I'm wanting to block single ip addresses from accessing the WAN. The ip's will be identified as possible virus carriers (from remote sniffing of the network). This will give me some time to clean up the offending boxes. I plan on using an access list such as "access-list 101 deny ip 192.168.x.x"
Does this seem correct?
Don JohnstonConnect With a Mentor InstructorCommented:
Close. If you're only trying to block access based on where it's coming from, use a standard access list (1-99)

Router#config t
Router(config)#access-list 1 deny
Router(config)#access-list 1 deny
Router(config)#access-list 1 deny
Router(config)#interface (wherever it's coming from)
Router(config-if)#ip access-group 1 in

gaskewAuthor Commented:
