<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic I raised a call with TAC in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/csm-flexconfig-to-deploy-acl/m-p/3081927#M907598</link>
    <description>&lt;P&gt;I raised a call with TAC today and spoke to them.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Using FlexConfig, you can't deploy an ACL policy that is referenced as a variable. You need to manually create any objects and then create the ACL using static commands.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Following testing, it does appear thankfully that objects and ACLs used in this manner are not cleaned up on the following deployments.&lt;/P&gt;</description>
    <pubDate>Wed, 21 Jun 2017 19:46:50 GMT</pubDate>
    <dc:creator>christopher.wallace</dc:creator>
    <dc:date>2017-06-21T19:46:50Z</dc:date>
    <item>
      <title>CSM FlexConfig to deploy ACL</title>
      <link>https://community.cisco.com/t5/network-security/csm-flexconfig-to-deploy-acl/m-p/3081925#M907587</link>
      <description>&lt;P&gt;Hi guys,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have a number of ASA firewalls that are managed via CSM (currently version 4.12). We now need to apply a control plane ACL to traffic arriving on our outside interfaces.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I've created an extended ACL in the CSM Extended Access Lists policy object pages and wish to deploy this. How do I get a FlexConfig to deploy an entire ACL?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 14:11:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/csm-flexconfig-to-deploy-acl/m-p/3081925#M907587</guid>
      <dc:creator>christopher.wallace</dc:creator>
      <dc:date>2020-02-21T14:11:11Z</dc:date>
    </item>
    <item>
      <title>Hi Christopher,</title>
      <link>https://community.cisco.com/t5/network-security/csm-flexconfig-to-deploy-acl/m-p/3081926#M907593</link>
      <description>&lt;P&gt;Hi Christopher,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I haven't deployed an ACL using flexconfigs however I have used them a few times for a workaround on SNMP.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;From using them there I believe you can just copy and paste your config into a flexconfig which you create. Think the settings are that you can have it apply the config first then look to see if it'd in the config when deployed or have it add it to the end of the config if it is not seen in there already.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Dan&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 21 Jun 2017 19:21:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/csm-flexconfig-to-deploy-acl/m-p/3081926#M907593</guid>
      <dc:creator>pick25690</dc:creator>
      <dc:date>2017-06-21T19:21:32Z</dc:date>
    </item>
    <item>
      <title>I raised a call with TAC</title>
      <link>https://community.cisco.com/t5/network-security/csm-flexconfig-to-deploy-acl/m-p/3081927#M907598</link>
      <description>&lt;P&gt;I raised a call with TAC today and spoke to them.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Using FlexConfig, you can't deploy an ACL policy that is referenced as a variable. You need to manually create any objects and then create the ACL using static commands.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Following testing, it does appear thankfully that objects and ACLs used in this manner are not cleaned up on the following deployments.&lt;/P&gt;</description>
      <pubDate>Wed, 21 Jun 2017 19:46:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/csm-flexconfig-to-deploy-acl/m-p/3081927#M907598</guid>
      <dc:creator>christopher.wallace</dc:creator>
      <dc:date>2017-06-21T19:46:50Z</dc:date>
    </item>
  </channel>
</rss>

