SlideShare a Scribd company logo
Lab8 Controlling traffic using Extended ACL
Objectives
Perform basic configuration tasks on a router.
Applying Static routes and default route.
Exploring the routing table entry.
Applying Extended (named) access control lists (ACLs).
Testing the access control lists (ACLs).
Required Resources
2 Cisco Routers (1841)
2 Cisco Switches (2950-24)
3 Computers
UTP (straight through and cross over) cables
Tasks:
A. Build up the topology.
B. Perform Basic Router Configurations
Steps:
1. Connect the components as shown in Fig 1.
2. Configure the router hostname to match the topology diagram.
3. Configure IP addresses and masks on all devices.
4. Configure a loopback interface (loopback 0) on R2 to simulate the ISP. (search on the internet
how to configure loopback interface)
C. Enable Static route for all networks.
Steps:
1. For Router 1
R1(config)# ip route 192.168.20.0 255.255.255.0 serial 0/0/0
Default root can be configured as:
R1(config)# ip route 0.0.0.0 0.0.0.0 10.1.1.2
2. For Router 2
R2(config)# ip route 192.168.10.0 255.255.255.0 serial 0/0/1
R2(config)# ip route 192.168.11.0 255.255.255.0 serial 0/0/1
D. Verify full IP connectivity using the ping command and the routing table of routers.
Step#1:
For R1 and R2, use the command show ip route, take a snapshot for the resulting routing table,
and discuss the outputs:
*Routing table of R1(Screenshoot)
*Routing table of R2 (Screenshot)
Step#2:
Make sure that the whole network nodes can ping each other.
Before configuring and applying this ACL, be sure to test connectivity from Laptop1 to the
loopback interface (ISP - 209.165.200.225)
E. Configuring an Extended ACL
In this section, you are configuring an extended ACL on R1 that blocks traffic originating from any
device on the 192.168.10.0/24 network to access the 209.165.200.255 host (the simulated ISP).
This ACL will be applied outbound on the R1 Serial 0/0/0 interface.
Steps:
1. Configure a named extended ACL.
R1(config)#ip access-list extended EXTEND-1
R1(config-ext-nacl)#deny ip 192.168.10.0 0.0.0.255 host 209.165.200.225
2. Apply the ACL.
With standard ACLs, the best practice is to place the ACL as close to the destination as possible.
Extended ACLs are typically placed close to the source.
R1(config)#interface serial 0/0/0
R1(config-if)#ip access-group EXTEND-1 out
3. Test the ACL.
From Laptop1; ping the loopback interface on R2.
R1(config-ext-nacl)#permit ip any any
**Please provide full code and screenshoots from Cisco packet tracer.
Table -1 begin{tabular}{|c|ccc|} hline Device & Interface & IP Address & Default Gateway & & & R1
& Fa0/0 & 192.168.10.1/24 & N/A & Fa0/1 & 192.168.11.1/24 & N/A & So/0/0 & 10.1.1.1/24 & N/A
& Fa0/1 & 192.168.20.1/24 & N/A R2 & So/0/1 & 10.1.1.2/24 & N/A & loopback 0 &
209.165.200.225/8 & N/A & & & & & 192.168.10.10/24 & 192.168 .10 .1 hline Laptop1 & NIC &
192.168.11.10/24 & 192.168 .11 .1 hline Laptop2 & NIC & 192.168.20.254/24 & 192.168 .20 .1
hline hline PC3 & NIC & & hline end{tabular}

More Related Content

DOCX
All contents are Copyright © 1992–2012 Cisco Systems, Inc. A.docx
PDF
Ch4-Implementing Firewall Technologies.pdf
PPT
CCNA Security - Chapter 4
PPTX
Network Design on cisco packet tracer 6.0
PDF
4.4.1.2 packet tracer configure ip ac ls to mitigate attacks-instructor
PDF
Cisco discovery drs ent module 8 - v.4 in english.
PPTX
Detailed explanation of Basic router configuration
PPTX
ITN_Module_10.pptx gfhfdgsrfryrenikerrtvbter
All contents are Copyright © 1992–2012 Cisco Systems, Inc. A.docx
Ch4-Implementing Firewall Technologies.pdf
CCNA Security - Chapter 4
Network Design on cisco packet tracer 6.0
4.4.1.2 packet tracer configure ip ac ls to mitigate attacks-instructor
Cisco discovery drs ent module 8 - v.4 in english.
Detailed explanation of Basic router configuration
ITN_Module_10.pptx gfhfdgsrfryrenikerrtvbter

Similar to Lab8 Controlling traffic using Extended ACL Objectives Per.pdf (20)

PDF
Uccn1003 -may09_-_lect09_-_access_control_list_acl_
PDF
Uccn1003 -may09_-_lect09_-_access_control_list_acl_
PPT
Chapter 4 overview
DOC
Ccn pv7 route_lab2-1_eigrp-load-balancing_student
PPT
managing your network environment
PDF
PPT
Cis81 ccna1v5-2-configuring networkoperatingsystem
PDF
Network topology by essay corp uk
DOCX
Practice exam #2
PDF
cisco-ewan-nat-acl-pt-practice-sba-with-solution-110516171316-phpapp02.pdf
PPT
Chapter10ccna
PDF
119163798 icnd1-practice-questions-9tut
PPT
redes telematicas CISCO para ingenieros parte 2
DOC
Lab practice 1 configuring basic routing and switching (with answer)
PPT
Network
DOC
Labpractice1 configuringbasicroutingandswitchingwithanswer-121214084802-phpapp02
DOCX
©LWTAOB© 2013 Cisco andLab – O.docx
PPTX
ccna project on topic company infrastructure
DOCX
1 SEC450 ACL Tutorial This document highlights.docx
PDF
26.2.1 Packet Tracer - Configure Extended IPv4 ACLs - Scenario 1 - ITExamAnsw...
Uccn1003 -may09_-_lect09_-_access_control_list_acl_
Uccn1003 -may09_-_lect09_-_access_control_list_acl_
Chapter 4 overview
Ccn pv7 route_lab2-1_eigrp-load-balancing_student
managing your network environment
Cis81 ccna1v5-2-configuring networkoperatingsystem
Network topology by essay corp uk
Practice exam #2
cisco-ewan-nat-acl-pt-practice-sba-with-solution-110516171316-phpapp02.pdf
Chapter10ccna
119163798 icnd1-practice-questions-9tut
redes telematicas CISCO para ingenieros parte 2
Lab practice 1 configuring basic routing and switching (with answer)
Network
Labpractice1 configuringbasicroutingandswitchingwithanswer-121214084802-phpapp02
©LWTAOB© 2013 Cisco andLab – O.docx
ccna project on topic company infrastructure
1 SEC450 ACL Tutorial This document highlights.docx
26.2.1 Packet Tracer - Configure Extended IPv4 ACLs - Scenario 1 - ITExamAnsw...
Ad

More from adityacommunication1 (20)

PDF
LanguageType Java inheritance polymorphism Assume that the.pdf
PDF
LanguageTypeAuthorJavabinarytreestreetraversals.pdf
PDF
LanguageType What output is produced by the following prog.pdf
PDF
Landow Company uses variable costing for internal purposes a.pdf
PDF
Landscape Ecology 1 What are the 3 landscape elements and b.pdf
PDF
Lance H and Wanda B Dean are married and live at 431 ProCo.pdf
PDF
Lakevicw Propertess is eraluating a real extato inventment o.pdf
PDF
Lake Shore Medical Center wants to keep track of all adminis.pdf
PDF
label the following structures if they are visible on the im.pdf
PDF
Lab Task 2 Use the below code and fill it in where appropri.pdf
PDF
Lab Task 5 Points As a programmer in a company you were .pdf
PDF
La mutacin del ojo sepia se es una mutacin recesiva no l.pdf
PDF
LAB EXERCISES 1 Create a table employee with emp_noemp_n.pdf
PDF
lab 7 volcanos Emaglai St Maina kea and whata Use these map.pdf
PDF
La venta al por menor de prendas de vestir ha cambiado Ya n.pdf
PDF
La Universidad Johns Hopkins cometi recientemente un gran e.pdf
PDF
La transcripcin es el proceso mediante el cual la enzima _.pdf
PDF
La ventaja potencial de la dilucin de acciones es que R E.pdf
PDF
La transcriptasa inversa es conocida por tener poca activida.pdf
PDF
La teora del orden jerrquico de MyersMajluf predice que l.pdf
LanguageType Java inheritance polymorphism Assume that the.pdf
LanguageTypeAuthorJavabinarytreestreetraversals.pdf
LanguageType What output is produced by the following prog.pdf
Landow Company uses variable costing for internal purposes a.pdf
Landscape Ecology 1 What are the 3 landscape elements and b.pdf
Lance H and Wanda B Dean are married and live at 431 ProCo.pdf
Lakevicw Propertess is eraluating a real extato inventment o.pdf
Lake Shore Medical Center wants to keep track of all adminis.pdf
label the following structures if they are visible on the im.pdf
Lab Task 2 Use the below code and fill it in where appropri.pdf
Lab Task 5 Points As a programmer in a company you were .pdf
La mutacin del ojo sepia se es una mutacin recesiva no l.pdf
LAB EXERCISES 1 Create a table employee with emp_noemp_n.pdf
lab 7 volcanos Emaglai St Maina kea and whata Use these map.pdf
La venta al por menor de prendas de vestir ha cambiado Ya n.pdf
La Universidad Johns Hopkins cometi recientemente un gran e.pdf
La transcripcin es el proceso mediante el cual la enzima _.pdf
La ventaja potencial de la dilucin de acciones es que R E.pdf
La transcriptasa inversa es conocida por tener poca activida.pdf
La teora del orden jerrquico de MyersMajluf predice que l.pdf
Ad

Recently uploaded (20)

PPTX
Lesson notes of climatology university.
PDF
RMMM.pdf make it easy to upload and study
PPTX
Cell Structure & Organelles in detailed.
PDF
VCE English Exam - Section C Student Revision Booklet
PDF
Supply Chain Operations Speaking Notes -ICLT Program
PPTX
Pharma ospi slides which help in ospi learning
PDF
TR - Agricultural Crops Production NC III.pdf
PDF
O5-L3 Freight Transport Ops (International) V1.pdf
PDF
Abdominal Access Techniques with Prof. Dr. R K Mishra
PDF
O7-L3 Supply Chain Operations - ICLT Program
PDF
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
PDF
Basic Mud Logging Guide for educational purpose
PDF
Sports Quiz easy sports quiz sports quiz
PPTX
PPH.pptx obstetrics and gynecology in nursing
PDF
Complications of Minimal Access Surgery at WLH
PDF
Microbial disease of the cardiovascular and lymphatic systems
PDF
Classroom Observation Tools for Teachers
PDF
102 student loan defaulters named and shamed – Is someone you know on the list?
PDF
STATICS OF THE RIGID BODIES Hibbelers.pdf
PPTX
Cell Types and Its function , kingdom of life
Lesson notes of climatology university.
RMMM.pdf make it easy to upload and study
Cell Structure & Organelles in detailed.
VCE English Exam - Section C Student Revision Booklet
Supply Chain Operations Speaking Notes -ICLT Program
Pharma ospi slides which help in ospi learning
TR - Agricultural Crops Production NC III.pdf
O5-L3 Freight Transport Ops (International) V1.pdf
Abdominal Access Techniques with Prof. Dr. R K Mishra
O7-L3 Supply Chain Operations - ICLT Program
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
Basic Mud Logging Guide for educational purpose
Sports Quiz easy sports quiz sports quiz
PPH.pptx obstetrics and gynecology in nursing
Complications of Minimal Access Surgery at WLH
Microbial disease of the cardiovascular and lymphatic systems
Classroom Observation Tools for Teachers
102 student loan defaulters named and shamed – Is someone you know on the list?
STATICS OF THE RIGID BODIES Hibbelers.pdf
Cell Types and Its function , kingdom of life

Lab8 Controlling traffic using Extended ACL Objectives Per.pdf

  • 1. Lab8 Controlling traffic using Extended ACL Objectives Perform basic configuration tasks on a router. Applying Static routes and default route. Exploring the routing table entry. Applying Extended (named) access control lists (ACLs). Testing the access control lists (ACLs). Required Resources 2 Cisco Routers (1841) 2 Cisco Switches (2950-24) 3 Computers UTP (straight through and cross over) cables Tasks: A. Build up the topology. B. Perform Basic Router Configurations Steps: 1. Connect the components as shown in Fig 1. 2. Configure the router hostname to match the topology diagram. 3. Configure IP addresses and masks on all devices. 4. Configure a loopback interface (loopback 0) on R2 to simulate the ISP. (search on the internet how to configure loopback interface) C. Enable Static route for all networks. Steps: 1. For Router 1 R1(config)# ip route 192.168.20.0 255.255.255.0 serial 0/0/0 Default root can be configured as: R1(config)# ip route 0.0.0.0 0.0.0.0 10.1.1.2 2. For Router 2 R2(config)# ip route 192.168.10.0 255.255.255.0 serial 0/0/1 R2(config)# ip route 192.168.11.0 255.255.255.0 serial 0/0/1 D. Verify full IP connectivity using the ping command and the routing table of routers. Step#1: For R1 and R2, use the command show ip route, take a snapshot for the resulting routing table, and discuss the outputs: *Routing table of R1(Screenshoot) *Routing table of R2 (Screenshot) Step#2: Make sure that the whole network nodes can ping each other. Before configuring and applying this ACL, be sure to test connectivity from Laptop1 to the loopback interface (ISP - 209.165.200.225) E. Configuring an Extended ACL In this section, you are configuring an extended ACL on R1 that blocks traffic originating from any
  • 2. device on the 192.168.10.0/24 network to access the 209.165.200.255 host (the simulated ISP). This ACL will be applied outbound on the R1 Serial 0/0/0 interface. Steps: 1. Configure a named extended ACL. R1(config)#ip access-list extended EXTEND-1 R1(config-ext-nacl)#deny ip 192.168.10.0 0.0.0.255 host 209.165.200.225 2. Apply the ACL. With standard ACLs, the best practice is to place the ACL as close to the destination as possible. Extended ACLs are typically placed close to the source. R1(config)#interface serial 0/0/0 R1(config-if)#ip access-group EXTEND-1 out 3. Test the ACL. From Laptop1; ping the loopback interface on R2. R1(config-ext-nacl)#permit ip any any **Please provide full code and screenshoots from Cisco packet tracer. Table -1 begin{tabular}{|c|ccc|} hline Device & Interface & IP Address & Default Gateway & & & R1 & Fa0/0 & 192.168.10.1/24 & N/A & Fa0/1 & 192.168.11.1/24 & N/A & So/0/0 & 10.1.1.1/24 & N/A & Fa0/1 & 192.168.20.1/24 & N/A R2 & So/0/1 & 10.1.1.2/24 & N/A & loopback 0 & 209.165.200.225/8 & N/A & & & & & 192.168.10.10/24 & 192.168 .10 .1 hline Laptop1 & NIC & 192.168.11.10/24 & 192.168 .11 .1 hline Laptop2 & NIC & 192.168.20.254/24 & 192.168 .20 .1 hline hline PC3 & NIC & & hline end{tabular}