cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
363
Views
0
Helpful
1
Replies

PIX vs Router ACL Matches

edsantos1
Level 1
Level 1

Hi,

With a PIX, I believe that each access list match is on a 'per tcp flow' basis not on a 'per matching packet' basis. Is this the same for routers or do routers match on a per packet basis??

Thanks

1 Reply 1

jgervia_2
Level 1
Level 1

Hello,

Routers are generally now aware of the upper layers of the OSI model. If you had an access-list that said 'permit tcp any any eq 80' it would match each packet hitting the access list that had a destination port of 80

--Jason

Please rate this message if it helped solve some or all of your issue.

Review Cisco Networking for a $25 gift card