1 © 2003 cisco systems, inc. all rights reserved. ccna 2 v3.0 module 11 access control lists (acls)

16
1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

Upload: lisa-higgins

Post on 01-Jan-2016

216 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

1© 2003 Cisco Systems, Inc. All rights reserved.

CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

Page 2: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

222© 2003, Cisco Systems, Inc. All rights reserved.

Purpose of This PowerPoint

• This PowerPoint primarily consists of the Target Indicators (TIs) of this module in CCNA version 3.0.

• It was created to give instructors a PowerPoint to take and modify as their own.

• This PowerPoint is:

NOT a study guide for the module final assessment.

NOT a study guide for the CCNA certification exam.

• Please report any mistakes you find in this PowerPoint by using the Academy Connection Help link.

Page 3: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

333© 2003, Cisco Systems, Inc. All rights reserved.

To Locate Instructional Resource Materials on Academy Connection:

• Go to the Community FTP Center to locate materials created by the instructor community

• Go to the Tools section

• Go to the Alpha Preview section

• Go to the Community link under Resources

• See the resources available on the Class home page for classes you are offering

• Search http://www.cisco.com

• Contact your parent academy!

Page 4: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

444© 2003, Cisco Systems, Inc. All rights reserved.

Objectives

Access control list fundamentals

Access control lists (ACLs)

Page 5: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

555© 2003, Cisco Systems, Inc. All rights reserved.

What are ACLs?

• ACLs are lists of instructions you apply to a router's interface to tell the router what kinds of packets to accept and what kinds to deny.

Page 6: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

666© 2003, Cisco Systems, Inc. All rights reserved.

How ACLs Work

Page 7: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

777© 2003, Cisco Systems, Inc. All rights reserved.

Protocols with ACLs Specified by Numbers

Page 8: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

888© 2003, Cisco Systems, Inc. All rights reserved.

Creating ACLs

Page 9: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

999© 2003, Cisco Systems, Inc. All rights reserved.

The Function of a Wildcard Mask

Page 10: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

101010© 2003, Cisco Systems, Inc. All rights reserved.

Verifying ACLs

• There are many show commands that will verify the content and placement of ACLs on the router.

show ip interface

show access-lists

Show running-config

Page 11: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

111111© 2003, Cisco Systems, Inc. All rights reserved.

Standard ACLs

Page 12: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

121212© 2003, Cisco Systems, Inc. All rights reserved.

Extended ACLs

Page 13: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

131313© 2003, Cisco Systems, Inc. All rights reserved.

Named ACLs

Page 14: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

141414© 2003, Cisco Systems, Inc. All rights reserved.

Placing ACLs

• Standard ACLs should be placed close to the destination.

• Extended ACLs should be placed close to the source.

Page 15: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

151515© 2003, Cisco Systems, Inc. All rights reserved.

Firewalls

A firewall is an architectural structure that exists between the user and the outside world to protect the internal network from intruders.

Page 16: 1 © 2003 Cisco Systems, Inc. All rights reserved. CCNA 2 v3.0 Module 11 Access Control Lists (ACLs)

161616© 2003, Cisco Systems, Inc. All rights reserved.

Restricting Virtual Terminal Access