MicroNugget: How to Configure Extended ACLs on Cisco Routers

  Рет қаралды 73,918

CBT Nuggets

CBT Nuggets

11 жыл бұрын

Start learning cybersecurity with CBT Nuggets. courses.cbt.gg/security
In this video, Jeremy Cioara covers extended ACLs on Cisco routers. ACLs are powerful documents that contain lists of statements that govern which devices can and cannot access other devices. By configuring extended ACLs, you can regulate the traffic on a network and keep traffic moving fast and secure.
One of the many things that a well-configured extended ACL can do for a network is prevent a given IP address' traffic from reaching another IP address. That's because an extended access list is really nothing more than a document with a row of statements that permit or deny traffic based on rules you can set up. That can be protocol, port number, source, destination, time range, and more.
When it comes to configuring an extended ACL, just like driving to Disneyland only to discover it's closed would waste time and energy, the best practice is to host extended access lists as close to the source as possible. See how to write rules that identify source IP, its protocol, and the many other filters you can use to manage network traffic with extended ACLs.
🌐 Download the Free Ultimate Networking Cert Guide: blog.cbt.gg/b942
⬇️ 13-Week Study Plan: CCNA (200-301): blog.cbt.gg/8lky
Start learning with CBT Nuggets:
• Cisco CCNA (200-301) | courses.cbt.gg/h6s

Пікірлер: 98
@alirezaabrishami6530
@alirezaabrishami6530 10 жыл бұрын
Jeremy, I really love the way you teach Cisco!!! Thank You!
@cbtnuggets
@cbtnuggets 10 жыл бұрын
Alireza Abrishami You're are certainly welcome! Good luck with your training.
@muhiziaristide2604
@muhiziaristide2604 3 жыл бұрын
I did too!
@gchlion
@gchlion 11 жыл бұрын
I just want to say... AMAZING. Jeremy is the best in this of cbt ! He has the ease to explain the stuff in very cool way. NICE!!!
@MrAadeyemo
@MrAadeyemo 4 жыл бұрын
That was very straight to the point Jeremy and delivered in a not-boring manner.
@jeremymayer9221
@jeremymayer9221 6 жыл бұрын
From one Jeremy to another! Thank you! Really helped!
@zwimaster
@zwimaster 11 жыл бұрын
As always informative! Jeremy's nugget series are the best!
@chrisallen6738
@chrisallen6738 11 жыл бұрын
You are the best video instructor on the web. Keep it up, just the way you are doing it.
@El_bigC
@El_bigC 9 жыл бұрын
Top notch explanation, as always, Jeremy!!
@mariorodas634
@mariorodas634 3 жыл бұрын
Jeremy, i love your videos. I'm studying for SBA for CSCO-220 AND CSCO-221. This video, and one other of yours, has been super helpful in remembering which direction to place acl. Thank you!
@Gamelover22478
@Gamelover22478 2 жыл бұрын
Thank you so much for the video ! I’m currently in a CNT160 class and ACLS are a struggle for me, we just started implementing NAT so this will help me very much ! Thank you 😁
@AmazinglyAwkward
@AmazinglyAwkward 5 жыл бұрын
I'm actually doing a comptia exam not the CCNA but this was still super super helpful, it was definetly more helpful seeing a terminal. Thanks so much!
@libertywraith249
@libertywraith249 7 жыл бұрын
you are THE MAN Jeremy C . your instruction has been so very effective for me....and apparently everyone i talk to. thank you!!!
@seepaknanda3397
@seepaknanda3397 4 жыл бұрын
Jeremy really your teaching method on Cisco is excellent thank you.
@Three_Dog_Gaming
@Three_Dog_Gaming 4 жыл бұрын
Definitely valuable! Had a co-worker leave the company that was basically master of all things Cisco and we're trying to interpret what he left us with!
@adammohamed5757
@adammohamed5757 6 жыл бұрын
Thank you, honestly speaking, you are amazing instructor.
@cbtnuggets
@cbtnuggets 11 жыл бұрын
Mahad, you are correct! This is one of Jeremy's newest MicroNuggets.
@cbtnuggets
@cbtnuggets 11 жыл бұрын
Thanks for the feedback!
@cspell
@cspell 8 жыл бұрын
well done, nice explanation of how the protocols work together!
@florentvespit960
@florentvespit960 8 жыл бұрын
am from africa, i've learned CCNA, but your videos make me understand more and more every days. thanks a lot
@robertsmooth6339
@robertsmooth6339 Жыл бұрын
HI Jeremy This course on extended ACLs on Cisco routers is very . But it too late me I'm going to retire... Jeremy your awesome teacher and I want to thank you and Micro Nugget for educating for those who are pursuing a high advance technology career. Thanks you and even If I retired I continue to login from time to time. I'm Network Engineer
@SuijoART
@SuijoART 2 жыл бұрын
Really helpfull. I was stuck with ACL. However after listen your explanation I'm ready to work with. Thanks 😃.
@IgorDrozdov4
@IgorDrozdov4 2 жыл бұрын
Awesome explanation! Thank you!
@incognituadictus2226
@incognituadictus2226 2 жыл бұрын
good and clear explanation, i like the "be the router" analogy!
@jasonbrussmn
@jasonbrussmn 4 жыл бұрын
Wow, just found your channel and this is awesome!
@MohammadAhmad-nh5ug
@MohammadAhmad-nh5ug 3 жыл бұрын
Thanks Jeremy. This was fun.
@Alakion
@Alakion 4 жыл бұрын
Thanks for the explanation , helped me a lot ! Cheers!
@kaguyakobe
@kaguyakobe 22 күн бұрын
We love this, thanks Jeremy
@dwade_fpv
@dwade_fpv 11 жыл бұрын
Great explanation. I really appreciate your wisdom.
@chr1smack1nnon
@chr1smack1nnon 11 жыл бұрын
Love the explanations. You rock!
@gehacktetYKzZY
@gehacktetYKzZY 3 жыл бұрын
Thanks Jeremy! It was very informative.
@inkbythebarrelandpaperbyth6905
@inkbythebarrelandpaperbyth6905 4 жыл бұрын
Hey CBT nuggets. Jeremy is great. Thanks!
@luizclarke1829
@luizclarke1829 9 жыл бұрын
Thank you Jeremy!
@mukunddabholkar4105
@mukunddabholkar4105 3 жыл бұрын
superb!!! explain in simple way.. awsome.
@ajaysankar5467
@ajaysankar5467 Жыл бұрын
Very Helpful. Thank you.
@robertmotz9227
@robertmotz9227 9 жыл бұрын
That was awesome. Thanks Robert P. Motz
@user-jt5fw4bm4m
@user-jt5fw4bm4m 4 жыл бұрын
Perfect explained 🙏
@nahomaseged3324
@nahomaseged3324 Жыл бұрын
fantastic video. keep it up!
@bobbywaker1793
@bobbywaker1793 4 жыл бұрын
love how u explain it your the best . i wish you do a video for ssh
@cbtnuggets
@cbtnuggets 11 жыл бұрын
Thanks for your question! If you would like you can submit a formal request for this MicroNugget from the link above found in the description.
@ManojKumar-1985
@ManojKumar-1985 11 жыл бұрын
Great Explanation
@petrithysaj4529
@petrithysaj4529 3 жыл бұрын
Thank you very much. I've my exam coming up fast and you are helping in my passing it.
@cbtnuggets
@cbtnuggets 3 жыл бұрын
You can do it, Petrit! Good luck on your exam. Thank you for learning with us!
@muhammad.rafi2012
@muhammad.rafi2012 10 жыл бұрын
Jeremy as nice as ever, can we have micro nugget on applying extended access list for VTY line or console. that would be really helpful for every body i think ..
@NoONE-bk7ud
@NoONE-bk7ud 2 жыл бұрын
that was a good explanation
@chaospressure
@chaospressure 10 жыл бұрын
This was super helpful. Thanks alot
@cbtnuggets
@cbtnuggets 10 жыл бұрын
You're welcome Steven Wallis!
@YouSSTheMacOSXWannabe
@YouSSTheMacOSXWannabe 11 жыл бұрын
thank you Jeremy
@ericmorey1460
@ericmorey1460 11 жыл бұрын
Great video.
@rabiej8011
@rabiej8011 3 жыл бұрын
Thank you so much, finally that explains it well
@cbtnuggets
@cbtnuggets 3 жыл бұрын
Glad you liked it!
@mlram20055
@mlram20055 10 жыл бұрын
Brilliant!!
@nullsemicolon
@nullsemicolon 3 жыл бұрын
great video!
@cbtnuggets
@cbtnuggets 3 жыл бұрын
Glad you enjoyed it, thank you Sean!
@AJIN0071981
@AJIN0071981 7 жыл бұрын
jeremy thanks !!!!
@odrommouniengue2645
@odrommouniengue2645 Жыл бұрын
thank you sir
@HarshvardhanParashar09
@HarshvardhanParashar09 8 жыл бұрын
Awesome !
@WiseK.D
@WiseK.D 3 ай бұрын
Jeremy thank you so much you cleared most of my confusion.. I Don't know if you have already done this but can you make a video on acl protocoles I mean all of them and explain their use and how they work . That will be great .
@vianneyjean4754
@vianneyjean4754 3 жыл бұрын
Y are the best👏👏👏
@khiderglal8245
@khiderglal8245 3 жыл бұрын
thanx your video is helpfull
@user-ik2ys6wq8r
@user-ik2ys6wq8r 2 жыл бұрын
Amazing Thanks
@habibkhayat1725
@habibkhayat1725 2 жыл бұрын
Thanks Jeremy. You make Networking world much easier to understand. We miss instructor like you in Cyber Security. Hope you get into that field like Kieth Barker.
@sherifflawal7131
@sherifflawal7131 10 жыл бұрын
May God bless you.
@AhmedMahmoud-qh7oc
@AhmedMahmoud-qh7oc 6 жыл бұрын
This man is great. I hope I discovered this channel earlier
@kostas8469
@kostas8469 4 жыл бұрын
thanks :)
@NWWalkerMusic
@NWWalkerMusic 7 жыл бұрын
Great video! Thanks for posting. Any Micro-Nuggets on VLSM?
@TheLithGH
@TheLithGH 4 жыл бұрын
Thanks Jeremy!! I've always been confused as to when to start an extended access-list with "access-list 100___" or " ip access-list extended 100___" ? Thank you for your assistance!! :-)
@ikiyytours2320
@ikiyytours2320 Жыл бұрын
i liked it.
@cbtnuggets
@cbtnuggets 11 жыл бұрын
Simon, if you would like to know a little more, feel free to request that MicroNugget in the link found in the MicroNugget description.
@achrafelkhandouli
@achrafelkhandouli 4 жыл бұрын
godbless
@ashutoshanand4717
@ashutoshanand4717 5 жыл бұрын
Pretty informative in brief.... would like to know about 1) Internet of things 2) SDN in brief
@rakibuzzamansikdar6367
@rakibuzzamansikdar6367 2 жыл бұрын
respect
@pouyameisamifard5804
@pouyameisamifard5804 5 жыл бұрын
you are good at teaching , i really enjoy it thank you ,say more about ip helper when there is subnets and trunking and the router that dhcp pool run on it is not directly connected to this subnets but it is conneted frome the thered router ,i don't know is that logical or possible but i am curious to know that,at ninja speed
@GuiltySpark
@GuiltySpark 11 жыл бұрын
This Nugget Good for u
@MrSenicho
@MrSenicho 4 жыл бұрын
Hey Jeremy , thanks for the video, I 'd love to see if you can show me how i can access my local webapp hosted locally in my local area network from the internet, i have CISCO 2900 router, and i have public IP. thanks in advance.
@prodfc3140
@prodfc3140 2 ай бұрын
Epic
@mihaiciobanu6804
@mihaiciobanu6804 3 жыл бұрын
How do you test the http or https ACL in packet tracer?
@tayyabali5352
@tayyabali5352 3 жыл бұрын
what if i have two routers both having a switch attached to there fa0/0 ports and those switches then have atleast two end devies(pc) connected with them. Now i want to block a single pc of 1st router for communicating with a single pc of the 2nd router. How can i do that?
@aniswlidi2012
@aniswlidi2012 Жыл бұрын
Hi Jeremy. I uses alpha prep but there was no configuration questions, only multichoice questions. Is the new CCNA exam consisting of multichoice questions only?
@Asudragon
@Asudragon 2 ай бұрын
quick question i am struggling to find answer to, what is the general thought on when to use standard ACL compared to extended? wouldnt a standard ACL where you deny that specific traffic and permitting the rest work as well?
@187MIAMIBOY
@187MIAMIBOY 9 жыл бұрын
Thank you so much. I'm taking SEC450 and dealing with ACLs right now. This has helped me understand it a bit much better. The only thing I can't get around is the "3P" rule.. How would you do one protocol per access list etc..?
@cbtnuggets
@cbtnuggets 9 жыл бұрын
187MIAMIBOY One protocol means IP protocol (vs. IPX, Appletalk, etc...). Not one protocol as in UDP, TCP, ICMP, etc... You can handle "limitless" IP-based protocols within the access-list. We hope that helps!
@TheSingleNotice
@TheSingleNotice Жыл бұрын
Hi Jeremy, thank you for this. I am working on a problem with requires me to limit http/https traffic (as shown in your video) but only when an ip address is even. I know this would be with the use of wildcard masks, but can you give an example please? I then need to how that http does not connect but all other traffic does. How would I showcase this please? Many thanks
@ralph_022
@ralph_022 10 жыл бұрын
Thanks !!!!! How do you deny a network from rehashing another network using extended ??? Ex deny network 192.168.2.0 - 192.168.2.63 from pinging network 192.168.3.0. Please help
@cbtnuggets
@cbtnuggets 10 жыл бұрын
ralph restituyo We recommend asking these types of questions on our Forum to get other members of the CBT Nuggets community involved: community.cbtnuggets.com/forums
@cnxduo65
@cnxduo65 9 жыл бұрын
Hey dude; Have any VOD's on how to use object oriented ACL's on say Cisco 2911 routers? Thanks >:-}
@cbtnuggets
@cbtnuggets 9 жыл бұрын
cnxduo65 Thanks for the comment! We do not have a specific object oriented ACL for Cisco's 2911 routers MicroNugget but we have passed along your request for future recording possibilities.
@delson007.
@delson007. 2 жыл бұрын
yo jeremy, ive been trying to figure this out but i cant find anything about it, once you apply the extended access list to the interface, is there a way to delete that?
@400EMP
@400EMP 2 жыл бұрын
Yes, with many commands in Cisco, the best way to remove a configuration is to use the "No" command before the statement. In this case: "no access-list 150" should remove the ACL in its entirety
@newphone3594
@newphone3594 2 жыл бұрын
I need help with advanced ACL. can someone help please?
@Johnson14207
@Johnson14207 2 ай бұрын
It gets little complicated when applied in and out to a VLAN interface
@mahadabdilahi3958
@mahadabdilahi3958 11 жыл бұрын
i think this nugget is one of the new CCNA series produced by great instructor jeremy ciora am i right ?
@jasperrava5885
@jasperrava5885 Жыл бұрын
Can you ping it.
@elliotgaulin5217
@elliotgaulin5217 3 жыл бұрын
Saving my ass for my exam toworrow
@cbtnuggets
@cbtnuggets 3 жыл бұрын
Best of luck, Elliot! You got this.
@simbadurio444
@simbadurio444 2 жыл бұрын
Why not create an actual lab and show us how it first allowed and then blocked? Still a good video, thanks.
@mdridoy9896
@mdridoy9896 Жыл бұрын
awesome video... but it's too quick... hahaha
@SaigoRyu
@SaigoRyu 9 жыл бұрын
Very valuable. Thank you. Try to speak a little slower please.
Understanding Access Control Lists | Network Fundamentals Part 14
22:38
Network Direction
Рет қаралды 97 М.
MicroNugget: How to Configure Standard ACLs on Cisco Routers
5:37
Эффект Карбонаро и нестандартная коробка
01:00
История одного вокалиста
Рет қаралды 10 МЛН
Jumping off balcony pulls her tooth! 🫣🦷
01:00
Justin Flom
Рет қаралды 16 МЛН
DEFINITELY NOT HAPPENING ON MY WATCH! 😒
00:12
Laro Benz
Рет қаралды 64 МЛН
What is OSPF and How Does It Work?
12:07
CBT Nuggets
Рет қаралды 93 М.
Extended ACL - Video By Sikandar Shaik || Dual CCIE (RS/SP) # 35012
17:35
MicroNugget: How to Configure NAT (PAT) on Cisco Routers
4:41
CBT Nuggets
Рет қаралды 96 М.
MicroNugget: SNMPv3 Cisco Configuration Explained | CBT Nuggets
11:44
MicroNugget: What is Multi-Protocol Label Switching (MPLS)?
6:58
CBT Nuggets
Рет қаралды 162 М.
Access Control Lists | Cisco CCNA 200-301
13:28
CertBros
Рет қаралды 112 М.
Cisco Router Access-Lists Part 1 (Fundamentals): Cisco Router Training 101
26:33