cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4566
Views
0
Helpful
2
Replies

meaning of "permit ip host 0.0.0.0 host 255.255.255.255"?

baselzind
Level 6
Level 6

i found this in my wireless vlan ACL "permit ip host 0.0.0.0 host 255.255.255.255" at the top of the ACL rules , anyone have any idea what does it mean?

2 Replies 2

pwwiddicombe
Level 4
Level 4

Since there is no mask specified, my guess is that somebody attempted to get broadcast from a "null" address to broadcast - probably for DHCP purposes.

I do not agree that there is no mask specified. In fact there is a mask specified for both the source address and the destination address and the mask is a 32 bit match (specifying a host specific address). What this entry does is to look for traffic whose source address is exactly 0.0.0.0 and whose destination address is exactly 255.255.255.255. My first thought was that the line was probably the result of a mistake in configuration. But perhaps there are packets from a NIC that does not have an IP address configured and is attempting to communicate to the broadcast address (as in DHCP request)?

HTH

Rick

HTH

Rick
Review Cisco Networking for a $25 gift card