Solved

How do I create an access list which denies smtp to all nodes except the email server?

Posted on 2009-07-02
2
212 Views
Last Modified: 2012-05-07
How do I create an access list which denies smtp to all nodes except the email server?
0
Comment
Question by:aramirez-1
2 Comments
 
LVL 4

Expert Comment

by:nasirsh
ID: 24771188
access-list 10 permit tcp host E-Mail Server any eq 25
access-list 10 deny tcp any any
0
 
LVL 79

Accepted Solution

by:
lrmoore earned 500 total points
ID: 24781066
That'll deny a lot more than email, and you can't use a standard acl number, it has to be extended number range.

Assuming that you are applying this to an inbound interface:

access-list 110 permit tcp any host <mail server ip> eq 25
access-list 110 deny tcp any any eq 25
access-list 110 permit ip any any
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

In this tutorial I will show you with short command examples how to obtain a packet footprint of all traffic flowing thru your Juniper device running ScreenOS. I do not know the exact firmware requirement, but I think the fprofile command is availab…
Getting hacked is no longer a matter or "if you get hacked" — the 2016 cyber threat landscape is now titled "when you get hacked." When it happens — will you be proactive, or reactive?
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

749 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question