Hello
yes, there are several rules
rules are identify on all cisco devices
on both 2811 and on 2950
here is config on huawei
[V200R003C01SPC900]
#
ftp server enable
#
board add 0/1 2E1-MFT
#
snmp-agent local-engineid 800007DB0304F938B632C6
snmp-agent community write acl 2077
snmp-agent community read acl 2077
snmp-agent sys-info contact
snmp-agent sys-info location
snmp-agent
#
http timeout 3
http server enable
#
drop illegal-mac alarm
#
router id 10.76.123.246
#
wlan ac-global carrier id other ac id 0
#
pki realm default
enrollment self-signed
#
#
acl number 2077
rule 5 permit source 10.75.0.0 0.0.255.255
rule 10 permit source 10.76.0.0 0.0.255.255
#
aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher
local-user admin privilege level 15
local-user admin ftp-directory sd1:
local-user admin service-type telnet terminal ssh ftp web http
#
firewall zone Local
priority 64
#
controller E1 1/0/0
channel-set 0 timeslot-list 1-31
frame-format crc4
#
controller E1 1/0/1
channel-set 0 timeslot-list 1-31
frame-format crc4
#
interface Serial1/0/0:0
link-protocol hdlc
ip address 10.76.122.45 255.255.255.252
ospf timer hello 1
ospf timer dead 3
#
interface Serial1/0/1:0
link-protocol hdlc
ip address 10.76.122.49 255.255.255.252
ospf timer hello 1
ospf timer dead 3
#
interface GigabitEthernet0/0/0
#
interface GigabitEthernet0/0/1
ip address 10.75.97.126 255.255.255.128
#
interface GigabitEthernet0/0/2
#
interface Cellular0/0/0
link-protocol ppp
#
interface Cellular0/0/1
link-protocol ppp
#
interface NULL0
#
ospf 76
area 0.0.0.10
network 0.0.0.0 255.255.255.255
nssa
#
stelnet server enable
#
user-interface con 0
authentication-mode aaa
user-interface vty 0 4
acl 2077 inbound
authentication-mode aaa
user privilege level 15
#
wlan ac
#
voice
#
diagnose
#
return
i can connect from net 10.75.97.126/25 through telnet and ssh
but from the other net i can't connect through neither telnet nor ssh