RE: Dynamic ACL

From: Ben Holko (ben@holnet.net)
Date: Sat Feb 02 2008 - 10:42:05 ARST


Putting it on the vty's is going to make it effective for ALL users
remotely connecting, which means no-one can telnet/ssh into the device
for configuration purposes, because the autocommand command executes the
given command (access-enable in this case) and then disconnects the
session - probably not what you want unless the device is purely for
lock-and-key purposes.

Ben

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Zifang Ma
Sent: Friday, 1 February 2008 12:56 PM
To: ccielab@groupstudy.com
Subject: Dynamic ACL

Dear GS

Is there any perference where to put autocommand access-enable?

I personally perfer to use it per username:

username abc autocommand access-enable

but it seems we are now expected by Cisco to use:

line vty 0 4
autocommand access-enable

???

Any comment?

Thanks



This archive was generated by hypermail 2.1.4 : Sat Mar 01 2008 - 16:54:47 ARST