Word :    Username :           
 

Archived from groups: comp.security.firewalls (More info?)

 

Hi,

Are the Access List on my 2701 router its same as PIX 501(6.3 ver)??

Mucho appreciated.

Sponsored Links
Register or log in to remove.

Archived from groups: comp.security.firewalls (More info?)

 

In article <1127441738.956071.3210@g44g2000cwa.googlegroups.com>,
<kennylee88@gmail.com> wrote:
: Are the Access List on my 2701 router its same as PIX 501(6.3 ver)??

Cisco doesn't have a 27xx model line. If you are referring to a 2701
model from a different manufacturer, we need to know which
manufacturer.

Cisco used to offer 1601 and 2501 routers (but not 2601 or 3601.) Cisco still
offers a 1701 ADSL router; those aren't all that common. There is also
the relatively new Cisco 2801 router.

Access lists on the Cisco 1601, 2501, and 2801 router are NOT the
same as access lists on the PIX 501 -- but they are fairly
similar.

Access lists on the PIX use netmask style masks. Access lists
on Cisco's routers use "wildcard masks", which are 2's complement
of the netmask style.

access-list 110 permit ip 10.20.30.0 255.255.255.0 any
access-list 120 permit ip 10.20.30.0 0.0.0.255 any

110 is PIX style, 120 is IOS style.


Access lists on the PIX can be named or numbered, and there is
no special significance to the name or number (a number is just
an unusual name.)

Standard and extended ccess lists on Cisco's IOS are numbered,
and the number has significance. Standard access lists under IOS
do not look similar to PIX's access-lists. Extended access lists
under IOS have a fair bit in common with PIX access lists.
Cisco also offers named access lists that use a different syntax.

access-lists on PIX can use object-groups. I don't know if
object-groups have made it into any IOS version yet.

access-lists on IOS can reference various TCP flags.
access-lists on PIX through 6.x cannot reference any TCP flags.

Logging options are different between the two.

There are probably other differences as well.
--
"No one has the right to destroy another person's belief by
demanding empirical evidence." -- Ann Landers

Reply to Anonymous

Archived from groups: comp.security.firewalls (More info?)

 

Man, sorry guys, waaaaaaaay tooo much drink.
Sorry its Cisco rotuer 2621

Reply to Anonymous
Tom's Hardware > Forum > General Networking > Firewall > Access List.
Go to:

There are 1399 identified and unidentified users. To see the list of identified users, Click here.

Please mind

You are about to answer a thread that has been inactive for more than 6 months.
If you still wish to proceed, please ensure that your posting is original and does not duplicate or overlap any prior responses to this thread.

Add a reply Cancel
Sponsored links
  • Ask the community now
  • Publish
Ad
They won a badge
Join us in greeting them
  • 21:00 tanderskey won the Sophmore badge
  • 01:00 hellscreans won the Freshman badge
  • 01:00 nekko won the Freshman badge
  • 20:19 israil won the Sophmore badge
  • 01:00 Ishaan won the Uniformed badge
  • 01:00 nofun won the Uniformed badge
  • 01:00 ElMoIsEviL won the Spy badge
  • 01:00 mparham won the Freshman badge
  • 01:00 ishaan won the Freshman badge
  • 01:00 Mario097 won the Uniformed badge