Ai(config) line vty 04
Ri (config-Line) flogin Local
Ai(confiq-Line) transport input ssh
ft (config-Line) faccess-class 21 in
‘Ri (config-Line) fexit
faccess-List 21 perait 192.168.10.0 0.0.0.255
RL (config) faccese-List 21 deny any
Bi(contig) Vip access-list extended SURFING
Ri (config-ext-nacl) fpermit tep 192.168.10.0 0.0.0.255 any eq 80
Ri (config-ext-nacl) fpemmit tep 192.168.10.0 0.0.0.255 any eq 443
Ri (configrext-nacl) fexit
Fi (config) #ip access-List extended BROWSING
Ri (config-ext-nacl) tpemit tep any 192.168.10.0 0.0.0.255 established
Ri (configrex:-nacl) fexit
Bi (config) Finterface g0/0
Ri (config-if) #ip accese-group SURFING in
Fi (config-if) #ip accese-group BRONSING out
Rifshow access-lists
Extended IP access list BROWSING
10 permit tcp any 192.168.10.0 0.0.0.255 established
Extended IP access list SURFING
10 permit tcp 192.168.10.0 0.0.0.255 any eq www
20 permit tep 192.168.10.0 0.0.0.255 any eq 443
Rif
Rifshow ip interface 0/0
GigabitEthernet0/0 is up, line protocol is up
Internet address is 192.168.10.1/24
‘