防火墙配置示例
下面是一个基本访问列表配置示例:
interface fastethernet0/0
ip address 192.168.12.1 255.255.255.0
!
interface fastethernet1/0
ip address 2.2.2.2 255.255.255.0
ip access-group 101 in
ip access-group 101 out
!
ip route 0.0.0.0 0.0.0.0 fastethernet1/0 2.2.2.1
!
access-list 101 permit tcp 192.168.12.0 0.0.0.255 any eq telnet
access-list 101 deny icmp 192.168.12.0 0.0.0.255 any
access-list 101 deny ip 2.2.2.0 0.0.0.255 any