Advertisement
Advertisement
| 08.20.2008 at 12:05PM PDT, ID: 23664352 |
|
[x]
Attachment Details
|
||
|
[x]
The Solution Rating System
|
||
With so many solutions, how can you tell which solutions are most likely to help you and which ones are not? To provide you with a tool to use, we rate our solutions based on various elements that most accurately determine if a solution is a quality solution. To explain what factors affect the solution rating, here are the elements we take into consideration when formulating our solution rating.
Your Input Matters If you have any suggestions that you would like to make for our rating system, please ask a question in the Suggestions Zone of Community Support. Thank you! |
||
1: 2: 3: 4: 5: 6: 7: 8: 9: 10: 11: 12: 13: 14: 15: 16: 17: 18: 19: 20: 21: 22: 23: 24: 25: 26: 27: 28: 29: 30: 31: 32: 33: 34: 35: 36: 37: 38: 39: 40: 41: 42: 43: 44: 45: 46: 47: 48: 49: 50: 51: 52: 53: 54: 55: 56: 57: 58: 59: 60: 61: 62: 63: 64: 65: 66: 67: 68: 69: 70: 71: 72: 73: 74: 75: 76: 77: 78: 79: 80: 81: 82: 83: 84: 85: 86: 87: 88: 89: 90: 91: 92: 93: 94: 95: 96: 97: 98: 99: 100: 101: 102: 103: 104: 105: 106: 107: 108: 109: 110: 111: 112: 113: 114: 115: 116: 117: 118: 119: 120: 121: 122: 123: |
Router#sh run Building configuration... Current configuration : 2749 bytes ! ! Last configuration change at 12:31:12 MST Wed Aug 20 2008 ! NVRAM config last updated at 14:27:17 MST Tue Aug 19 2008 ! version 12.3 service timestamps debug datetime msec service timestamps log datetime msec service password-encryption ! hostname Router ! boot-start-marker boot-end-marker ! enable secret 5 $1$lebn$cH ! clock timezone MST -7 clock summer-time MST recurring no aaa new-model ip subnet-zero ip cef ! ! ip host dns 68.87.85.98 ! ! ! ! ! ! interface FastEthernet0/0 description - WAN Connection ip address dhcp ip access-group frontline in ip nat outside duplex auto speed auto ! interface Serial0/0 no ip address shutdown ! interface FastEthernet0/1 description - PIX Connection ip address 192.168.1.1 255.255.255.0 ip access-group DENY_WEB in ip nat inside speed 100 full-duplex ! ip nat inside source list 1 interface FastEthernet0/0 overload ip nat inside source static 192.168.50.2 a.a.a.a ip http server ip classless ip route 0.0.0.0 0.0.0.0 a.a.a.a ip route 192.168.50.0 255.255.255.0 192.168.1.2 ! ! ! ip access-list extended DENY_WEB permit tcp any any eq www time-range BUSINESS_HOURS deny tcp any any eq www permit ip any any ip access-list extended frontline permit icmp any any echo-reply permit icmp any any time-exceeded permit icmp any any unreachable permit icmp any any source-quench deny icmp any any log-input deny tcp any any eq 1024 deny tcp any any eq 1025 deny tcp any any eq 1026 deny tcp any any eq 1027 deny tcp any any eq 1028 deny tcp any any eq 1029 deny tcp any any eq 1030 deny tcp any any eq 1720 deny tcp any any eq 5000 deny tcp any any eq www deny udp any any eq 80 deny udp any any eq 0 deny tcp any any eq 0 deny udp any any eq 21 deny tcp any any eq ftp deny tcp any any eq smtp deny tcp any any eq finger deny tcp any any eq telnet deny tcp any any eq pop3 deny tcp any any eq ident deny tcp any any eq nntp deny udp any any eq 135 deny udp any any eq netbios-ss deny tcp any any eq 143 deny tcp any any eq 389 deny tcp any any eq 443 deny tcp any any eq 1002 permit tcp host x.x.x.x host 192.168.50.2 eq 22 permit tcp host x.x.x.x host 192.168.50.2 eq 22 permit tcp host x.x.x.x host 192.168.50.2 eq 22 deny tcp any any eq 22 deny udp any any eq 22 permit ip any any access-list 1 permit 192.168.1.0 0.0.0.255 access-list 1 permit 192.168.50.0 0.0.0.255 ! line con 0 logging synchronous line aux 0 line vty 0 4 password 7 login ! time-range BUSINESS_HOURS periodic daily 7:30 to 21:05 ! ! end Router# |