03-06-2016 01:33 AM - edited 03-08-2019 04:50 AM
i found this in my wireless vlan ACL "permit ip host 0.0.0.0 host 255.255.255.255" at the top of the ACL rules , anyone have any idea what does it mean?
03-06-2016 07:41 AM
Since there is no mask specified, my guess is that somebody attempted to get broadcast from a "null" address to broadcast - probably for DHCP purposes.
03-06-2016 02:19 PM
I do not agree that there is no mask specified. In fact there is a mask specified for both the source address and the destination address and the mask is a 32 bit match (specifying a host specific address). What this entry does is to look for traffic whose source address is exactly 0.0.0.0 and whose destination address is exactly 255.255.255.255. My first thought was that the line was probably the result of a mistake in configuration. But perhaps there are packets from a NIC that does not have an IP address configured and is attempting to communicate to the broadcast address (as in DHCP request)?
HTH
Rick
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide