[nsp] Source-only reflexive ACLs

Oliver Boehmer (oboehmer) oboehmer at cisco.com
Fri Jan 24 16:32:56 EST 2003


Hi Robert,

> Does anyone know if there is anyway to have a reflexive ACL 
> built with just
> the source address and port of the triggering packet instead 
> of source and destination?

No, we always build the temporary ACL entry with full source & dest
addr/port information, after all this is what reflexive-acls were built
for (to allow specific sessions only).
What do you want to achieve? 

	oli
 



More information about the cisco-nsp mailing list