ACL Labs


Today you will create a set of access control lists to block certain types of traffic from crossing a network.

You should always start with a network that has complete functionality

Download the network here to start with.

Verify that it has complete connectivity before starting.

Design ACLs for the following purposes.

1.  Stop PC0 from accessing the webserver in Chatham but allow it to access the other servers on the same machine and also access to the other hosts on the Chatham LAN.

2. Stop PC3 from accessing the whole of the London LAN, but make sure that PC2 can access the webserver on the London LAN only and has access to Webserver-2 on its own LAN.


3. Allow only TCP connections that have been initiated from either London or Chatham to access the Internet and only replies to those connectionss to return.

To accomplish this you will need to think about the placing of the ACLs and do this on paper before commiting yourself.



Download the final configs from this lab here (activated soon!)