在一台Cisco路由器的g0/1端口上封禁ICMP协议,只允许195.151.59.0/24和202.124.168.0/24子网的ICM数据包通过路由器,正确access-list配置是
A.
Router(config)#access. list 198 permit icmp 195.151.59.0.0.0.0.255 anyRouter(config)#access list 198 permit icmp 202. 124. 168.0.0.0.0.255 anyRouter(config)#access-list 198 deny icmp any anyRouter(config)access-list 198 permit ip any anyRouter(config)interface g0/1Router(config-if)#ip access-group 198 inRouter(config-if)#ip access-group 198 out
B.
Router(config)#access-list 198 permit icmp 195.151.59.0.255.255.255.0 anyRouter(config)#access-list 198 pemmit icmp 202.124.168.0.255.255.255.0 anyRouter(config)#access-list 198 deny icmp any anyRouter(config)#access-list 198 penmit ip any anyRouter(config)#interface g0/1Router(config-if)#ip access-group 198 inRouter(config-if)#ip access-group 198 out
C.
Router(config)#access-list 198 deny icmp any anyRouter(config)#access list 198 permit icmp 195.151.59.0.0.0.0.255 anyRouter(config)access-list 198 permit icmp 202.124.168.0.0.0.0.255 anyRouter(config)#access-list 198 permit ip any anyRouter(config)interface g0/1Router(config-if)#ip access-group 198 inRouter(config-if)#ip access-group 198 out
D.
Router(config)#access-list 98 permit icmp 195.151.59.0.255.255.255.0 anyRouter(config)#access-list 98 pemmit icmp 202.124.168.0.255.255.255.0 anyRouter(config)#access-list 98 deny icmp any anyRouter(config)#access-list 98 penmit ip any anyRouter(config)#interface g0/1Router(config-if)#ip access-group 198 inRouter(config-if#ip access-group 198 out