各位朋友,我想将公司的局域网分成几个子网,其中只允许192.168.0.192至192.168.0.254的电脑上网,其他的IP只开放SMTP和POP3端口。我将其写成如下ACL语句,请各位朋友帮忙看看写得对不对,如果不对的话,请帮忙指出错误,多谢!
access-list 100 permit tcp 192.168.0.0 0.0.0.63 any eq pop3
access-list 100 permit tcp 192.168.0.64.0.0.0.63 any eq pop3
access-list 100 permit tcp 192.168.0.128 0.0.0.63 any eq pop3
access-list 100 permit tcp 192.168.0.0 0.0.0.63 any eq smtp
access-list 100 permit tcp 192.168.0.64 0.0.0.63 any eq smtp
access-list 100 permit tcp 192.168.0.128 0.0.0.63 any eq smtp
access-list 100 permit ip 192.168.0.192 0.0.0.63 any |
|