11-10-2019 03:45 AM - edited 11-10-2019 06:05 AM
Can someone please see if i have configured the ACLs correctly also please tell me where to configure (iv) , i have attached images of my topology with web server ip addresses as well, any help would be much appreciated, thank you.
ACL105 - 192.168.2.0/ 25
-----------Red Router---------------------------
!
!
!
!
!
!
!
!
!
!
spanning-tree mode pvst
!
!
!
!
!
!
interface GigabitEthernet0/0/0
no ip address
duplex auto
speed auto
shutdown
!
interface GigabitEthernet0/0/1
no ip address
duplex auto
speed auto
!
interface GigabitEthernet0/0/1.1
encapsulation dot1Q 1 native
ip address 192.168.1.254 255.255.254.0
!
interface GigabitEthernet0/0/1.105
encapsulation dot1Q 105
ip address 192.168.2.126 255.255.255.128
ip helper-address 192.168.2.153
ip access-group ACLVLAN105 in
!
interface GigabitEthernet0/0/1.305
encapsulation dot1Q 305
ip address 192.168.2.142 255.255.255.240
!
interface Serial0/1/0
ip address 192.168.2.154 255.255.255.252
encapsulation frame-relay ietf
frame-relay map ip 192.168.2.154 115
!
interface Serial0/1/0.115 point-to-point
no ip address
clock rate 2000000
shutdown
!
interface Serial0/1/1
no ip address
clock rate 2000000
shutdown
!
interface Vlan1
no ip address
shutdown
!
router eigrp 10
passive-interface GigabitEthernet0/0/1
network 192.168.0.0 0.0.1.255
network 192.168.2.0 0.0.0.127
network 192.168.2.128 0.0.0.15
network 192.168.2.144 0.0.0.7
network 192.168.2.152 0.0.0.3
!
ip classless
ip route 0.0.0.0 0.0.0.0 192.168.2.153
!
ip flow-export version 9
!
!
ip access-list standard ACLTELNET
deny 192.168.2.0 0.0.0.127
permit any
ip access-list extended ACLVLAN105
permit tcp 192.168.2.0 0.0.0.127 host 140.0.0.1 eq www
deny ip 192.168.2.0 0.0.0.127 host 140.0.0.1
deny ip 192.168.2.0 0.0.0.127 host 135.0.0.35
permit tcp 192.168.2.0 0.0.0.127 host 192.168.2.153 eq telnet
permit ip any host 150.0.0.2
permit ip any host 192.168.2.145
permit ip any any
!
!
!
!
!
!
line con 0
exec-timeout 0 0
logging synchronous
!
line aux 0
!
line vty 0 4
access-class ACLTELNET in
password cisco
login
!
!
!
end
11-10-2019 04:50 AM
11-10-2019 06:05 AM
11-10-2019 06:09 AM
11-10-2019 06:06 AM - edited 11-10-2019 06:07 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide