×

Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.

Strange behavior

Unanswered Question
May 13th, 2012
User Badges:

Hi all.


I have configured the following access-list on routers fa0 interface (i am using 1801)


access-list 111 permit ip any any log


and applied it in "in" direction on Fa0 interface.


Now when i am sending ssh packets to this interface its showing below


*May 14 05:09:00.104: %SEC-6-IPACCESSLOGP: list 111 permitted tcp 172.18.128.2(0) -> 172.18.128.146(0), 1 packet


why its not showing any port number ?

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Vivek Ganapathi Mon, 05/14/2012 - 01:38
User Badges:
  • Silver, 250 points or more

Hi,


The reason why you are not seeing the log is, there is no ACL matching the Layer4 ports. So, the router has nothing to show or not inspecting it.


Thanks

Vivek

Actions

This Discussion