cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1897
Views
5
Helpful
2
Replies

Access list to Block ports

avicapri
Level 1
Level 1

Hi ,

I have congfired a access-list on my Internet router 3845 as attached to block ports 1720 & 5060 , but when i apply it on the intended interface the BGP state goes down.Is my configuration correct ? Also suggest .

1 Accepted Solution

Accepted Solutions

mohammedmahmoud
Level 11
Level 11

Hi there,

BGP uses TCP port 179, accordingly you must permit it on your access-list, and don't forget the access-list has an implicit deny in the end, so you should add permit ip any any at the end of your ACL after denying what you want to deny to permit the rest of the traffic.

HTH, please rate if it does help,

Mohammed Mahmoud.

View solution in original post

2 Replies 2

mohammedmahmoud
Level 11
Level 11

Hi there,

BGP uses TCP port 179, accordingly you must permit it on your access-list, and don't forget the access-list has an implicit deny in the end, so you should add permit ip any any at the end of your ACL after denying what you want to deny to permit the rest of the traffic.

HTH, please rate if it does help,

Mohammed Mahmoud.

royalblues
Level 10
Level 10

Your access-list does not carry any permit statemets.

include access-list 102 permit ip any any and check

HTH,

Narayan

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Innovations in Cisco Full Stack Observability - A new webinar from Cisco