Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Weird access list issue

I have an ACL on my vty port(s)

ip access-list standard vty-access

permit 192.168.199.3

permit 172.25.0.0 0.0.255.255

permit 192.168.198.0

permit any

I need to edit this and take out the "permit any" --I also need to add some hosts

If I ssh into the device (it is remote) and try to change the ACL, it won't let me!

I can type in

no permit any

but that statement re-appears.

If I add some hosts, they don't show up.

What could be the issue here?

1 ACCEPTED SOLUTION

Accepted Solutions
VIP Purple

Weird access list issue

A log of what you have done would really help to see what goes wrong.

How it works in general:

1) Do a "sh ip access-list vty-access"

You see the sequence-numbers in front of the ACEs.

2) Go int to the ACL "ip access-list standard vty-access"

There you can do a "no XX" where XX is the sequence-number or add new ACEs.

-- 
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni


--
Don't stop after you've improved your network! Improve the world by lending money to the working poor: http://www.kiva.org/invitedby/karsteni
2 REPLIES
VIP Purple

Weird access list issue

A log of what you have done would really help to see what goes wrong.

How it works in general:

1) Do a "sh ip access-list vty-access"

You see the sequence-numbers in front of the ACEs.

2) Go int to the ACL "ip access-list standard vty-access"

There you can do a "no XX" where XX is the sequence-number or add new ACEs.

-- 
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni


--
Don't stop after you've improved your network! Improve the world by lending money to the working poor: http://www.kiva.org/invitedby/karsteni
New Member

Weird access list issue

What error Message you are getting when you add a new hosts ??

As far as I belive , you may not be able to add/permit new hosts as you said "permit any" is already there ( on standard list ) as advised earlier you can either do a "no XX" where XX is the sequence-number , or no permit any

If you are still not getting that option , what version of code you are using ??

121
Views
0
Helpful
2
Replies