cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
379
Views
0
Helpful
1
Replies

Specific subnets access list

7kmartin
Level 1
Level 1

I am using 6500s with VPN cards and need to deny certain Voice subnets from being encrypted to all my sites.

For example some sites are

10.252.173.0

10.253.173.0

10.254.173.0

Given that when I keyed denies for each of my sites the VPN came up with a max of 8 deny statements.

I am trying the following:-

deny 10.0.173.0 0.255.0.255 10.252.173.0

permit....etc.

and the logic I assume is does this keep the requirement of all 10.x subnets not being encrypted ?

1 Reply 1

Harold Ritter
Level 12
Level 12

Your logic indeed denies all 10.X.173.X prefixes.

Hope this helps,

Harold Ritter
Sr Technical Leader
CCIE 4168 (R&S, SP)
harold@cisco.com
México móvil: +52 1 55 8312 4915
Cisco México
Paseo de la Reforma 222
Piso 19
Cuauhtémoc, Juárez
Ciudad de México, 06600
México

Review Cisco Networking for a $25 gift card