cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
163
Views
0
Helpful
1
Replies

What happens when an access-list is removed from a router?

admin_2
Level 3
Level 3

What happens if you have "ip access-group 120 in" configured on Ethernet interfaces, and then the access-list 120 is removed from the router without removing the access-group statement?

1 Reply 1

Not applicable

If you remove an access-list from the configuration while it's applied to an interface, the interface will pass ALL traffic as if there were no ACL applied. ___HOWEVER___ if you are doing so in order to put in place a rewritten ACL, be aware you will disrupt traffic passing over that interface. As soon as you've entered the first line of the new ACL, it will be a working one-line ACL, WITH A DEFAULT DENY AT THE END. This will get you into trouble, so it's recommended that you either remove the access-group statement from the interface while you're working or create a new ACL and switch the interface over to the new ACL.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: