<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic MultiContext - Vlan Subinterface Deletion in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/multicontext-vlan-subinterface-deletion/m-p/4486290#M1084365</link>
    <description>&lt;P&gt;Hi Experts,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We're running Multi-context Active/standby firewalls on the version 9.8.4.35. We have been asked to delete the VLAN sub-interfaces, it's access-lists and access-groups.&lt;/P&gt;&lt;P&gt;Not sure if the sub-interface should be removed first from the specific context or from the system space.&lt;/P&gt;&lt;P&gt;Please assist with the order to be followed or the best practice?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;System Context:-&lt;/P&gt;&lt;P&gt;show run int Port-channel10.101&lt;BR /&gt;interface Port-channel10.101&lt;BR /&gt;vlan 101&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Specific Context:-&lt;/P&gt;&lt;P&gt;show run int Port-channel10.101&lt;BR /&gt;interface Port-channel10.101&lt;BR /&gt;nameif DMZ_1&lt;BR /&gt;security-level 50&lt;BR /&gt;ip address X.X.X.X 255.255.255.128 standby X.X.X.X&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 14 Oct 2021 14:49:07 GMT</pubDate>
    <dc:creator>Srinivasan Nagarajan</dc:creator>
    <dc:date>2021-10-14T14:49:07Z</dc:date>
    <item>
      <title>MultiContext - Vlan Subinterface Deletion</title>
      <link>https://community.cisco.com/t5/network-security/multicontext-vlan-subinterface-deletion/m-p/4486290#M1084365</link>
      <description>&lt;P&gt;Hi Experts,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We're running Multi-context Active/standby firewalls on the version 9.8.4.35. We have been asked to delete the VLAN sub-interfaces, it's access-lists and access-groups.&lt;/P&gt;&lt;P&gt;Not sure if the sub-interface should be removed first from the specific context or from the system space.&lt;/P&gt;&lt;P&gt;Please assist with the order to be followed or the best practice?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;System Context:-&lt;/P&gt;&lt;P&gt;show run int Port-channel10.101&lt;BR /&gt;interface Port-channel10.101&lt;BR /&gt;vlan 101&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Specific Context:-&lt;/P&gt;&lt;P&gt;show run int Port-channel10.101&lt;BR /&gt;interface Port-channel10.101&lt;BR /&gt;nameif DMZ_1&lt;BR /&gt;security-level 50&lt;BR /&gt;ip address X.X.X.X 255.255.255.128 standby X.X.X.X&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 14 Oct 2021 14:49:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multicontext-vlan-subinterface-deletion/m-p/4486290#M1084365</guid>
      <dc:creator>Srinivasan Nagarajan</dc:creator>
      <dc:date>2021-10-14T14:49:07Z</dc:date>
    </item>
    <item>
      <title>Re: MultiContext - Vlan Subinterface Deletion</title>
      <link>https://community.cisco.com/t5/network-security/multicontext-vlan-subinterface-deletion/m-p/4486294#M1084366</link>
      <description>&lt;P&gt;Clear up the access list and access group any assiciated and shutdown the sub-interface and&amp;nbsp; remove sub-interface is best approach (in maintenance window always).&lt;/P&gt;</description>
      <pubDate>Thu, 14 Oct 2021 14:53:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multicontext-vlan-subinterface-deletion/m-p/4486294#M1084366</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-10-14T14:53:28Z</dc:date>
    </item>
    <item>
      <title>Re: MultiContext - Vlan Subinterface Deletion</title>
      <link>https://community.cisco.com/t5/network-security/multicontext-vlan-subinterface-deletion/m-p/4486306#M1084367</link>
      <description>&lt;P&gt;Hi Balaji, Thanks for the reply. Can you please assist on the below?&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Not sure if the sub-interface should be removed first from the specific context or from the system space.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;System Context:-&lt;/P&gt;&lt;P&gt;show run int Port-channel10.101&lt;BR /&gt;interface Port-channel10.101&lt;BR /&gt;vlan 101&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Specific Context:-&lt;/P&gt;&lt;P&gt;show run int Port-channel10.101&lt;BR /&gt;interface Port-channel10.101&lt;BR /&gt;nameif DMZ_1&lt;BR /&gt;security-level 50&lt;BR /&gt;ip address X.X.X.X 255.255.255.128 standby X.X.X.X&lt;/P&gt;</description>
      <pubDate>Thu, 14 Oct 2021 15:05:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multicontext-vlan-subinterface-deletion/m-p/4486306#M1084367</guid>
      <dc:creator>Srinivasan Nagarajan</dc:creator>
      <dc:date>2021-10-14T15:05:33Z</dc:date>
    </item>
    <item>
      <title>Re: MultiContext - Vlan Subinterface Deletion</title>
      <link>https://community.cisco.com/t5/network-security/multicontext-vlan-subinterface-deletion/m-p/4486310#M1084368</link>
      <description>&lt;P&gt;Get in to context :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1- clean up associated ACL and policies&lt;/P&gt;
&lt;P&gt;2. from context remove related config for the sub-interface.and shutdown&lt;/P&gt;
&lt;P&gt;3. system context where you remove the sub-interface ( no interface Port-channel10.101)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;changes to be done always active one.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 14 Oct 2021 15:15:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multicontext-vlan-subinterface-deletion/m-p/4486310#M1084368</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-10-14T15:15:32Z</dc:date>
    </item>
  </channel>
</rss>

