[c-nsp] PBR

Peter Rathlev peter at rathlev.dk
Sun Jul 25 17:34:20 EDT 2010


On Sun, 2010-07-25 at 20:38 +0100, Gary Smith wrote:
> ip access-list extended Network10
> permit tcp any 192.168.10.0 0.0.0.255
> permit tcp 192.168.10.0 0.0.0.255 any
[...]
> As I understand it, this should work - however, from the outside, trying 
> to ping the address of Di1 results in no replies. Also, VLAN10 can't 
> route over the connection, instead still routing over Di0.
> 
> What am I doing wrong?

The access list matches only TCP traffic?

-- 
Peter




More information about the cisco-nsp mailing list