I would say it could be extremely easy to accomplished if you replace your 2800 router with a Cisco ASA firewall. But that was not what you asking. AFAIK, established option in cisco router ios could only apply to tcp connections so udp and icmp are still permitted even your configuration works.
to verify if established option works you could try to deny your telnet/ssh/remote desktop into your cisco device or windows server/pc in another subnet:
ip access-list extended TEST_EST
deny tcp host YOUR_CISCO_DEVICE host YOUR_PC eq 23 established
#deny TCP establishment between test device and your pc. change 23 to different port numbers if you want to try with other protocol. 80 for web, 3389 for remote desktop
permit ip any any
permit icmp any any
#this two lines are used so that end user will not be disconnected from network
then apply this access-list to the subinterface where target device locates
Cisco 2509-RJ freezes during start-up I bought some Cisco 2509-RJ terminal server to work on my labs and was working fine. Today I turned it on and half way through starting up it seems to freeze. I can only find one instance of this happing to ...
Cisco Digital Network Architecture Center Modules(Design Module)Part.2In this article, we are going to talk about the Cisco Digital Network Architecture Center design Module. Cisco DNA Center gives us the flexibility and availability to con...
Connectivity Design considerations and recommendation
1.Management Access connectivity
If there is a dedicated OOB management path, consider connecting to CIMC and MGMT port.
If OOB path is not available, Connect the dedicated Management port to LAN Swi...
Cisco Digital Network Architecture Center Modules In this article, we are going to talk about Cisco Digital Network Architecture Center design Module. Cisco DNA Center gives us the flexibility and scalability to configure multiple fabric sites a...