在一台Cisco路由器上执行show access-lists命令显示如下一组信息
Extended IP access list port4444
permit icmp 202.38.97.0,wildcard bits 0.0.0.255 any
deny icmp any any
deny udp any any eq 1434
deny tcp any any eq 4444
permit ip any any
根据上述信息,正确的access-list的配置是
...更多
A.
Router(config) # ip access-list extended port4444Router(config-ext-nacl) # deny icmp any anyRouter(config-ext-nacl) # deny udp any any eq 1434Router(config-ext-nacl) # deny tcp any any eq 4444Router(config-ext-nacl) # permit icmp 202.38.97.0 0.0.0.255 anyRouter(config-ext-nacl) # permit ip any any
B.
Router(config) # access-list port4444 permit icmp 202.38.97.0 0.0.0.255 anyRouter(config) # access-list port4444 deny icmp any anyRouter(config) # access-list port4444 deny udp any any eq 1434Router(config) # access-list port4444 deny tcp any any eq 4444Router(config) # access-list port4444 permit ip any any
C.
Router(config) # ip access-list extended port4444Router(config-ext-nacl) # permit 202.38.97.0 0.0.0.255 any icmpRouter(config-ext-nacl) # deny any any icmpRouter(config-ext-nacl) # deny any any udp eq 1434Router(config-ext-nacl) # deny any any tcp eq 4444Router(config-ext-nacl) # permit ip any any
D.
Router(config) # ip access-list extended port4444Router(config-ext-nacl) # permit icmp 202.38.97.0 0.0.0.255 anyRouter(config-ext-nacl) # deny icmp any anyRouter(config-ext-nacl) # deny udp any any eq 1434Router(config-ext-nacl) # deny tcp any any eq 4444Router(config-ext-naci) # permit ip any any