<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Tracking ACL Changes - Using access-list remarks in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/tracking-acl-changes-using-access-list-remarks/m-p/932601#M938644</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does any have a way to compare current running ACLs against a previously saved copy of the config? Quarterly we need to review the security and it would be nice to run a quick compare to evaluate what has changed since the last quarter and make sure these changes are reflected in our change log as outlined by our corporate security policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm considering adding access-list remarks to my config to help document it better. I've heard this could clutter the config but using a "show run |exclude remarks" could help when troublshooting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anyone have any thoughts?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Glen&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 12:37:06 GMT</pubDate>
    <dc:creator>gedmond</dc:creator>
    <dc:date>2019-03-11T12:37:06Z</dc:date>
    <item>
      <title>Tracking ACL Changes - Using access-list remarks</title>
      <link>https://community.cisco.com/t5/network-security/tracking-acl-changes-using-access-list-remarks/m-p/932601#M938644</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does any have a way to compare current running ACLs against a previously saved copy of the config? Quarterly we need to review the security and it would be nice to run a quick compare to evaluate what has changed since the last quarter and make sure these changes are reflected in our change log as outlined by our corporate security policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm considering adding access-list remarks to my config to help document it better. I've heard this could clutter the config but using a "show run |exclude remarks" could help when troublshooting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anyone have any thoughts?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Glen&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 12:37:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tracking-acl-changes-using-access-list-remarks/m-p/932601#M938644</guid>
      <dc:creator>gedmond</dc:creator>
      <dc:date>2019-03-11T12:37:06Z</dc:date>
    </item>
    <item>
      <title>Re: Tracking ACL Changes - Using access-list remarks</title>
      <link>https://community.cisco.com/t5/network-security/tracking-acl-changes-using-access-list-remarks/m-p/932602#M938645</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you can use command "show run | include access-list" and save this copy in a text file. In the next quarter you cna again get the output using same command, copy it and save in a different file then compare both files using a variey of free tools availbale on internet for this&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 02 May 2008 19:36:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tracking-acl-changes-using-access-list-remarks/m-p/932602#M938645</guid>
      <dc:creator>htarra</dc:creator>
      <dc:date>2008-05-02T19:36:59Z</dc:date>
    </item>
    <item>
      <title>Re: Tracking ACL Changes - Using access-list remarks</title>
      <link>https://community.cisco.com/t5/network-security/tracking-acl-changes-using-access-list-remarks/m-p/932603#M938646</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do a "copy running-config tftp" and compare the transfered file with your prior configuration file, with an application such as the one found at:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.scootersoftware.com/moreinfo.php" target="_blank"&gt;http://www.scootersoftware.com/moreinfo.php&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The "Beyond Compare" application allows you to view differences between files rapidly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Has a ton of other features as well.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 23 May 2008 22:11:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tracking-acl-changes-using-access-list-remarks/m-p/932603#M938646</guid>
      <dc:creator>michael.leblanc</dc:creator>
      <dc:date>2008-05-23T22:11:47Z</dc:date>
    </item>
  </channel>
</rss>

