cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
344
Views
10
Helpful
2
Replies

Access-list configuration to deny www

somnath21
Level 1
Level 1

Hi,

we have two cisco core switch , 6 access-switch and 7 VLAN has been configured. now i want to block www access for the VLAN 11.

VLAN 11 ip range: 10.138.74.192 255.255.255.192

what access-list i need to configure in the core switch.

please assist in this issue..

thanx,

som

2 Replies 2

Istvan_Rabai
Level 7
Level 7

Hi Som,

The access-list will be:

access-list 101 deny tcp 10.138.74.192 0.0.0.63 any eq www

access-list 101 permit ip any any

Don't forget to apply this access-list to the appropriate interface outbound.

Cheers:

Istvan

Goutam Sanyal
Level 4
Level 4

Hi, Core Switch, Which one? You need to configure a VLAN-ACL. Define the policy, bonding with access-map, set the action and match the ACL number. Thanks Goutam Pls rate if it helps you!!!

Review Cisco Networking products for a $25 gift card