Are you studying for the CCENT or CCNA certifications?

Skillset can help you prepare! Sign up for your free Skillset account and take the first steps towards your certification.

Upgrade Account

To tighten up security, your company is locking down access to the Cisco device vty ports. They have already shut down telnet access with: "transport input ssh" configurations on all devices.

Now, they want a 3-line access-list that will restrict SSH access to just 30 addresses from the IT-Admins subnet-zero range of 172.16.200.0.

As a help, they've already written out "most" of the last two lines for you already:
Line#2- "deny ssh traffic: any-source, any destination"
Line#3- "permit any, any".
Which of the following would work for the first line?

access-list 100 permit tcp 172.16.0.0 0.0.0.31 any eq 22

access-list 1 permit tcp 172.16.0.0 0.0.0.31 any eq 23

access-list 100 deny tcp 172.16.0.0 0.0.0.31 any eq 22

access-list 100 permit icmp 172.16.0.0 0.0.0.31 any eq 23

access-list 1 permit tcp 172.16.0.0 0.0.0.255 any eq 22

access-list 1 permit tcp 172.16.0.0 0.0.0.31 any eq 22

Explanation

Directory

Skillset helps you pass your certification exam.

Contributions and Interactions
Practice Questions

Study thousands of practice questions that organized by skills and ranked by difficulty.

Contributions and Interactions
Personalized Training

Create a tailored training plan based on the knowledge you already possess.

Training Video Selector
Exam Readiness

Know when you’re ready for the high-stakes exam. Have the confidence that you will pass on your first attempt.

Get A Free Skillset Account