cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1158
Views
0
Helpful
2
Replies

Access list on 3750

ismailfayaz
Level 1
Level 1

I have a Catalyst 3750 switch acting as a core switch. I want configure access list on the switch to allow only specific ports to be accessible and deny all others.

Here is my access list

access-list 100 permit tcp any host 192.168.20.20 eq 25

access-list 100 permit tcp any host 192.168.20.20 eq 110

access-list 100 permit udp any host 192.168.20.20 eq 53

access-list 100 permit tcp any host 192.168.30.100 eq 80

access-list 100 permit tcp any host 192.168.30.30 eq 445

access-list 100 permit ip any host 192.168.10.10

access-list 100 deny any any log

When I apply this list to the VLANs incoming there is no internet access to that VLAN clients.

192.168.10.10 is connected to the ISP, and configured as default route on the core switch.

How can I accomplish this without breaking the internet access?

Thanks

2 Replies 2

Mahesh Gohil
Level 7
Level 7

Hello Ismail,

can you share topology and also please clarify those IP belongs to which part of topology

Regards

Mahesh

This is the network looks like

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card