really quick yes or no, reflective access-lists

From: Alex Steer (alex.steer@eison.co.uk)
Date: Tue Sep 25 2007 - 14:15:08 ART


Hi

Just a quick one, Can someone tell me if reflective access-lists effect
traffic from the local router as normal? I thought they did but

ip access-list extended inbound

 permit ospf any any

 permit icmp any any

 evaluate reflect

ip access-list extended outbound

 permit icmp any any

 permit tcp any any reflect reflect

 permit udp any any reflect reflect

interface Serial0

ip access-group inbound in

ip access-group outbound out

int fa0

ip address 1.1.1.1 255.255.255.0

telnet 150.1.2.2 /sour fa0 fail when the inbound and outbound are
configured.

Telnets from the switch to 150.1.2.2 on the same subnet using a static
route pointing to 1.1.1.1 work fine.

Any thoughts please?

Thanks in advance

Alex



This archive was generated by hypermail 2.1.4 : Sat Oct 06 2007 - 12:01:15 ART