Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Newbie Access List Help

Status
Not open for further replies.

toastyboy

Technical User
Nov 20, 2000
7
US
Hi, I'm trying to give ftp access to one person outside of our company and every command I've tried comes back with an "invalid input detected at "^" marker" error. I've searched the boards and the Cisco manual, but I'm stuck.
I thought this would do it:
access-list 270 permit tcp host 63.116.49.123 any eq ftp
access-list 280 permit tcp host 63.116.49.123 any eq ftp-data

Can anyone please help me out? I'm clueless. Thanks.


 
For extended ip access list your acl number has to be between 100 -199 . Or use ip extended named acl list which gives you the ultimate flexibility . I always encourage named acl's as you can add and delete lines at will without having to recreate the entire acl every time you want to change something .
 
Oh also forgot if you apply the acl the way you have it will allow the one person access but will block everybody else because of the implicit deny all at the end of an acl .
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top