cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1518
Views
15
Helpful
4
Replies

Disabling an ACL entry

phil96564
Level 1
Level 1

Hi all

 

I need to disable a number of access list rules on ASA version 9.7. I know I just need to add "inactive" to the end of the rule but 1. do we simply enter the rule exactly as it currently is then add inactive, ie does it recognise that we are disabling an existing rule as opposed to creating a new (inactive) rule

2. Do we need to include the line number in the inactive rule command?

 

Thanks in advance

Phil.

 

1 Accepted Solution

Accepted Solutions

ngkin2010
Level 7
Level 7
1. yes, no duplicated rule is allowed. So the exactly same rule with "inactive" keyword will simply update the existing one.

2. no.

View solution in original post

4 Replies 4

shaps
Level 3
Level 3
As far as I remember if you copy the statement along with the line number and then append it with the inactive key word, this should work.

if you use the question mark at the end of the statement before applying to verify or create a dummy rule that doesnt really do anything then try with that.

ngkin2010
Level 7
Level 7
1. yes, no duplicated rule is allowed. So the exactly same rule with "inactive" keyword will simply update the existing one.

2. no.

Optionally you can do this in ASDM.  Just un-check the box next to the rule. and click Apply and then save once you are done.

--
Please remember to select a correct answer and rate helpful posts

phil96564
Level 1
Level 1

Thanks for all the replies :)

 

Review Cisco Networking products for a $25 gift card