cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
395
Views
0
Helpful
3
Replies

PIX 515 Blocking non-US IPs

gecko2207
Level 1
Level 1

Is there a way to block all IPs from outside the US on a PIX 515e version 7.1(1)?

3 Replies 3

andrew.prince
Level 10
Level 10

Is this from the inside going outside? or outside coming in?

Either way - it would be an exercise in futility.

You bascially talking about blocking 80% of the routable terresteral internet IP space.

This would be outside coming in. I know that there is a ton of IP space to block, I could do it with a bunch of access lists using class A or B subnets assigned to RIPE, APNIC,LACNIC, and AfriNIC but I was wondering if there was some easier way?

Thanks,

Brandon

Of course there is an easier way - just allow the subnets you want to come in, then the default deny all is applied!

Review Cisco Networking products for a $25 gift card