模拟器上模拟不出来,但是命令大致就是以下样子,你可以借鉴一下
access-list 2000 deny ip 192.168.0.101 0.0.0.0 any
interface FastEthernet0/1
ip access-group 2000 out
acl number 100
description This acl is used in eth 0
acl 100 deny source 192.168.0.102-103
acl 100 permit ip any any