host 0.0.0.0的含义

what is the meaning of "ip host 0.0.0.0" ?
    Hello,
    last I saw a config of an ISP-router. There was an ACL with the statement "ip host 0.0.0.0 any log".
    What meaning has this statemant ?
    Regards,
    Alexander Czutka

    2002-10-5

Re: meaning of "ip host 0.0.0.0" ?
Hello Alexander,

AFAIK, this statement is used for anti-spoofing purposes. According to RFC 3330:

0.0.0.0/8:Addresses in this block refer to source hosts on "this" network. Address 0.0.0.0/32 may be used as a source address for this host on this network; other addresses within 0.0.0.0/8 may be used to refer to specified hosts on this network.

A full access list denying all RFC 3330 special use addresses usually looks like this:

Deny special-use address sources.
!--- Refer to RFC 3330 for additional special use addresses.

access-list 110 deny ip host 0.0.0.0 any
access-list 110 deny ip 127.0.0.0 0.255.255.255 any
access-list 110 deny ip 192.0.2.0 0.0.0.255 any
access-list 110 deny ip 224.0.0.0 31.255.255.255 any

HTH,

Georg

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值