10-25-2005 07:30 PM - edited 03-03-2019 12:34 AM
Is it possible to erase all de Mac address access-list 700 when i delete only one entry of the access-list 700?. Like this:
no access-list 700 permit 0000.1230.4567
The complete access-list 700 dissapear??.
And, if this is true, how could I delete entries that are not useful anymore?.
THANKS.
10-25-2005 08:12 PM
I believe these acls are like standard acls, where you do a "no access-list 700 permit <>" it will remove the whole thing. The only way to solve this is to
a. select all acl statements and paste it into notepad
b. do a no acl 700 on the router
c. edit the acl statements in notepad with the unwanted lines removed
d. paste the edited acl statements into router.
e. wr mem
10-25-2005 09:17 PM
THANKS for your answer.
BUT, if i do that, the SNA goes down, then i have a bigger problem.
These MACs in the router, are used for Online transactions.
Could I do a no acl 700, then paste the acls without breaking the SNA?.
THANKS.
pd: in a pix firewall i can remove an entry of the acls without removing the whole list ...
10-26-2005 06:47 AM
And, which would be the best practice? :
- Remove useful entries.
- Do nothing and having more and more entries.
What do you use to do??
Thanks.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: