Solved

What if ACL is applied to interface and then ACL is deleted

Posted on 2009-04-10
1
386 Views
Last Modified: 2012-05-06
I have not had time to test this so I will just ask the experts.

I was wondering what happens in this scenario:

Extended IP access list 190
    10 permit ip 192.168.0.0 0.1.255.255 any (2 matches)
    20 permit ip 224.0.0.0 15.255.255.255 any
    30 permit ip 192.169.0.0 0.0.255.255 any
    40 deny ip any any log-input (143083 matches)

What happens if this ACL is applied to a VLAN interface and then someone goes and deletes the ACL without taking it out of the access-group on the VLAN interface? Does it automatically deny everything?
0
Comment
Question by:typertec
1 Comment
 
LVL 43

Accepted Solution

by:
JFrederick29 earned 350 total points
ID: 24118155
No, it automatically permits everything but beware that if the access-group is applied to the interface and you go to add the access-list back, after the first line added, all traffic will be denied because of the implicit deny any until you add the rest of the permits.  It is best to remove the access-group from the interface if the list was deleted before adding back.  Once added back, then reapply the list to the interface.
0

Featured Post

Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco 2960 Vlan create. 3 55
Cisco C3750X Switch 19 96
SSH on Cisco switch Catalyst 2960-48TT-L 8 64
LLDP and CDP neighbors on HP Procurve switches 3 12
The worst thing when starting a new job is when the previous Network Administrator left behind no documentation. How do you get into the devices? If you've been in this situation or just accidently mistyped your password, this article will hopefully…
This tutorial will go through the steps required to write a script that will back up the configuration settings of a HP-ProCurve switch. You will need to get the following things to follow this tutorial: Telnet Scripting Tool e.g. TST10.exe …
This video explains how to create simple products associated to Magento configurable product and offers fast way of their generation with Store Manager for Magento tool.
Delivering innovative fully-managed cloud services for mission-critical applications requires expertise in multiple areas plus vision and commitment. Meet a few of the people behind the quality services of Concerto.

914 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

23 Experts available now in Live!

Get 1:1 Help Now