cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
322
Views
0
Helpful
1
Replies

filter ip a variety of ip addresses using acl

SOL10
Level 1
Level 1

hi all

is it possible to filter say 7-8 different ip address by creating a group and apply that group acl. eg.

if i have 10.5.5.10,172.16.10.10,192.168.20.20,192.168.10.10 etc, rather than creat individual permit/deny acl can i not just group the above ip address and then apply the acl. so in future if these ip addresses change, i can just change it in one place.

Regards

1 Reply 1

Istvan_Rabai
Level 7
Level 7

Hi Suleiman,

In general it is possible to configure acls so the addresses are "grouped" or summarized.

In your case you can group the 192.168.20.20 and 192.168.10.10 together, so the acl would look like this:

access-list 1 permit host 10.5.5.10

access-list 1 permit host 172.16.10.10

access-list 1 permit 192.168.0.0 0.0.255.255

In the last row, of course, other possibilities also exist, but this one may be the simplest.

So there are only 3 lines.

If you need to group other addresses, please post them and I will help you create the shortest possible access-list.

Cheers:

Istvan