Our organization wants to implement a wireless internet hotspot for visitors. I have an acl that only allows ports open for www and DNS. However, I want to shut access to webservers that are on our LAN. Any ideas. My current ACL looks like this:
permit tcp any any eq www log
permit tcp any any eq domain log
permit udp any any eq domain log