WAN Requirements for Central
Office/Desert View
ACL
CONFIGURATION
(To deny student
access to all but Webserver 10.0.12.3)
--------------------------------------------------------------------------
CO>enable
CO#configure terminal
CO(config)#access-list 101 permit ip any host 10.0.12.3
CO(config)#access-list 101 deny ip 10.0.0.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.2.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.4.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.6.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.8.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.12.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.14.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.16.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.18.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.20.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.22.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.24.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.26.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.28.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.30.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.32.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.34.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.36.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.38.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.40.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.42.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.44.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.46.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.48.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.50.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.52.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.54.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.56.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.58.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 deny ip 10.0.60.0 0.0.1.255 10.0.12.0
0.0.1.255
CO(config)#access-list 101 permit ip any any
CO(config)#int Fastethernet 0/0
CO(config-if)#ip access-group 101 out
CO(config-if)#end
|