Deleting ACL removes access-group 101

Unanswered Question
Aug 23rd, 2007

Hey all. I was trying to delete a recently added line to acl 101. I copied acl 101 to notepad, removed the line..Did a no access-list 101 on the PIX 515, then copied in my corrected acl into the PIX.

After an hour of searching, I found that removing the acl 101 actually caused the "access-group 101" line further down in the configuration to disappear.

Can someone explain this to me? What is the best way to delete just one line from an ACL?

Thanks

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
purohit_810 Thu, 08/23/2007 - 05:43

Run command: sh access-list | i {IP address}

You will see related access-list with line:

access-list 102 line 14 extended permit udp any any eq www

Or

access-list 102 line 4 extended deny tcp any host XX.XX.XX.XX eq www

Put NO command

No access-list 102 line 4 extended deny tcp any host XX.XX.XX.XX eq www

It will be delete only one partucular Access-list.

Don't fear.

Regards,

Dharmesh

Actions

This Discussion