Cisco Workaround

From: Alvaro Gordon-Escobar (alvaroge_at_molecularstaging.com)
Date: 07/23/03

  • Next message: CHRIS GRABENSTEIN: "RE: finding who has logged in on Win2k Pro"
    Date: Wed, 23 Jul 2003 10:15:22 -0400
    To: <firewalls@securityfocus.com>, <security-basics@securityfocus.com>
    
    

    will this access list modification prevent my internal DNS server from updates to it self from my telco's DNS server?

    access-list 101 deny 53 any any
    access-list 101 deny 55 any any
    access-list 101 deny 77 any any
    access-list 101 deny 103 any any
    !--- insert any other previously applied ACL entries here
    !--- you must permit other protocols through to allow normal
    !--- traffic -- previously defined permit lists will work
    !--- or you may use the permit ip any any shown here
    access-list 101 permit ip any any

    Thanks in advance

    ~alvaro Escobar

    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------


  • Next message: CHRIS GRABENSTEIN: "RE: finding who has logged in on Win2k Pro"

    Relevant Pages

    • RE: Cisco Workaround
      ... | will this access list modification prevent my internal DNS server from ... | updates to it self from my telco's DNS server? ... | access-list 101 deny 53 any any ... |!--- you must permit other protocols through to allow normal ...
      (Security-Basics)
    • Re: Cisco Workaround
      ... this ACL doesn't block any TCP nor UDP traffic. ... will this access list modification prevent my internal DNS server from ... access-list 101 deny 53 any any ... !--- you must permit other protocols through to allow normal ...
      (Security-Basics)
    • RE: Cisco Workaround
      ... These are IP protocols you are denying no TCP or UDP protocols. ... updates to it self from my telco's DNS server? ... access-list 101 deny 53 any any ... !--- you must permit other protocols through to allow normal ...
      (Security-Basics)
    • Re: cisco and telewest/virgin media
      ... I have the router plugged into the modem but when i ... permit 192.168.5.0 0.0.0.255 ... deny 53 any any ...
      (comp.dcom.sys.cisco)
    • Re: Cisco 827 - logging on, but nothing being logged
      ... Your deny ip any is NOT at the end og the ACL ... ... send udp & tcp traffic to this router, ... at the end of the access-list so I would expect to see the permit ... tcp traffic being logged on the 1720. ...
      (comp.dcom.sys.cisco)