access-list 107 deny tcp 220.127.116.11 0.0.3.255 any eq http
access-list 107 permit ip any any
The wildcard 0.0.3.255 is a block size of 4, the 3rd octet will block anything from 12-15 and application http(80)
My quesion is with the ip any any this source ip 18.104.22.168 port 53 should be allowed? The book i have shows that it is denied?
Yes 22.214.171.124 port 53 permitted, the first line of the ACL only deny HTTP traffic sourced by 126.96.36.199/22 toward any destination, Extended access control lists is a packet filtering methodology which is inspect the traffic to permit/deny flow (Source& destination address + source and destination port)from UP to Down So if there is a traffic sourced from 188.8.131.52/22 port 53 toward any will permitted, ANY TRAFFIC FLOW WILL BE PERMITTED else the first line.
Please rate helpful posts.