Lab 5. EIGRP – Filtering – ACL

 Lab 5. EIGRP – Filtering – ACL


Pada lab ini kita melakukan filtering berdasarkan ip yang genap dan ip yang ganjil, dan kita menggunakan topologi sebelumnya, jadi kita hapus terlebih dahulu konfigurasi prefix list out pada R3.

-R3

Router(config)#no ip prefix-list EIGRP_OUT seq 10 deny 3.3.3.0/24 ge 28 le 30

Router(config)#no ip prefix-list EIGRP_OUT seq 20 permit 0.0.0.0/0 le 32

Router(config)#router eigrp 10

Router(config-router)#no distribute-list prefix EIGRP_OUT out

Setelah itu kita cek routing table pada R2, pastikan semua ip loopback R3 terdapat pada routing table.

-R2

Router(config)#do show ip route

3.0.0.0/8 is variably subnetted, 6 subnets, 5 masks

D        3.3.3.3/32 [90/409600] via 23.23.23.2, 00:10:14, Ethernet0/1

D        3.3.3.16/28 [90/409600] via 23.23.23.2, 00:10:14, Ethernet0/1

D        3.3.3.32/29 [90/409600] via 23.23.23.2, 00:10:14, Ethernet0/1

D        3.3.3.96/27 [90/409600] via 23.23.23.2, 00:10:14, Ethernet0/1

D        3.3.3.148/30 [90/409600] via 23.23.23.2, 00:10:14, Ethernet0/1

D        3.3.3.192/28 [90/409600] via 23.23.23.2, 00:10:14, Ethernet0/1

      12.0.0.0/8 is variably subnetted, 2 subnets, 2 masks

C        12.12.12.0/24 is directly connected, Ethernet0/0

L        12.12.12.2/32 is directly connected, Ethernet0/0

 

 

 

Sekarang kita filter ip address yang genap terlebih dahulu

-R2

Router(config)#access-list 1 permit 0.0.0.0 255.255.255.254

Router(config)#router eigrp 10

Router(config-router)#distribute-list 1 in ethernet 0/1

 

Lalu kita cek Kembali table routing pada R2.

-R2

Router(config-router)#do show ip route

3.0.0.0/8 is variably subnetted, 5 subnets, 4 masks

D        3.3.3.16/28 [90/409600] via 23.23.23.2, 00:36:15, Ethernet0/1

D        3.3.3.32/29 [90/409600] via 23.23.23.2, 00:36:15, Ethernet0/1

D        3.3.3.96/27 [90/409600] via 23.23.23.2, 00:36:15, Ethernet0/1

D        3.3.3.148/30 [90/409600] via 23.23.23.2, 00:36:15, Ethernet0/1

D        3.3.3.192/28 [90/409600] via 23.23.23.2, 00:36:15, Ethernet0/1

      12.0.0.0/8 is variably subnetted, 2 subnets, 2 masks

C        12.12.12.0/24 is directly connected, Ethernet0/0

L        12.12.12.2/32 is directly connected, Ethernet0/0

      23.0.0.0/8 is variably subnetted, 2 subnets, 2 masks

Maka hanya ip address genap yang muncul.

Selanjutnya kita filter ip address yang ganjil:

-R2

Router(config)#no access-list 1 permit 0.0.0.0 255.255.255.254

Router(config)#access-list 1 permit 0.0.0.1 255.255.255.254

 

 

 

 

Selanjutnya kita cek Kembali routing table pada R2.

-R2

Router(config)#do show ip route

3.0.0.0/32 is subnetted, 1 subnets

D        3.3.3.3 [90/409600] via 23.23.23.2, 00:01:35, Ethernet0/1

      12.0.0.0/8 is variably subnetted, 2 subnets, 2 masks

C        12.12.12.0/24 is directly connected, Ethernet0/0

L        12.12.12.2/32 is directly connected, Ethernet0/0

      23.0.0.0/8 is variably subnetted, 2 subnets, 2 masks

C        23.23.23.0/24 is directly connected, Ethernet0/1

L        23.23.23.1/32 is directly connected, Ethernet0/1

Maka yang ditampilkan di routing table R2 hanya ip address yang ganjil.


Komentar