cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
496
Views
0
Helpful
2
Replies

Modify ACL

bdjezzar4490
Level 1
Level 1

Hi all,

I would like to modify an extendede ACL on my router which is on production. The ACL has many entries before the last deny any any entry and i have to add new entries to allow my DNS server to communicate with root servers, what's the easiest and safe method to do that.

Thanks.

2 Replies 2

carl_townshend
Spotlight
Spotlight

Hi

I would say the best way would be to export your running config, extract the access list from it, modify the access list then import back in !!

Kevin Dorrell
Level 10
Level 10

If it is a named access list, then you are home and dry, because you can add lines in the middle. Do a show access-list to see the line numbers, and just add the line as needed.

If you have a numbered access list, then it is more difficult. One method I have used is:

1. Copy the access list to notepad

2. Make your changes, edit it throughout to give it a new number

3. Load it into the router. You now have two copies, old and new.

4. Change the references that refer to the old version so that they refer to the new one.

Kevin Dorrell

Luxembourg