赞
踩
- # ip reflexive-list timeout 300
-
- # ip access -list extened AclOut
- # permit any any reflect Ref
- # permit icmp any any reflect Ref
-
- # ip acces-list extened AclIn
- # evaluate Ref
-
- # int Gi/0/1
- # ip access-group AclOut out
- # ip access-group AclIn in
此时ping一下DMZ内的主机,查看ACL有一条:
permit icmp host sip1 host dip1(10 matches) (time left 295)
Copyright © 2003-2013 www.wpsshop.cn 版权所有,并保留所有权利。