Term
|
Definition
Starts at top and stops after first match is made, implicit deny added at end of all ACLs
Find Great Talent for your next It department
Instructor led Courses , Get Certified |
|
|
Term
|
Definition
Can Filter based on the source address of the packet , less processor intensive,
Find Great Talent for your next It department Instructor led Courses , Get Certified |
|
|
Term
Extended Access Control List |
|
Definition
Filter by Source and Destination IP address, Additional filters with Port Numbers www.johnmasonservices.com |
|
|
Term
|
Definition
Allows use of names instead of numbers when creating access list www.johnmasonservices.com |
|
|
Term
Standard Access List Placement |
|
Definition
Closes to destination but not always www.johnmasoninstitute.com |
|
|
Term
Extended Access Control List Placement |
|
Definition
Placed Closes to Destination but not ALWAYS www.johnmasoninstitute.com |
|
|
Term
Standard Access List Numbering |
|
Definition
1-99 and IP Standard Access Lists (expanded range) 1300-1999 www.johnmasonservices.com |
|
|
Term
Extended Access Control List Numbering |
|
Definition
100-199 IP Extended Access Lists (expanded range) 2000-2699 www.johnmasonservices.com |
|
|
Term
Standard Access Control List format ( Write out) |
|
Definition
access-list 1 permit 192.168.90.36 0.0.0.0 www.johnmasoninstitute.com |
|
|
Term
Standard Access Control List Example |
|
Definition
access-list 80 deny host 192.168.10.36 log www.johnmasonservices.com |
|
|
Term
Extended Access Control List Example |
|
Definition
access-list 130 permit ip 192.168.55.30 0.0.0.0 192.168.100.41 0.0.0.0 www.johnmasonservices.com |
|
|
Term
Standard Named Access list Example with applying to interface |
|
Definition
Router# configure terminal (or config t) Router(config)#ip access-list standard Sales Router(config-std-nacl)# deny host 172.16.70.35 Router(config-std-nacl)# access-list permit any Router(config-std-nacl)# interface e0 Router(config-if)# ip access-group Sales out Router(config-if)# exit Router(config)# exit www.johnmasoninstitute.com |
|
|
Term
Extended Access Control List with applying to interface Example |
|
Definition
Router# configure terminal (or config t) Router(config)#ip access-list extended Marketing Router(config-ext-nacl)# deny tcp any host 192.168.207.27 eq 80 Router(config-ext-nacl)# permit tcp any 192.168.207.0 0.0.0.255 eq www Router(config-ext-nacl)# interface e0 Router(config-if)# ip access-group Marketing in Router(config-if)# exit Router(config)# exit www.johnmasoninstitute.com |
|
|
Term
|
Definition
Example Range 192.168.20.0 to 192.168.20.15 use 192.168.20.0 0.0.0.15 Range 192.168.20.0 to 192.168.20.255 use 192.168.20.0 0.0.0.255 /25 255.255.255.128 0.0.0.127 /24 255.255.255.0 0.0.0.255 /23 255.255.254.0 0.0.1.255 /22 255.255.252.0 0.0.3.255 http://www.learncisco.net/courses/icnd-1/acls-and-nat/acl-wildcard-masking.html
www.johnmasoninstitute.com |
|
|
Term
|
Definition
Starts at top and stops after first match is made, implicit deny added at end of all ACLs www.johnmasonservices.com |
|
|
Term
|
Definition
Can Filter based on the source address of the packet , less processor intensive, www.johnmasoninstitute.com |
|
|
Term
Extended Access Control List |
|
Definition
Filter by Source and Destination IP address, Additional filters with Port Numbers www.johnmasonservices.com |
|
|
Term
|
Definition
Allows use of names instead of numbers when creating access list |
|
|
Term
Standard Access List Placement |
|
Definition
Closes to destination but not always www.johnmasoninstitute.com |
|
|
Term
Extended Access Control List Placement |
|
Definition
Placed Closes to Destination but not ALWAYS www.johnmasoninstitute.com |
|
|
Term
Standard Access List Numbering |
|
Definition
1-99 and IP Standard Access Lists (expanded range) 1300-1999 |
|
|
Term
Extended Access Control List Numbering |
|
Definition
100-199 IP Extended Access Lists (expanded range) 2000-2699 |
|
|
Term
Standard Access Control List format ( Write out) |
|
Definition
access-list 1 permit 192.168.90.36 0.0.0.0 www.johnmasoninstitute.com |
|
|
Term
Standard Access Control List Example |
|
Definition
access-list 80 deny host 192.168.10.36 log www.johnmasonservices.com |
|
|
Term
Extended Access Control List Example |
|
Definition
access-list 130 permit ip 192.168.55.30 0.0.0.0 192.168.100.41 0.0.0.0 www.johnmasonservices.com |
|
|
Term
Standard Named Access list Example with applying to interface |
|
Definition
Router# configure terminal (or config t) Router(config)#ip access-list standard Sales Router(config-std-nacl)# deny host 172.16.70.35 Router(config-std-nacl)# access-list permit any Router(config-std-nacl)# interface e0 Router(config-if)# ip access-group Sales out Router(config-if)# exit Router(config)# exit www.johnmasoninstitute.com |
|
|
Term
Extended Access Control List with applying to interface Example |
|
Definition
Router# configure terminal (or config t) Router(config)#ip access-list extended Marketing Router(config-ext-nacl)# deny tcp any host 192.168.207.27 eq 80 Router(config-ext-nacl)# permit tcp any 192.168.207.0 0.0.0.255 eq www Router(config-ext-nacl)# interface e0 Router(config-if)# ip access-group Marketing in Router(config-if)# exit Router(config)# exit www.johnmasoninstitute.com |
|
|
Term
|
Definition
Example Range 192.168.20.0 to 192.168.20.15 use 192.168.20.0 0.0.0.15 Range 192.168.20.0 to 192.168.20.255 use 192.168.20.0 0.0.0.255 /25 255.255.255.128 0.0.0.127 /24 255.255.255.0 0.0.0.255 /23 255.255.254.0 0.0.1.255 /22 255.255.252.0 0.0.3.255 http://www.learncisco.net/courses/icnd-1/acls-and-nat/acl-wildcard-masking.html
www.johnmasoninstitute.com |
|
|