03-08-2006 05:59 AM
Hi all,
Is there a way to make a template to check if there are any devices with extra entries, our problem is that when we run a compliance check it only checks for what we have on the template but if there is an extra entry on a device it still shows the device as compliant, is there a way to make a template so that it shows if a device has extra entries such as the access-list's or can Baseline Templates only check for the minimum requirments.
03-14-2006 07:24 AM
compliance check will check if the baseline configuration is configured in the device, you may try compare configuration option to find the extra entries.
12-13-2006 06:30 AM
Hi,
long time since this question came up. Have anyone a solution to get this to work.
my problem is:
want to verify that my devices have this config:
ip access-list standard remote-access
permit 1.1.1.1
permit 2.2.2.2
line vty 0 15
access-class remote-access in
I have created a compliance check that is checking for these entries, but also want to verify there is no other entries in the access-list (like "permit 3.3.3.3")
-frode
12-13-2006 10:42 AM
Make sure your template has the Ordered feature enabled, and it should catch additional ACEs in your ACL.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide