03-04-2009 12:24 PM - edited 03-06-2019 04:23 AM
When looking at one of our ACLs I sometimes see the port number after the source instead of the destination. Such as:
permit udp any eq 1434 any
What is the difference between putting the port after the source and after the destination?
03-04-2009 12:39 PM
What you are matching there is
Any source IP on udp port 1434 only
to
Any destination IP on any udp port number
So you can see with extended ACL's you can get really granular.
03-04-2009 02:50 PM
Dave
The difference is whether the access list will check the source port of the packet (if you specify the port after the source address and mask) or check the destination port (if you specify the port after the destination address and mask).
HTH
Rick
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: