The BGP extended ACL works differently from the regular extended ACL.  Here
is how it
goes.

In the access list that you gave as an example :

access-list 101 permit ip 10.6.144.48 0.0.0.8 255.255.255.240 0.0.0.8

a .10.6.144.48 is the source network
b.  0.0.0.8 is the wild card mask asssociated with the source network.
c.  255.255.255.240 is the subnet mask that is used for the network
10.6.144.48
d.  0.0.0.8 is the wild card mask just for the subnet mask 255.255.255.240

Note :  Both meanings of c and d will be different for the regular ACLs.

Hope this helps.

The application for this type of ACL is to permit/deny all but one type of
subnet while
still denying/permitting other subnets in the entire class.

Rajesh


NK Sat wrote:

> Hi All,
> Can somebody give me good links to understand extended BGP ACL.... I have
> spend good amount of time but cannot understand this throughly....
>
> If somebody has good writeup or URL and can be shared... Really
appreciated.
>
> Thanks
>
> access-list 101 permit ip 10.6.144.48 0.0.0.8 255.255.255.240 0.0.0.8
>
> neighbor 10.145.48.113 distribute-list 101 in
>
> _________________________________________________________________
> Chat with friends online, try MSN Messenger: http://messenger.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31220&t=31212
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to