<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic I am curious about the purpose of the ACLs created on the WLC 9800. in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4814161#M254527</link>
    <description>&lt;P&gt;Those ACLs are&lt;BR /&gt;ACL on 9800.&lt;/P&gt;
&lt;P&gt;not user generated&lt;BR /&gt;It appears to have been created by WLC itself.&lt;/P&gt;
&lt;P&gt;Could you by any chance know the purpose of each ACL?&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-IP-Adm-V4-Int-ACL-global&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-implicit_deny&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-implicit_permit&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-preauth_v4&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-meraki-fqdn-dns&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 14 Apr 2023 01:57:51 GMT</pubDate>
    <dc:creator>CCC3</dc:creator>
    <dc:date>2023-04-14T01:57:51Z</dc:date>
    <item>
      <title>I am curious about the purpose of the ACLs created on the WLC 9800.</title>
      <link>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4814161#M254527</link>
      <description>&lt;P&gt;Those ACLs are&lt;BR /&gt;ACL on 9800.&lt;/P&gt;
&lt;P&gt;not user generated&lt;BR /&gt;It appears to have been created by WLC itself.&lt;/P&gt;
&lt;P&gt;Could you by any chance know the purpose of each ACL?&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-IP-Adm-V4-Int-ACL-global&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-implicit_deny&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-implicit_permit&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-preauth_v4&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-meraki-fqdn-dns&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Apr 2023 01:57:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4814161#M254527</guid>
      <dc:creator>CCC3</dc:creator>
      <dc:date>2023-04-14T01:57:51Z</dc:date>
    </item>
    <item>
      <title>Re: I am curious about the purpose of the ACLs created on the WLC 9800</title>
      <link>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4814166#M254528</link>
      <description>&lt;P&gt;I think what would be better is to review of IOS acl's in general. &amp;nbsp;These are just default, you can use as a template or even add to them if you want. &amp;nbsp;They are not applied unless you apply them. &amp;nbsp;Just look and research understanding/configuration IOS acl's to just get a basic idea of how to create one and apply one. &amp;nbsp;Then its easier to look at what you have, not just on the 9800 and understand what the all is doing.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Apr 2023 02:58:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4814166#M254528</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2023-04-14T02:58:30Z</dc:date>
    </item>
    <item>
      <title>Re: I am curious about the purpose of the ACLs created on the WLC 9800</title>
      <link>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4814582#M254558</link>
      <description>&lt;P&gt;There are some ACLs which are autoconfigured when you use webauth and their contents are based on the webauth config you provide - and those can't be changed manually, or if you do IOS will overwrite your changes. For example:&lt;BR /&gt;IP-Adm-V4-Int-ACL-global&lt;BR /&gt;IP-Adm-V4-LOGOUT-ACL&lt;BR /&gt;WA-sec-&amp;lt;redirect portal IP&amp;gt;&lt;BR /&gt;WA-v4-int-&amp;lt;redirect portal IP&amp;gt;&lt;BR /&gt;Most of the names are self-explanatory.&lt;/P&gt;
&lt;P&gt;meraki-fqdn-dns doesn't seem to have any content (ACEs) by default so I'd guess that it will only be populated if you do something that requires it, like migrating CW APs to the Meraki dashboard.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Apr 2023 15:34:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4814582#M254558</guid>
      <dc:creator>Rich R</dc:creator>
      <dc:date>2023-04-14T15:34:02Z</dc:date>
    </item>
    <item>
      <title>Re: I am curious about the purpose of the ACLs created on the WLC 9800</title>
      <link>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4815469#M254608</link>
      <description>&lt;P&gt;thanks.&lt;/P&gt;
&lt;P&gt;Do you know what implicit_deny/permit is for?&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 06:15:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4815469#M254608</guid>
      <dc:creator>CCC3</dc:creator>
      <dc:date>2023-04-17T06:15:28Z</dc:date>
    </item>
    <item>
      <title>Re: I am curious about the purpose of the ACLs created on the WLC 9800</title>
      <link>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4815748#M254618</link>
      <description>&lt;P&gt;Presume you mean what are they used for - no idea - could be anything - but the names are paradoxical because they are both explicit rather than implicit LOL&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;9800#sh ip access-lists implicit_deny&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;Extended IP access list implicit_deny&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;10 deny ip any any&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;9800#sh ip access-lists implicit_permit&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;Extended IP access list implicit_permit&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier"&gt;10 permit ip any any&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;More accurate names would have been permit_all and deny_all but who are we to question the wisdom of the devs...&lt;/P&gt;</description>
      <pubDate>Mon, 17 Apr 2023 08:08:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/i-am-curious-about-the-purpose-of-the-acls-created-on-the-wlc/m-p/4815748#M254618</guid>
      <dc:creator>Rich R</dc:creator>
      <dc:date>2023-04-17T08:08:14Z</dc:date>
    </item>
  </channel>
</rss>

