1023 any eq domain (553 matches) 70 permit udp any eq domain any gt 1023 (13129849 matches) 80 permit udp any eq syslog any eq syslog 90 permit udp any eq rip any eq rip (46 matches) 100 permit tcp 192.168.114.0 0.0.0.255 gt 1023 any eq 23000 (1 match) 110 permit tcp 192.168.114.0 0.0.0.255 gt 1023 any eq 777 (101 matches) 120 permit tcp host 192.168.0.33 gt 1023 any eq 23000 (25 matches) 130 permit tcp host 192.168.0.33 gt 1023 any eq 777 140 permit tcp 192.168.0.0 0.0.0.255 gt 1023 any eq www (60078 matches) 150 permit tcp 192.168.0.0 0.0.0.255 gt 1023 any eq 443 (3 matches) 160 permit tcp 192.168.114.0 0.0.0.255 gt 1023 any eq www (320863 matches) 170 permit tcp 192.168.114.0 0.0.0.255 gt 1023 any eq 443 (187309 matches) 171 permit ip host 192.168.112.217 host 192.168.250.33 180 permit tcp host 192.168.0.33 host 192.168.250.33 (5658 matches) 190 permit udp host 192.168.0.33 host 192.168.250.33 (18 matches) 200 permit ip host 192.168.0.36 any (1045540 matches) 210 permit tcp 192.168.0.0 0.0.0.255 any eq 3389 (305 matches) 220 permit tcp 192.168.114.0 0.0.0.255 any eq 3389 (629 matches) 230 permit icmp 192.168.0.0 0.0.0.255 any 240 permit icmp 192.168.114.0 0.0.0.255 any 250 permit udp 195.8.4.128 0.0.0.15 gt 1023 192.168.0.0 0.0.255.255 gt 1023 (44239 matches) 260 deny ip any any log (177592 matches) |















Threaded Mode