<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic KarstenThanks for the reply in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asdm-acl-manager/m-p/2758950#M179372</link>
    <description>&lt;P&gt;Karsten&lt;/P&gt;&lt;P&gt;Thanks for the reply.&lt;/P&gt;&lt;P&gt;We have internal AAA only.&lt;/P&gt;&lt;P&gt;Basically I have been doing a search on the access list name and If I do not see that access list name used anywhere else I assume it is not used.&lt;/P&gt;&lt;P&gt;The reason for caution besides the obvious is that one of the access list names has 44 entries but that access list name appears no where else in association with any other FW function.&lt;/P&gt;&lt;P&gt;I have no idea why there would be so many of these coded for no reason by the previous admin.&lt;/P&gt;</description>
    <pubDate>Thu, 03 Sep 2015 16:18:25 GMT</pubDate>
    <dc:creator>john.wright</dc:creator>
    <dc:date>2015-09-03T16:18:25Z</dc:date>
    <item>
      <title>ASDM ACL Manager</title>
      <link>https://community.cisco.com/t5/network-security/asdm-acl-manager/m-p/2758948#M179368</link>
      <description>&lt;P&gt;&lt;FONT face="Arial" size="2"&gt;&lt;FONT face="Arial" size="2"&gt;Any help appeciated&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="Arial" size="2"&gt;&lt;FONT face="Arial" size="2"&gt;The access-list entry listed below, kpsscapout is listed in the ASDM ACL manager but&amp;nbsp;appears no where else in the FW.&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="Arial" size="2"&gt;&lt;FONT face="Arial" size="2"&gt;It is not associated with any access group nor found anywhere else that I can see. We have many entries like this with different names that likewise are not associated with any access group nor with anything else that I can tell. I am not certain why they were created but I am trying to do safe housekeeping of all the acl rules.&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="Arial" size="2"&gt;&lt;FONT face="Arial" size="2"&gt;I see the&amp;nbsp;access-lists that are defined with an access group. And&amp;nbsp;others that appear in VPN config. But there are still many others that are just coded apparently doing&amp;nbsp;nothing but taking up space.&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="Arial" size="2"&gt;&lt;FONT face="Arial" size="2"&gt;Would it be safe to delete these?&amp;nbsp;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 16px;"&gt;&lt;FONT face="Arial"&gt;&lt;FONT face="Arial"&gt;access-list kpsscapout extended permit ip host WEBMAIL any&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:32:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-acl-manager/m-p/2758948#M179368</guid>
      <dc:creator>john.wright</dc:creator>
      <dc:date>2019-03-12T06:32:33Z</dc:date>
    </item>
    <item>
      <title>As usually, it depends. Also</title>
      <link>https://community.cisco.com/t5/network-security/asdm-acl-manager/m-p/2758949#M179370</link>
      <description>&lt;P&gt;As usually, it depends. Also if they are not referenced in the config, it could be that they are assigned to a user by an external AAA-server. But if you don't do any AAA-Authorization with an external server, it should be safe to delete them.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Sep 2015 16:11:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-acl-manager/m-p/2758949#M179370</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2015-09-03T16:11:38Z</dc:date>
    </item>
    <item>
      <title>KarstenThanks for the reply</title>
      <link>https://community.cisco.com/t5/network-security/asdm-acl-manager/m-p/2758950#M179372</link>
      <description>&lt;P&gt;Karsten&lt;/P&gt;&lt;P&gt;Thanks for the reply.&lt;/P&gt;&lt;P&gt;We have internal AAA only.&lt;/P&gt;&lt;P&gt;Basically I have been doing a search on the access list name and If I do not see that access list name used anywhere else I assume it is not used.&lt;/P&gt;&lt;P&gt;The reason for caution besides the obvious is that one of the access list names has 44 entries but that access list name appears no where else in association with any other FW function.&lt;/P&gt;&lt;P&gt;I have no idea why there would be so many of these coded for no reason by the previous admin.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Sep 2015 16:18:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-acl-manager/m-p/2758950#M179372</guid>
      <dc:creator>john.wright</dc:creator>
      <dc:date>2015-09-03T16:18:25Z</dc:date>
    </item>
  </channel>
</rss>

