cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
335
Views
0
Helpful
2
Replies

Editing ACL's in mass

David Ritter
Level 4
Level 4

I have a pair of WLC's, in different data centers that have matching interface vlan segments linked between a pair of N7K's via OTV.  Connecting to SSID x on either WLC would get you the same interface vlan segment.

Fortunately we only have ACL's for the common guest segment.  As we are upgrading to n9k's we must abandon OTV and thus we must stop sharing segments. 

All the ACL's on one machine have to be updated to new the segments..  Is there a way to do so without delete and rewrite 30 ACL's. (individual rule) just to change the IP (one each rule) ?

Prime 3.5 almost lets you do it but it has not inport/export function either

the WLC's are 8.5.140

2 Replies 2

ammahend
VIP
VIP

I don't think there is an easier way.

I would keep the existing ACL, and get a copy of existing from CLI, modify the name, IP etc and create a new one and apply the new ACL. Thats way once your upgrade is done, you can continue to use the old ACL.

-hope this helps-

Create the ACLs using Cisco Prime for the new segments and then delete the existing one, then deploy the new ACL templates using the Cisco prime.

Regards,
Sathiyanarayanan Ravindran

Please rate the post and accept as solution, if my response satisfied your question:)
Review Cisco Networking products for a $25 gift card