Afrikaans
Akan
Albanian
Amharic
Arabic
Armenian
Azerbaijani
Basque
Belarusian
Bemba
Bengali
Bihari
Bosnian
Breton
Bulgarian
Cambodian
Catalan
Cebuano
Cherokee
Chichewa
Chinese (Simplified)
Chinese (Traditional)
Corsican
Croatian
Czech
Danish
Dutch
English
Esperanto
Estonian
Ewe
Faroese
Filipino
Finnish
French
Frisian
Ga
Galician
Georgian
German
Greek
Guarani
Gujarati
Haitian Creole
Hausa
Hawaiian
Hebrew
Hindi
Hmong
Hungarian
Icelandic
Igbo
Indonesian
Interlingua
Irish
Italian
Japanese
Javanese
Kannada
Kazakh
Kinyarwanda
Kirundi
Kongo
Korean
Krio (Sierra Leone)
Kurdish
Kurdish (Soranรฎ)
Kyrgyz
Laothian
Latin
Latvian
Lingala
Lithuanian
Lozi
Luganda
Luo
Luxembourgish
Macedonian
Malagasy
Malay
Malayalam
Maltese
Maori
Marathi
Mauritian Creole
Moldavian
Mongolian
Myanmar (Burmese)
Montenegrin
Nepali
Nigerian Pidgin
Northern Sotho
Norwegian
Norwegian (Nynorsk)
Occitan
Oriya
Oromo
Pashto
Persian
Polish
Portuguese (Brazil)
Punjabi
Quechua
Romanian
Romansh
Runyakitara
Russian
Samoan
Scots Gaelic
Serbian
Serbo-Croatian
Sesotho
Setswana
Seychellois Creole
Shona
Sindhi
Sinhalese
Slovak
Slovenian
Somali
Spanish
Spanish (Latin American)
Sundanese
Swahili
Swedish
Tajik
Tamil
Tatar
Telugu
Thai
Tigrinya
Tonga
Tshiluba
Tumbuka
Turkish
Turkmen
Twi
Uighur
Ukrainian
Urdu
Uzbek
Vietnamese
Welsh
Wolof
Xhosa
Yiddish
Yoruba
Zulu
In this practical lab we'll take a look to the access.
This configuration we are two others two surveys and two pieces in our lab.
In the first step let us saying that cover your piece you want a piece it too with proper default it
pays OK and for the second step we need to call for you an extended access list and provide that.
P.S. One can't reach the FTB talent and the DP Ports of P.S. 2 and we should also Ello for any other
terrific.
All right let's go.
So what I need to do is
first we need to configure P.S. 1 and P.S. 2 with proper default gateways.
As you can see that in the year PCI wants default gateway is here.
So I should use this IP address for PCI once Gateway and I should use to that one as the default courtesy
of the P.C. to that's got to the packet tracer packet res or Tor.
Oh you go
I need to close this so you can focus better.
OK
I'm going to the first P.S. And checking the IP configuration and my default gateway will be one that
one and I'm going to the second
desktop IP config
true that one
Oh to the 6.
Now do that one.
All right I accomplished my first step and let's take a look to the second step now.
In the second step I need to call for you and extend the access list and provide that.
P.S. one can reach the NDP telnet and A.S.A.P. ports of P.C. to so P.S. 1 is my source.
P.S. 2 is my destination as you can remember from our sessions extended access lists are written to
the closest rather to our source.
So I'm going to use them.
I'm going to configure an ACL on rather one which blocks the traffic for FTB telnet and H2 to prepare
the course coming from P.S. 1 and destined to P.S. To All right.
Let's go
I'm going into the rather one
enable first right.
Quality
and let's configure our access list access list.
I'm going to use a question mark as you can see that we have different grants that we can use for standard
or X extended access list because of I'm going to use extended access lists.
I'll use this range and this number right but I'm gonna do is I'm gonna deny some traffics right.
Deny
my protocols are working DCP so I'm gonna deny the TCB traffic now a question mark so the first thing
is I need to write my host address for source address.
OK I'm defining my source address.
I can use the IP address of my P.C. and be the wild card of 0 0 0 0.
But instead of this I can use just host command features easier.
Okay DCP host what is the IP address of my source term for the 1 1 5 down for the 1 1 5.
Okay.
And another question mark I need to define my destination address to my destination IP address is a
single host again.
10 for the 1 2 6
host 10 4 2 1 2 6 Politico and I'm going to match a given port number using the E 2 Q L and command
e q and I have another question mark I can't define the port numbers by using these numbers are I can
use the names of the protocols as well.
For simplicity I'm going to use the typing the port and search protocol names.
I'm going to deny if DP I'm gonna deny tell that and I'm gonna deny H to DP which means w w w
o k pretty cool.
The next step is I need the permit.
Any other traffic OK because my ACL.
I should write at least one permit statement please remember that OK access lists 100 permit IP any
any permit and IP traffic.
Okay I'm permitting anything other than I denied.
Above OK.
That's cool but mission is not accomplished I created my access list correctly but I need to implement
my access list to the related interface.
From inbound or outbound in here underlying the traffic of P.S. 1 so I can implement my ACL to this
interface inbound while packets coming from this P.C. to the these interface first and so one I block
this traffic OK.
No I need to go through the fast designs that one
first 01 interface first.
0 1 and I'm using IP access group the number of my ACL and in or out in this scenario I'm going to use
an inbound
OK.
Pretty cool I can refine my configuration using show axis.
This command and I can take a brief look to what I'm denying and what I am permitting for and that's
it.
OK.
We have completed our configuration lap and everything was fine thanks for weaving.
See you in the next session guys.
Can't find what you're looking for?
Get subtitles in any language from opensubtitles.com, and translate them here.