Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

ACL on 2821

I want to apply an ACL on my router so that outer world would be able to access the inside hosts on some specific ports and the internal servers will reply back . Also the internal servers should be able to access the outer would on all ports without any issues .

So should i use reflex access list for this .

ip access-list extended port_allow

permit tcp any XXX.XXX.XXX.XXX XXX.XXX.XXX.XXX eq 10111 reflect create-reflex-list

permit tcp any XXX.XXX.XXX.XXX XXX.XXX.XXX.XXX  eq 10112 reflect create-reflex-list

permit icmp any any echo-reply

deny ip any any

Hall of Fame Super Gold

Re: ACL on 2821

You do not need reflexive ACL for that.

New Member

Re: ACL on 2821

So you recommand me not to use reflex & if i block the inside access

, everything outbound will work fine?

New Member

Re: ACL on 2821

Also should i mention any particular command to allo

w all outbound access

CreatePlease login to create content