cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2311
Views
0
Helpful
5
Replies

Time-range access-list

acutx5678
Level 1
Level 1

For the last few days I've been trying to figure something out, I've added the below config to 3 switches. Now, it works like I want it to on 1 switch, but doesn't seem to on the others. 2 of the switches are 3560s, and it works on one of these the last one is a 2960.

ip access-list extended block

deny   ip any any time-range block

permit ip any any

time-range block

periodic daily 20:00 to 8:00

5 Replies 5

cadet alain
VIP Alumni
VIP Alumni

Hi,

What do you mean by it is not working as expected ? on which type of interfaces is this ACL applied ?

Is the time-range active on the 2960 between 20 to 8  ?

Regards

Alain

Don't forget to rate helpful posts.

Don't forget to rate helpful posts.

Jeff Van Houten
Level 5
Level 5

Do all the switches have their clock set correctly?

Sent from Cisco Technical Support iPad App

Leo Laohoo
Hall of Fame
Hall of Fame


periodic daily 20:00 to 8:00

This bit is incorrect. I am surprised to see you were able to enter this line without an error.

You need to enter two lines:

periodic daily 20:00 to 23:59
periodic daily 0:00 to 08:00

Sent from Cisco Technical Support Wii App

Really? It seems to e working fine. Does it differ from one switch model to another?

acutx5678
Level 1
Level 1

So a debug showed the interfaces were staying down. It started to work once the interfaces were brought back up.

Thanks everone who responded.

Review Cisco Networking products for a $25 gift card