Use an extended access control list.  Extended ACls for IP are numbered from
100-199
after you set the IP address you can specify a port and/or protocol.

router(config)# access-list 151 deny 0.0.0.0 255.255.255.255 10.10.0.2
0.0.255.255 udp 139

router(config)# int x0
router(config)# ip access-group 151 in

See:
http://www.cisco.com/univercd/cc/td/doc/product/atm/c8540/12_0/13_19/sw_cnfi
g/access.htm#xtocid246915


----- Original Message -----
From: "Skeeve Stevens" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Saturday, January 12, 2002 2:23 AM
Subject: Basic Port blocking in IOS


>
> Can someone assist me with the lines to block specific ports in IOS
>
> 12.1(5)YB2
>
> basically.. I want to be able to specify a port.. such as 139 and block
> its tcp and udp traffic coming in via my main fibre link.
>
> I am assuming it is an access list and they are specified as deny, and
> allow rest of the traffic..
>
>
>
> _______________________________________________________
> Skeeve Stevens     Email: [EMAIL PROTECTED]
> Website: www.skeeve.org  - Telephone: (0414) 753 383
> Address: P.O Box 1035, Epping, NSW, 1710, Australia
> _______________________________________________________
> Avis est! Aeronavis est! supervir est!
>
>
> _______________________________________________
> Firewalls mailing list
> [EMAIL PROTECTED]
> http://lists.gnac.net/mailman/listinfo/firewalls
>

_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to