cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
393
Views
0
Helpful
3
Replies

PIX 515 Blocking non-US IPs

gecko2207
Level 1
Level 1

Is there a way to block all IPs from outside the US on a PIX 515e version 7.1(1)?

3 Replies 3

andrew.prince
Level 10
Level 10

Is this from the inside going outside? or outside coming in?

Either way - it would be an exercise in futility.

You bascially talking about blocking 80% of the routable terresteral internet IP space.

This would be outside coming in. I know that there is a ton of IP space to block, I could do it with a bunch of access lists using class A or B subnets assigned to RIPE, APNIC,LACNIC, and AfriNIC but I was wondering if there was some easier way?

Thanks,

Brandon

Of course there is an easier way - just allow the subnets you want to come in, then the default deny all is applied!

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card