[c-nsp] smarter way to use ACL entries

Kevin Graham mahargk at gmail.com
Fri Jan 12 18:46:37 EST 2007


On 1/12/07, Jeroen Vos <Jeroen.Vos at omroep.nl> wrote:

> 600 permit tcp any host 10.10.10.10 eq 8052
[...]
> 650 permit tcp any host 10.10.10.10 eq 8062
>
> Is there a smart way to use only all even entries in a range command ?
> That reduces 49 ACL rules for me.

You can't do exactly what you want, but there is "ACL Support for
Non-Contiguous Port Ranges" since 12.3(7)T.

http://www.cisco.com/univercd/cc/td/doc/product/software/ios123/123relnt/xprn123t/123tnewf.htm#wp1495860


More information about the cisco-nsp mailing list