Cisco Answer of the Month – February 2012
Time to win a free book, just with an answer. Your knowledge has a value. You can use it to get a free book.
February 2012 Question:
XYZ Company has some partners’ computers on XYZ premises which are connected to a VLAN in XYZ network and they are accessing to 10.10.10.11 IP address over HTTP. There are redundant L3 switches(running HSRP) as gateway of this VLAN. All IP addresses given statically.
Network Engineer of XYZ created below access list and applied it in both L3 switches.
access-list 101 permit tcp any host 10.10.10.11 eq 80
interface vlan 500
ip access-group 101 in
What is wrong in this configuration?
Rules:
You can send your answer as a comment to this post until the end of competition period (29th of February 2012 for this round). Please write your active e-mail address and do not add any personal information at this stage. We will reach to the winner over his/her e-mail. The qualified answer(s) will be chosen in first week of the next month. If there is more than one qualified answer, there will be sweepstake to find winner. Winner will have chance to choose one of the below books (brand new) as his /her prize. Winner and other answers will be published after the competition period. International participants are also welcome. Delivery times can vary depending on your country.
Prize:
One of the below books

or

Answer
HSRP packets does not allowed in access list. L3 switches do not hear each others HSRP packets. Standby address will be active on both switches. There should be a line like below ;
access-list 101 permit udp any host 224.0.0.2 eq 1985
Winner
We do not have a winner for February. Unfortunately, there were no answer. If you are reading this sentence please go to this month’s question, answer it and take your book.
cisco network jobs