On Thursday, February 21, 2008, 12:11:27, Darrin Chandler wrote:
> On Thu, Feb 21, 2008 at 10:50:50AM -0500, Rod Dorman wrote:
>>   ...
>> When  I'm working with a Cisco IOS access-list I find its much easier to
>> state  each  specific  "allow routing to this port on this host" and let
>> the final "deny any" to catch and reject the remainder.
>
> Yes, but you have to read the entire Cisco rule set to know that.

Well not really, there's an implied "deny any" at the end (although most
people put one there anyway as a reminder)


-- 
[EMAIL PROTECTED]     "The avalanche has already started, it is too
Rod Dorman              late for the pebbles to vote." - Ambassador Kosh

Reply via email to