Solved

cisco 2911 access-list 101

Posted on 2011-09-24
6
893 Views
Last Modified: 2012-05-12
Hi there,
At the moment my access list is like:
    10 deny ip 72.184.0.0 0.0.0.255 any
    20 deny ip 175.43.68.0 0.0.0.255 any
    30 deny ip 117.135.204.0 0.0.0.255 any
    40 deny ip 64.207.56.0 0.0.0.255 any
    50 deny ip 120.39.11.0 0.0.0.255 any
    60 deny ip 183.62.0.0 0.0.255.255 any
and soo on
Problem:  If I want to put any new deny entry say like:
11 deny ip 184.71.0.0 0.0.0.255 any
for some reason when the router is reloaded it does not save entry 11, what is wrong.  Also if I want to put any new entry at the extreme end then my deny goes very down.  Someone told me that deny entries should be at the top.  How can I use the entry numbers so that my ACL of deny entries stays on top and is saved as well.
Help
0
Comment
Question by:amanzoor
6 Comments
 
LVL 18

Accepted Solution

by:
jmeggers earned 167 total points
ID: 36594230
The sequence number insert should work correctly.  When you save your configuration, have you checked your startup config (show start) to see whether the change is saved in there?
0
 
LVL 50

Assisted Solution

by:Don Johnston
Don Johnston earned 167 total points
ID: 36595049
Sounds like you're not issuing a "copy run start" (wr mem) after adding the line to your ACL.
0
 
LVL 4

Author Comment

by:amanzoor
ID: 36595544
jmeggers and donjohnston:
Thanks guys, I usually use 'copy run start'.  Then I disconnect the session and login to check my changed ACL at that point it shows me.  Recently I issued 'reload' and all my ACL changes starting from 11,12,13,14,15,16,17,18 were gone.  So I starting to think if its something to do with the sequence #.  But as you are saying to use:
copy run start (wr mem)...............<<<<<what will be the difference between copy run start and this command?  As I log back on to a new sessoin and it shows me at that time that my sequence # 11,12,13,14........are there.
I will try with wr mem and let you know.
Thanks
0
Don't miss ATEN at NAB Show April 24-27!

Visit ATEN at NAB Show to learn how our "Seamlessly Entertaining" solutions deliver fast, precise video streaming without delays for the broadcasting and media environment. ATEN will showcase its 16x16 Modular Matrix Switch (VM1600) and KVM Over IP Solution (KE6900 series).

 
LVL 50

Expert Comment

by:Don Johnston
ID: 36595557
>copy run start (wr mem)...............<<<<<what will be the difference between copy run start and this command?

Nothing. They do the same thing.

0
 
LVL 2

Assisted Solution

by:adrianuta2004
adrianuta2004 earned 166 total points
ID: 36597401
are you sure that your new entries dissapear ? when you insert line 11 ( between line 10 and 20 ) after reload, line 11 became line 20 and line 20 became line 30 :)
0
 
LVL 4

Author Comment

by:amanzoor
ID: 36815807
adianuta2004:
I will keep an eye on what you suggested.
Thanks
0

Featured Post

Connect further...control easier

With the ATEN CE624, you can now enjoy a high-quality visual experience powered by HDBaseT technology and the convenience of a single Cat6 cable to transmit uncompressed video with zero latency and multi-streaming for dual-view applications where remote access is required.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Some issue on SecurityCRT 5 35
Running a 2nd company from the same location 3 69
Multiple MPLS Circuits Connecting to LAN 3 58
ACL not working 11 49
While it is possible to put two routes in place with the secondary having a higher metric, this may not always work. In the event of a failure that does not bring down the physical interface on the router the primary route is not removed. There is a…
In the hope of saving someone else's sanity... About a year ago we bought a Cisco 1921 router with two ADSL/VDSL EHWIC cards to load balance local network traffic over the two broadband lines we have, but we couldn't get the routing to work consi…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

713 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question