i got a problem where when I bind the following acl inbound my dns server can no longer query therefore takes down the internet. The list is bound to a multilink interface 2 X t-1 like so: ip access-group 101 in I even tried ip access-group 101 out This is running nat on the f0 being the inside that is working fine w/ o the acl All the rules below even seem to work when the acl is applied. I can rdp to servers and everything.
Any ideas?
I got the following ACL
access-list 101 permit tcp any host 69.71.225.56 eq 8000 access-list 101 permit tcp any host 69.71.225.56 eq smtp access-list 101 permit tcp any host 69.71.225.57 eq www access-list 101 permit tcp any host 69.71.225.57 eq 3389 access-list 101 permit tcp any host 69.71.225.57 eq 2000 access-list 101 permit tcp any host 69.71.225.57 eq 2001 access-list 101 permit tcp any host 69.71.225.57 eq 2002 access-list 101 permit tcp any host 69.71.225.57 eq 2003 access-list 101 permit tcp any host 69.71.225.57 eq 2004 access-list 101 permit tcp any host 69.71.225.57 eq 2005 access-list 101 permit tcp any host 69.71.225.57 eq 2006 access-list 101 permit tcp any host 69.71.225.57 eq 2007 access-list 101 permit tcp any host 69.71.225.57 eq 2008 access-list 101 permit tcp any host 69.71.225.57 eq 2009 access-list 101 permit tcp any host 69.71.225.57 eq 2100 access-list 101 permit tcp any host 69.71.225.57 eq 2103 access-list 101 permit tcp any host 69.71.225.57 eq 11057 access-list 101 permit tcp any host 69.71.225.57 eq ftp-data access-list 101 permit tcp any host 69.71.225.58 eq 3389 access-list 101 permit tcp 68.70.207.0 0.0.0.255 host 66.71.225.59 eq
389 access-list 101 permit tcp any host 69.71.225.59 eq www access-list 101 permit tcp any host 69.71.225.59 eq smtp access-list 101 permit tcp any host 69.71.225.59 eq pop3 access-list 101 permit tcp any host 69.71.225.59 eq 143 access-list 101 permit tcp any host 69.71.225.59 eq 3389 access-list 101 permit tcp any host 69.71.225.59 eq 8383 access-list 101 permit tcp any host 69.71.225.50 eq 3389 access-list 101 permit tcp any host 69.71.225.51 eq 3389 access-list 101 permit tcp any host 69.71.225.52 eq 3389 access-list 101 permit icmp any host 69.102.105.134 access-list 101 permit ip any host 69.4.212.98 access-list 101 permit icmp any host 69.4.212.98 access-list 101 permit esp any host 69.4.212.98 access-list 101 permit udp any any eq domain access-list 101 permit tcp any any eq domain