Solved

What if ACL is applied to interface and then ACL is deleted

Posted on 2009-04-10
1
377 Views
Last Modified: 2012-05-06
I have not had time to test this so I will just ask the experts.

I was wondering what happens in this scenario:

Extended IP access list 190
    10 permit ip 192.168.0.0 0.1.255.255 any (2 matches)
    20 permit ip 224.0.0.0 15.255.255.255 any
    30 permit ip 192.169.0.0 0.0.255.255 any
    40 deny ip any any log-input (143083 matches)

What happens if this ACL is applied to a VLAN interface and then someone goes and deletes the ACL without taking it out of the access-group on the VLAN interface? Does it automatically deny everything?
0
Comment
Question by:typertec
1 Comment
 
LVL 43

Accepted Solution

by:
JFrederick29 earned 350 total points
ID: 24118155
No, it automatically permits everything but beware that if the access-group is applied to the interface and you go to add the access-list back, after the first line added, all traffic will be denied because of the implicit deny any until you add the rest of the permits.  It is best to remove the access-group from the interface if the list was deleted before adding back.  Once added back, then reapply the list to the interface.
0

Featured Post

Threat Intelligence Starter Resources

Integrating threat intelligence can be challenging, and not all companies are ready. These resources can help you build awareness and prepare for defense.

Join & Write a Comment

Suggested Solutions

The worst thing when starting a new job is when the previous Network Administrator left behind no documentation. How do you get into the devices? If you've been in this situation or just accidently mistyped your password, this article will hopefully…
I eventually solved a perplexing problem setting up telnet for a new switch.  I installed a new Cisco WS-03560X-24P switch connected to an existing Cisco 4506 running a WS-X4013-10GE Sup II-Plus. After configuring vlans and trunking,  I could no…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
This tutorial demonstrates a quick way of adding group price to multiple Magento products.

705 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

19 Experts available now in Live!

Get 1:1 Help Now