cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
340
Views
10
Helpful
2
Replies

Access-list configuration to deny www

somnath21
Level 1
Level 1

Hi,

we have two cisco core switch , 6 access-switch and 7 VLAN has been configured. now i want to block www access for the VLAN 11.

VLAN 11 ip range: 10.138.74.192 255.255.255.192

what access-list i need to configure in the core switch.

please assist in this issue..

thanx,

som

2 Replies 2

Istvan_Rabai
Level 7
Level 7

Hi Som,

The access-list will be:

access-list 101 deny tcp 10.138.74.192 0.0.0.63 any eq www

access-list 101 permit ip any any

Don't forget to apply this access-list to the appropriate interface outbound.

Cheers:

Istvan

Goutam Sanyal
Level 4
Level 4

Hi, Core Switch, Which one? You need to configure a VLAN-ACL. Define the policy, bonding with access-map, set the action and match the ACL number. Thanks Goutam Pls rate if it helps you!!!

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card