• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 909
  • Last Modified:

cisco 2911 access-list 101

Hi there,
At the moment my access list is like:
    10 deny ip any
    20 deny ip any
    30 deny ip any
    40 deny ip any
    50 deny ip any
    60 deny ip any
and soo on
Problem:  If I want to put any new deny entry say like:
11 deny ip any
for some reason when the router is reloaded it does not save entry 11, what is wrong.  Also if I want to put any new entry at the extreme end then my deny goes very down.  Someone told me that deny entries should be at the top.  How can I use the entry numbers so that my ACL of deny entries stays on top and is saved as well.
3 Solutions
jmeggersSr. Network and Security EngineerCommented:
The sequence number insert should work correctly.  When you save your configuration, have you checked your startup config (show start) to see whether the change is saved in there?
Don JohnstonInstructorCommented:
Sounds like you're not issuing a "copy run start" (wr mem) after adding the line to your ACL.
amanzoorNetwork infrastructure AdminAuthor Commented:
jmeggers and donjohnston:
Thanks guys, I usually use 'copy run start'.  Then I disconnect the session and login to check my changed ACL at that point it shows me.  Recently I issued 'reload' and all my ACL changes starting from 11,12,13,14,15,16,17,18 were gone.  So I starting to think if its something to do with the sequence #.  But as you are saying to use:
copy run start (wr mem)...............<<<<<what will be the difference between copy run start and this command?  As I log back on to a new sessoin and it shows me at that time that my sequence # 11,12,13,14........are there.
I will try with wr mem and let you know.
Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Don JohnstonInstructorCommented:
>copy run start (wr mem)...............<<<<<what will be the difference between copy run start and this command?

Nothing. They do the same thing.

are you sure that your new entries dissapear ? when you insert line 11 ( between line 10 and 20 ) after reload, line 11 became line 20 and line 20 became line 30 :)
amanzoorNetwork infrastructure AdminAuthor Commented:
I will keep an eye on what you suggested.
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Upgrade your Question Security!

Your question, your audience. Choose who sees your identity—and your question—with question security.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now