Cisco SCE 2000 4xGBE Installation And Configuration Manual page 77

Cisco systems sce 2000 platform installation and configuration guide
Table of Contents

Advertisement

Chapter 5
Connecting the Management Interfaces and Performing Initial System Configuration
E
XAMPLE
This example illustrates a common access control scenario. Let us assume the following:
We therefore need to create two access control lists:
ACL #1 = permit any IP address. Assign to IP access.
ACL #2 = permit access to 10.1.1.0, 10.10.10.1, deny to all others. Assign to Telnet access.
Would you like to enter the Access lists configuration menu? [no]: y
Would you like to create new Access lists or modify existing lists? [no]: y
Enter ACL number: 1
Does this entry permit access? [yes]:
Enter IP address or the word 'any' to denote any IP address: any
This entry matches every IP address, no use in adding more entries to this
list.
Would you like to configure another list? [no]: y
Enter ACL number: 2
Does this entry permit access? [yes]:
Enter IP address or the word 'any' to denote any IP address: 10.1.1.0
Enter wildcard bits: 0.0.0.0
Would you like to add another entry to this list? [no]:y
Does this entry permit access? [yes]:
Enter IP address or the word 'any' to denote any IP address: 10.10.10.1
Enter wildcard bits: 0.0.0.0
Would you like to add another entry to this list? [no]:y
Does this entry permit access? [yes]:n
Enter IP address or the word 'any' to denote any IP address: any
This entry matches every IP address, no use in adding more entries to this
list.
Would you like to configure another list? [no]:
Enter IP access-class [0]: 1
Enter Telnet access-class [0]: 2
E
XAMPLE
This example skips the first section of the dialog (creating/modifying), and proceeds directly to
assign existing ACLs.
Would you like to enter the Access lists configuration menu? [no]: y
Would you like to create new Access lists or modify existing lists? [no]:
Enter IP access-class [0]: 10
Enter Telnet access-class [0]: 22
OL-7824-04
:
We want to permit every station to access the SCE on the management port (e.g. ping,
SNMP polling etc.).
We want to restrict Telnet access to only a few permitted stations.
For general IP access — permit access to all IP addresses.
For Telnet — permit access to the specified IP address, and deny to all others.
2:
Cisco SCE 2000 4xGBE Installation and Configuration Guide
Initial System Configuration
5-15

Advertisement

Table of Contents
loading

Table of Contents