Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Limit Outbound Connectivity 1

Status
Not open for further replies.

colinT23

Technical User
Feb 10, 2005
125
GB
Hi Guys,

I need to prevent 1 PC (192.168.1.254) on our network from accessing the internet. Any ideas how I configure the PIX to do this ? Thanks.

Regards Colin.
 
Put an access list on the inside interface denying all traffic from that host and then allow everything else.

access-list outbound deny ip host 192.168.1.254 any log
access-list outbound permit ip any any

access-group outbound in interface inside

Chris.

**********************
Chris A.C, CCNA, CCSA
**********************
 
Hi Chris,

Thanks for that. Is the 'log' statement necessary or is this just for information purposes ?

Regards Colin.
 
It's just informational. If I'm blocking a host I like to see what they are attempting to do. You don't have to add 'log'.

Chris.

**********************
Chris A.C, CCNA, CCSA
**********************
 
Hi Chris,

Many thanks for your help on this.

Regards Colin.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top