I needed to get rid of brutforcing on my WAN and I applied this way: IP access-list extended SSH-ACCESSpermit tcp host MY-SECOND-ISP-IP any eq 22 line vty 0 4transport input sshaccess-class SSH-ACCESS in So, I didn't apply anything on interface F4 an...