Skip to main content
PacketMentor logo
Open menu
← All simulators
Security Fundamentals Simulator

Extended ACL Simulator

Build extended ACLs that filter on protocol + source + destination + port. Send TCP/UDP/ICMP packets through, watch matching rules and IOS hit counters. Includes established keyword and stateful-reply scenarios.

LAN ZONE — INBOUND TRAFFICSERVER ZONE192.168.x.0/2410.0.0.0/24PC-ASales Dept192.168.1.10PC-BHR Dept192.168.2.10R1▶ ACL 100Gi0/0 inboundGi0/0Gi0/1WEB-SRV10.0.0.10HTTP :80 · HTTPS :443DB-SRV10.0.0.20SSH :22 · MySQL :3306TCP
0Sent
0Permitted
0Denied
0Rules
0Shadowed
📡 Send Test Packet
From
Proto
To
Dst Port
Speed
⚙️ ACL 100 — Rule Builder
Remark
Action Proto
Src IP
Dst IP
Dst Port
⚠️ Shadow detected: these rules will never be reached:
    SeqActionProtoSourceDestinationPort / TypeHitsOrder
    📋 Scenario:

    Practice — ACL fundamentals & edge cases

    Score: 0 / 0

    Mixed questions about ACL syntax, placement, wildcards, and exam traps. Next button on right and wrong.

    Question
    Drill this into reflex

    When 'permit tcp any any eq 80' wrecks production

    1:1 mentorship with real ACL debug scenarios, lab reviews, and US interview prep. Free first session. No card on file.

    Claim my free session →