I have set up an access list for layer3 of mx using the same design concept as the access list for layer3 of ms, but I cannot confirm the expected behavior. Is there a difference in the way the access list is processed in mx and in ms? Actually Configration List num1 Deny any 192.168.10.0/24 any 192.168.20.0/24 any List num2 deny any 192.168.20.0/24 any 192.168.10.0/24 any List num3 allow any any any any any I would think the 192.168.10.0/24 to 192.168.20.0/24 packet would be denied, but for some reason it is allowed.
... View more