Cisco IOS: Difference between revisions
Jump to navigation
Jump to search
No edit summary |
No edit summary |
||
Line 8: | Line 8: | ||
# <code>(config)# monitor session 1 destination interface Gi2/1/3</code> | # <code>(config)# monitor session 1 destination interface Gi2/1/3</code> | ||
ACLs | =ACLs= | ||
Insert into existing Standard ACL | |||
# show access-list 24 | ===Insert into existing Standard ACL=== | ||
(config)# ip access-list standard 24 | |||
(config-std-nacl)# 15 permit 10.1.2.0 0.0.0.255 | # <code># show access-list 24</code> | ||
(config-std-nacl)# exit | # <code>(config)# ip access-list standard 24</code> | ||
(config)# ip access-list resequence 24 10 10 | # <code>(config-std-nacl)# 15 permit 10.1.2.0 0.0.0.255</code> | ||
Insert into existing Extended ACL | # <code>(config-std-nacl)# exit</code> | ||
# sh access-lists vlan2-out | # <code>(config)# ip access-list resequence 24 10 10</code> | ||
(config)# ip access-list extended vlan2-out | |||
(config-ext-nacl)# 1421 permit tcp object-group VPN.CLIENTS host 10.1.49.23 eq 3389 | ===Insert into existing Extended ACL=== | ||
(config)# ip access-list resequence vlan2-out 10 10 | # <code># sh access-lists vlan2-out</code> | ||
# <code>(config)# ip access-list extended vlan2-out</code> | |||
# <code>(config-ext-nacl)# 1421 permit tcp object-group VPN.CLIENTS host 10.1.49.23 eq 3389</code> | |||
# <code>(config)# ip access-list resequence vlan2-out 10 10</code> | |||
=VPN= | =VPN= |
Latest revision as of 02:56, 12 February 2024
Packet Capture
(This example is on a Catalyst 6506-E)
# show monitor
# Show run | inc monitor session
(config)# no monitor session 1
(config)# monitor session 1 source vlan 1309
(config)# monitor session 1 destination interface Gi2/1/3
ACLs
Insert into existing Standard ACL
# show access-list 24
(config)# ip access-list standard 24
(config-std-nacl)# 15 permit 10.1.2.0 0.0.0.255
(config-std-nacl)# exit
(config)# ip access-list resequence 24 10 10
Insert into existing Extended ACL
# sh access-lists vlan2-out
(config)# ip access-list extended vlan2-out
(config-ext-nacl)# 1421 permit tcp object-group VPN.CLIENTS host 10.1.49.23 eq 3389
(config)# ip access-list resequence vlan2-out 10 10
VPN
Some Useful Links
LAN-to-LAN IPsec Tunnel Between Two Routers Configuration Example
Cisco IOS VPN Configuration Guide
Site-to-Site IKEv2 Tunnel between ASA and Router Configuration Examples