此為cisco layer3 core switch C4506-E
Q1:為何有些是 matches, 有些則是 estimate matches.
Q2:是否有辦法看到下方粗體的詳細資訊呢?
(3 estimate matches) >> 如何知道是哪3個IP被deny了
Standard IP access list 69
10 deny 192.168.0.0, wildcard bits 0.0.255.255 (44 matches)
20 deny 172.16.0.0, wildcard bits 0.224.255.255 (1 match)
30 permit any (18934 matches)
Extended IP access list RDP_ONLY_65_ALLOW
10 permit tcp any eq 3389 192.168.65.0 0.0.0.255 (57790 estimate matches)
20 permit tcp any eq 3389 192.168.200.0 0.0.0.255
30 deny tcp any eq 3389 any (3 estimate matches)
40 permit ip any any (1319081 estimate matches)
Extended IP access list RDP_ONLY_6465_ALLOW
10 permit tcp any eq 3389 192.168.64.0 0.0.1.255 (1289 estimate matches)
20 deny tcp any eq 3389 any (2 estimate matches)
30 permit ip any any (83907 estimate matches)