cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1139
Views
0
Helpful
2
Replies

Access-group placement

grock
Level 1
Level 1

I am entirely confused, and online documentation that I found does not really addresses my question.

 

I have 3 PC on the inside 10.0.0.0/24

I have 1 server on the outside 205.0.0.1/24

 

How do I build the access-group if I want the inside to be allowed to reach the outside, vice-versa?

In what direction and interface do I build the access-group? What’s the logic behind this?

 

Do I place it on the inside or outside interface

And which direction do I sit this on?

#access-group INSIDE in interface INSIDE

#access-group OUTSIDE out interface OUTSIDE 

 

Each interface has (2) options. Either in or out. How do I know which to select, what logic do you use to help you simplify this logic?

2 Replies 2

Mike.Cifelli
VIP Alumni
VIP Alumni
Each interface has (2) options. Either in or out. How do I know which to select, what logic do you use to help you simplify this logic?

Inside incoming would be traffic from your local inside subnet. Outside incoming would be your server traffic coming into your outside interface. The logic can be viewed as incoming is entering your interface and outgoing is leaving your interface.

HTH!

duplicate post
Review Cisco Networking for a $25 gift card