<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic do you have a real example? I in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/acl-list/m-p/2424882#M238780</link>
    <description>do you have a real example? I assume that the 23 and 2000 should be ports which were allowed with "tcp" when you also use the keyword "eq". With "ip" there are no ports allowed. So it would be really important to know what you are referring to.</description>
    <pubDate>Fri, 02 May 2014 21:00:09 GMT</pubDate>
    <dc:creator>Karsten Iwen</dc:creator>
    <dc:date>2014-05-02T21:00:09Z</dc:date>
    <item>
      <title>ACL list</title>
      <link>https://community.cisco.com/t5/network-security/acl-list/m-p/2424878#M238769</link>
      <description>&lt;P&gt;Confused on the ACL, when to use tcp host and IP host in the access list I.e permit tcp host or IP host.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:09:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/acl-list/m-p/2424878#M238769</guid>
      <dc:creator>Mohammed Yusuf</dc:creator>
      <dc:date>2019-03-12T04:09:08Z</dc:date>
    </item>
    <item>
      <title>"tcp" is what it says, just</title>
      <link>https://community.cisco.com/t5/network-security/acl-list/m-p/2424879#M238773</link>
      <description>&lt;P&gt;"tcp" is what it says, just TCP. If you use "permit ip ..." in your ACL you allow all IP-protocols which is TCP/UDP/ICMP/GRE/ESP and so on.&lt;/P&gt;</description>
      <pubDate>Fri, 02 May 2014 12:08:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/acl-list/m-p/2424879#M238773</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2014-05-02T12:08:24Z</dc:date>
    </item>
    <item>
      <title>Sorry if I was not clear. I</title>
      <link>https://community.cisco.com/t5/network-security/acl-list/m-p/2424880#M238776</link>
      <description>&lt;P&gt;Sorry if I was not clear. I have seen others using permit ip host 172.xx.xx.xx 23 host 192.168.xx.0 2000 and some use it like&lt;/P&gt;&lt;P&gt;permit tcp 172.xx.xx.xx 23 host 192.168.xx.0 2000 so that what confuses me. there maybe an explanation for me to better understand.&lt;/P&gt;</description>
      <pubDate>Fri, 02 May 2014 13:40:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/acl-list/m-p/2424880#M238776</guid>
      <dc:creator>Mohammed Yusuf</dc:creator>
      <dc:date>2014-05-02T13:40:01Z</dc:date>
    </item>
    <item>
      <title>Sorry if I was not clear. I</title>
      <link>https://community.cisco.com/t5/network-security/acl-list/m-p/2424881#M238779</link>
      <description>&lt;P style="font-size: 14px; background-color: rgb(247, 247, 247);"&gt;Sorry if I was not clear. I have seen others using permit ip host 172.xx.xx.xx 23 host 192.168.xx.0 2000 and some use it like&lt;/P&gt;&lt;P style="font-size: 14px; background-color: rgb(247, 247, 247);"&gt;permit tcp 172.xx.xx.xx 23 host 192.168.xx.0 2000 so that what confuses me. there maybe an explanation for me to better understand.&lt;/P&gt;
Let me ask a question about a firewall rule.
Which answer is right and why?

Permit tcp host 10.10.10.254 eq 80 host 10.10.0.2 eq 5000

Permit IP host 10.10.10.254 eq host 10.10.0.2 eq 5000 

Which would the right way to use and why?</description>
      <pubDate>Fri, 02 May 2014 21:00:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/acl-list/m-p/2424881#M238779</guid>
      <dc:creator>Mohammed Yusuf</dc:creator>
      <dc:date>2014-05-02T21:00:08Z</dc:date>
    </item>
    <item>
      <title>do you have a real example? I</title>
      <link>https://community.cisco.com/t5/network-security/acl-list/m-p/2424882#M238780</link>
      <description>do you have a real example? I assume that the 23 and 2000 should be ports which were allowed with "tcp" when you also use the keyword "eq". With "ip" there are no ports allowed. So it would be really important to know what you are referring to.</description>
      <pubDate>Fri, 02 May 2014 21:00:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/acl-list/m-p/2424882#M238780</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2014-05-02T21:00:09Z</dc:date>
    </item>
  </channel>
</rss>

