11-08-2003 08:45 PM - edited 03-02-2019 11:34 AM
Hi,
I intend to restrict Telnet access to only a certain VLAN eg (VLAN10). How shd i go abt it? Right now, all VLAN hosts are able to telnet into the devices.
Thanks
-Steven-
Solved! Go to Solution.
11-09-2003 09:31 PM
Here permit the VLAN 10 subenet.Implicitly remaining VLAN subnets will get deny.
---------------------------------------------------
Access-list 1 permit
line vty 0 4
access-class 1 in
---------------------------------------------------
Example: VLAN10 subnet is 10.0.0.x/24
access-list 1 permit 10.0.0.0 0.0.0.255
line vty 0 4
access-class 1 in
11-08-2003 08:54 PM
you can create and acl to permit only the subnet you want. and then use the access-class command on the vty line bind the acl to it.
access-list 1 permit any
line vty 0 4
access-class 1
hope that helps
11-09-2003 09:32 AM
Infact your access-list should look like this.
access-list 1 deny
access-list 1 permit any ----> permit all other vlans
line vty 0 4
access-class 1
11-09-2003 09:31 PM
Here permit the VLAN 10 subenet.Implicitly remaining VLAN subnets will get deny.
---------------------------------------------------
Access-list 1 permit
line vty 0 4
access-class 1 in
---------------------------------------------------
Example: VLAN10 subnet is 10.0.0.x/24
access-list 1 permit 10.0.0.0 0.0.0.255
line vty 0 4
access-class 1 in
11-09-2003 09:50 PM
Disregard my above post. I thought you wanted to deny access to a particular vlan.
Look at the last post from preddyi@yahoo.com, you can follow that.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: