560CHAPTER 39: CONFIGURING FIREWALL

6Configure rules to permit specific user to obtain data (only packets of port greater than 1024) from an external network

[Router-acl-102]rule permit tcp source any destination 202.38.160.1

0.0.0.0 destination-port greater-than 1024

7Apply rule 101 on packets coming in from interface Ethernet0

[Router-Ethernet0]firewall packet-filter 101 inbound

8Apply rule 102 on packets coming in from interface Serial0

[Router-Serial0]firewall packet-filter 102 inbound

Page 564
Image 564
3Com 10014299 Apply rule 102 on packets coming in from interface Serial0, Router-Serial0firewall packet-filter 102 inbound