cisco コマンド【ACL】
関連タイピング
-
プレイ回数402英語長文354打
-
プレイ回数471長文英字77打
-
プレイ回数13英字60秒
-
プレイ回数399長文37打
-
プレイ回数1.1万長文英字60秒
-
プレイ回数388歌詞かな625打
-
プレイ回数810英字20打
-
プレイ回数147英語11打
問題文
(conf t)
conf t
RT#
(access-list 1 deny 192.168.0.0 0.0.0.255)
access-list 1 deny 192.168.0.0 0.0.0.255
RT(config)#
(access-list 1 permit any)
access-list 1 permit any
RT(config)#
(int gi0/0/1)
int gi0/0/1
RT(config)#
(ip access-group 1 out)
ip access-group 1 out
RT(config-if)#
(ip access-list standard TEST)
ip access-list standard TEST
RT(config)#
(deny 192.168.0.0 0.0.0.255)
deny 192.168.0.0 0.0.0.255
RT(config-std-nacl)#
(permit any)
permit any
RT(config-std-nacl)#
(exit)
exit
RT(config-std-nacl)#
(int gi0/0/1)
int gi0/0/1
RT(config)#
(ip access-group TEST out)
ip access-group TEST out
RT(config-if)#
(exit)
exit
RT(config-if)#
(no access-list 1)
no access-list 1
RT(config)#
(ip access-list standard 1)
ip access-list standard 1
RT(config)#
(no 10)
no 10
RT(config-std-nacl)#
(exit)
exit
RT(config-std-nacl)#
(access-list 1 permit host 192.168.0.11)
access-list 1 permit host 192.168.0.11
RT(config)#
(line vty 0 4)
line vty 0 4
RT(config)#
(access-class 1 in)
access-class 1 in
RT(config-line)#
(exit)
exit
RT(config-line)#
(access-list 100 deny ip host 192.168.1.11 172.16.1.0 0.0.0.255)
access-list 100 deny ip host 192.168.1.11 172.16.1.0 0.0.0.255
RT(config)#
(access-list 100 deny icmp host 192.168.1.11 172.16.1.0 0.0.0.255 echo)
access-list 100 deny icmp host 192.168.1.11 172.16.1.0 0.0.0.255 echo
RT(config)#
(access-list 100 permit tcp any host 172.16.0.11 eq www)
access-list 100 permit tcp any host 172.16.0.11 eq www
RT(config)#
(access-list 100 deny ip any any)
access-list 100 deny ip any any
最終行
(int gi0/0/1)
int gi0/0/1
RT(config)#
(ip access-group 100 in)
ip access-group 100 in
RT(config-if)#
(exit)
exit
RT(config-if)#
(ip access-list extended EXTEST)
ip access-list extended EXTEST
RT(config)#
(deny tcp any host 192.168.0.11 eq 23)
deny tcp any host 192.168.0.11 eq 23
RT(config-ext-nacl)#
(permit ip any any)
permit ip any any
RT(config-ext-nacl)#
(exit)
exit
RT(config-ext-nacl)#
(int gi0/0/1)
int gi0/0/1
RT(config)#
(ip access-group EXTEST in)
ip access-group EXTEST in
RT(config-if)#
(exit)
exit
RT(config-if)#
(do show access-lists)
do show access-lists
RT(config)#