Infrastructure Management White Papers
Protecting Your Core: Infrastructure Protection Access Control Lists
Overview In an effort to protect routers from various risks both accidental and malicious infrastructure protection Access Control Lists (ACLs) should be deployed at network ingress points. These IPv4 and IPv6 ACLs deny access from external sources to all infrastructure addresses, such as router interfaces. At the same time, the ACLs permit routine transit traffic to flow uninterrupted and provide basic RFC 1918, RFC 3330, and anti-spoof filtering. This paper presents guidelines and recommended deployment techniques for infrastructure protection ACLs. Infrastructure ACLs are used to minimize the risk and effectiveness of direct infrastructure attack by explicitly permitting only authorized traffic to the infrastructure equipment while permitting all other transit traffic.
| Publisher | Cisco Systems | File Format | |
|---|---|---|---|
| Date Published | July 2007 | ||
| Format | White Papers | ||
| Topics | |||



