Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Access list to Block ports

Hi ,

I have congfired a access-list on my Internet router 3845 as attached to block ports 1720 & 5060 , but when i apply it on the intended interface the BGP state goes down.Is my configuration correct ? Also suggest .

1 ACCEPTED SOLUTION

Accepted Solutions

Re: Access list to Block ports

Hi there,

BGP uses TCP port 179, accordingly you must permit it on your access-list, and don't forget the access-list has an implicit deny in the end, so you should add permit ip any any at the end of your ACL after denying what you want to deny to permit the rest of the traffic.

HTH, please rate if it does help,

Mohammed Mahmoud.

2 REPLIES

Re: Access list to Block ports

Hi there,

BGP uses TCP port 179, accordingly you must permit it on your access-list, and don't forget the access-list has an implicit deny in the end, so you should add permit ip any any at the end of your ACL after denying what you want to deny to permit the rest of the traffic.

HTH, please rate if it does help,

Mohammed Mahmoud.

Re: Access list to Block ports

Your access-list does not carry any permit statemets.

include access-list 102 permit ip any any and check

HTH,

Narayan

200
Views
5
Helpful
2
Replies
CreatePlease login to create content