From: Victor Cappuccio (cvictor@protokolgroup.com)
Date: Wed Mar 29 2006 - 16:21:01 GMT-3
Hello Vijay are you asking for something like this?
Rack1R1#show run interface fastEthernet 0/0
Building configuration...
Current configuration : 149 bytes
!
interface FastEthernet0/0
ip address 132.1.17.1 255.255.255.0
ip ospf authentication-key CISCO
ip ospf mtu-ignore
duplex auto
speed auto
end
Rack1R1#conf te
Enter configuration commands, one per line. End with CNTL/Z.
Rack1R1(config)#access-list 123 permit icmp any any
Rack1R1(config)#access-list 123 deny ip any any
Rack1R1(config)#do show run | in access-list
access-list 123 permit icmp any any
access-list 123 deny ip any any
Rack1R1(config)#
Rack1R1(config)#do show access-list
Extended IP access list 123
10 permit icmp any any
20 deny ip any any
Rack1R1(config)#
Rack1R1(config)#int f0/0
Rack1R1(config-if)#ip access-group 123 in
Rack1R1(config-if)#do show access-list
Extended IP access list 123
10 permit icmp any any
20 deny ip any any
Rack1R1(config-if)#ip access-list ex 123
Rack1R1(config-ext-nacl)#15 permit tcp any any
Rack1R1(config-ext-nacl)#do show access-list
Extended IP access list 123
10 permit icmp any any
15 permit tcp any any
20 deny ip any any (4 matches)
Rack1R1(config-ext-nacl)#
Rack1R1(config-ext-nacl)#
Rack1R1(config-ext-nacl)#no 20
Rack1R1(config-ext-nacl)#20 permit udp any any
Rack1R1(config-ext-nacl)#30 deny ip any any
Rack1R1(config-ext-nacl)#do show access-list
Extended IP access list 123
10 permit icmp any any
15 permit tcp any any (6 matches)
20 permit udp any any
30 deny ip any any (1 match)
Vijay Ramcharan escribis:
> Has anyone ever run into issues with removing or adding a line or two
> (assuming that the entries themselves were fine) to an ACL which is already
> applied to an interface ?
>
> Vijay Ramcharan
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
This archive was generated by hypermail 2.1.4 : Sat Apr 01 2006 - 10:07:40 GMT-3