Cisco访问控制列表的配置

来源:互联网 发布:python dill 编辑:程序博客网 时间:2024/05/24 22:44

实现PC2 可以ping PC5但是不能ping PC2

PC3可以ping PC4但是不能ping PC5


PC2  IP1.1.1.10

GW:1.1.1.1

 

PC3  IP1.1.1.20

GW:1.1.1.1

 

PC4  IP2.2.2.10

GW:2.2.2.2

 

PC5  IP2.2.2.20

GW:2.2.2.2

 

 

Router>en

Router#config t

Enter configuration commands, one per line. End with CNTL/Z.

Router(config)#int f0/0

Router(config-if)#ip add 1.1.1.1 255.0.0.0

Router(config-if)#no sh

 

Enter configuration commands, one per line. End with CNTL/Z.

Router(config)#int f0/1

Router(config-if)#ip add 2.2.2.2 255.0.0.0

Router(config-if)#no sh

 

Router(config-if)#

%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up

 

Router(config-if)#exit

Router(config)#access-list 100 deny ip host 1.1.1.10 host 2.2.2.10

Router(config)#access-list 100 deny ip host 1.1.1.20 host 2.2.2.20

Router(config)#access-list 100 deny ip host 2.2.2.10 host 1.1.1.10

Router(config)#access-list 100 deny ip host 2.2.2.20 host 1.1.1.20

Router(config)#access-list 100 permit ip any any

 

//启用ACL

Int f0/0

Ip access-group 100 in


0 0