Thursday, October 22, 2009

Guidelines for Access List

These are guidelines for creating access list in Cisco Router:

a. use text editor
b. acl proccessed top-down, place more specific tests and tests that will true frequently - at the beginning of the access-list
c. only "named acl" allow removal individual statements, not reordering
d. if you want to reordering and remove "numbered acl", you must remove whole list & recreate
e. all acl end with an implicit deny all statement
f. place "extended acl" close to the source, place "standard acl" close to the destination

