On Thursday, February 21, 2008, 12:11:27, Darrin Chandler wrote: > On Thu, Feb 21, 2008 at 10:50:50AM -0500, Rod Dorman wrote: >> ... >> When I'm working with a Cisco IOS access-list I find its much easier to >> state each specific "allow routing to this port on this host" and let >> the final "deny any" to catch and reject the remainder. > > Yes, but you have to read the entire Cisco rule set to know that.
Well not really, there's an implied "deny any" at the end (although most people put one there anyway as a reminder) -- [EMAIL PROTECTED] "The avalanche has already started, it is too Rod Dorman late for the pebbles to vote." - Ambassador Kosh