Originally posted by: reicherb
Here you go. It's not very tight but it's something.
Incoming Traffic:
access-list outin permit icmp any any
access-list outin permit tcp any host XXX.XXX.XXX.2 eq 25
access-list outin permit tcp any host XXX.XXX.XXX.2 eq 80
access-list outin permit tcp any host XXX.XXX.XXX.2 eq 443
access-list outin permit tcp any host XXX.XXX.XXX.2 eq 110
access-list outin permit tcp any host XXX.XXX.XXX.3 eq 1677
access-list outin permit tcp any host XXX.XXX.XXX.5 eq 80
access-list outin permit tcp any host XXX.XXX.XXX.5 eq 443
access-list outin permit tcp any host XXX.XXX.XXX.21 eq 80
access-list outin permit tcp any host XXX.XXX.XXX.21 eq 443
access-list outin permit tcp any host XXX.XXX.XXX.7 eq 5631
access-list outin permit udp any host XXX.XXX.XXX.7 eq 5632
access-list outin permit tcp any host XXX.XXX.XXX.7 eq 110
access-list outin permit tcp any host XXX.XXX.XXX.7 eq 6800
access-list outin permit tcp any host XXX.XXX.XXX.7 eq 6900
access-list outin permit tcp host 10.102.6.11 any
access-list outin permit udp host 10.102.6.11 any
access-list outin permit udp any any eq 4444
access-list outin permit tcp any any range 9874 9875
access-list outin permit tcp any any eq 9878
access-list outin permit tcp any any eq 4421
access-list outin permit tcp any any range 4429 4430
access-list outin permit udp any any eq 17071
access-list outin permit tcp any any eq 123
access-list outin deny ip any any
Outgoing Traffic:
access-list inout permit icmp any any
access-list inout permit tcp any any eq 53
access-list inout permit tcp any any eq 554
access-list inout permit tcp any any eq 7070
access-list inout permit ip host 10.157.10.6 any
access-list inout permit ip host 10.153.7.1 any
access-list inout permit ip 10.153.4.0 255.255.255.0 any
access-list inout permit tcp any any eq 21
access-list inout permit ip host 198.111.214.30 any
access-list inout permit udp any any eq 4444
access-list inout permit tcp any any range 9874 9875
access-list inout permit tcp any any eq 9878
access-list inout permit tcp any any eq 4421
access-list inout permit tcp any any range 4429 4430
access-list inout permit udp any any eq 17071
access-list inout permit tcp any any eq 123
access-list inout deny ip any any