Deleting ACL removes access-group 101

Unanswered Question
Aug 23rd, 2007
User Badges:

Hey all. I was trying to delete a recently added line to acl 101. I copied acl 101 to notepad, removed the line..Did a no access-list 101 on the PIX 515, then copied in my corrected acl into the PIX.

After an hour of searching, I found that removing the acl 101 actually caused the "access-group 101" line further down in the configuration to disappear.


Can someone explain this to me? What is the best way to delete just one line from an ACL?


Thanks


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
purohit_810 Thu, 08/23/2007 - 05:43
User Badges:
  • Silver, 250 points or more

Run command: sh access-list | i {IP address}


You will see related access-list with line:


access-list 102 line 14 extended permit udp any any eq www


Or

access-list 102 line 4 extended deny tcp any host XX.XX.XX.XX eq www


Put NO command


No access-list 102 line 4 extended deny tcp any host XX.XX.XX.XX eq www


It will be delete only one partucular Access-list.


Don't fear.


Regards,

Dharmesh

Actions

This Discussion