|
|
RE: [cisco-ttl] 1841 Router Adsl Nat ve Access List ile ilgili
From: Ahmet TOMBAK <ahmet.tombak_at_....>
Date: Mon Apr 17 2006 - 08:45:04 EEST
access-list 105 remark SDM_ACL Category=1 access-list 105 permit tcp host 195.175.175.175 host 192.168.1.6 eq smtp access-list 105 deny ip any any seklinde olur bu arada bu access-listi atadigin yerden sadece ilgili ip'den smtp bilgileri gelir baska hic bir yerden hic bir baglanti gelmez. Eger baska yerlerden de sadece smtp istekleri gelmesin ama baska baglantilar gelsin istiyorsan access-list 105 remark SDM_ACL Category=1 access-list 105 permit tcp host 195.175.175.175 host 192.168.1.6 eq smtp access-list 105 deny tcp any 192.168.1.6 eq smtp access-list 105 permit ip any any
Selamlar,
-----Original Message-----
access-list 105 permit ip any any
interface FastEthernet0/0
inter dialer 0 da tanımla
interface Dialer0
cmesut <cmesut@yahoo.com> wrote:
Yorumlayacak arkadaslara simdiden tesekkurlerimle..Herkese iyi calismalar.
!This is the running config of the router: 192.168.1.2
import all
ip domain name yourdomain.com ip name-server 195.175.37.14 ip name-server 195.175.37.69 ! username cisco privilege 15 secret 5 $1$.5bA$XpNYReN7Pb2jiHvhQQD6t0 ! ! ! interface FastEthernet0/0 description $ETH-SW-LAUNCH$$INTF-INFO-FE 0$$ES_LAN$$FW_INSIDE$$ETH-LAN$ ip address 192.168.1.2 255.255.255.0 ip access-group 105 in no ip redirects no ip unreachables no ip proxy-arp ip nat inside ip route-cache flow ip tcp adjust-mss 1412 duplex auto speed auto no mop enabled ! interface FastEthernet0/1 no ip address no ip redirects no ip unreachables no ip proxy-arp ip route-cache flow shutdown duplex auto speed auto no mop enabled ! interface ATM0/0/0 no ip address no ip redirects no ip unreachables no ip proxy-arp ip route-cache flow no atm ilmi-keepalive dsl operating-mode auto ! interface ATM0/0/0.1 point-to-point description $ES_WAN$$FW_OUTSIDE$ pvc 8/35 pppoe-client dial-pool-number 1 ! ! interface Dialer0 ip address negotiated no ip redirects no ip unreachables no ip proxy-arp ip mtu 1452 ip nat outside encapsulation ppp ip route-cache flow dialer pool 1 dialer-group 1 ppp authentication chap pap callin ppp chap hostname user@ttnet ppp chap password 123456 ppp pap sent-username user@ttnet password 123456 ! ip classless ip route 0.0.0.0 0.0.0.0 Dialer0 ! ip http server ip http authentication local ip http timeout-policy idle 5 life 86400 requests 10000 ip nat inside source list 1 interface Dialer0 overload ip nat inside source static tcp 192.168.1.6 25 interface Dialer0 25
! access-list 1 remark INSIDE_IF=FastEthernet0/0 access-list 1 remark SDM_ACL Category=2 access-list 1 permit 192.168.1.0 0.0.0.255 access-list 105 remark SDM_ACL Category=1access-list 105 permit tcp host 195.175.175.175 host 192.168.1.6 eq smtp access-list 105 permit ip any any
dialer-list 1 protocol ip permit
--
Cisco Teknik Tartisma Listesi (Cisco-ttl)
Bu listede onerilen degisikliklerin uygulanmasindaki tum sorumluluk
kullaniciya aittir. Liste yoneticileri, oneride bulunan liste uyeleri ya da
bu uyelerin calistigi kuruluslar herhangi bir sekilde sorumlu tutulamazlar.
---------------------------------
YAHOO! GROUPS LINKS
Visit your group "cisco-ttl" on the web.
To unsubscribe from this group, send an email to:
cisco-ttl-unsubscribe@yahoogroups.com
Your use of Yahoo! Groups is subject to the Yahoo! Terms of Service.
---------------------------------
[Non-text portions of this message have been removed]
--
Cisco Teknik Tartisma Listesi (Cisco-ttl)
Bu listede onerilen degisikliklerin uygulanmasindaki tum sorumluluk
kullaniciya aittir. Liste yoneticileri, oneride bulunan liste uyeleri ya da
bu uyelerin calistigi kuruluslar herhangi bir sekilde sorumlu tutulamazlar.
Yahoo! Groups Links
--
Cisco Teknik Tartisma Listesi (Cisco-ttl)
Bu listede onerilen degisikliklerin uygulanmasindaki tum sorumluluk
kullaniciya aittir. Liste yoneticileri, oneride bulunan liste uyeleri ya da
bu uyelerin calistigi kuruluslar herhangi bir sekilde sorumlu tutulamazlar.
Yahoo! Groups Links
<*> To visit your group on the web, go to:
http://groups.yahoo.com/group/cisco-ttl/
<*> To unsubscribe from this group, send an email to:
cisco-ttl-unsubscribe@yahoogroups.com
<*> Your use of Yahoo! Groups is subject to:
http://docs.yahoo.com/info/terms/
Received on Tue Apr 18 10:49:01 2006
This archive was generated by hypermail 2.1.8 : Tue Apr 18 2006 - 10:49:04 EEST |