said by Angralitux:angralitux, I simply want to allow internet traffic inbound to those 2 servers only. Wouldn't they be ok as written?
why would I want to do that?
Also, note these lines:
access-list 101 permit tcp any host 220.127.116.11 eq smtp
access-list 101 permit udp any host 18.104.22.168 eq 3389
OP, if you want to allow these services to a particular ip, you'll have to modify them. What I mean is:
1. To allow ip's 22.214.171.124 & 126.96.36.199 to access smtp & RDP respectively, you would do:
access-list 101 permit tcp host 188.8.131.52 any eq smtp
access-list 101 permit udp host 184.108.40.206 any eq 3389
2. To allow smtp & RDP to be accessed from outside you would do:
access-list 101 permit tcp any any eq smtp
access-list 101 permit udp any any eq 3389
or you can replace the last any with the ip of the server you want to get to.