On Thu, 31 May 2001, Robert A. Hayden wrote:
Any recommendations out there on software to make management of Cisco ACLs a little easier than traditional manual ways? Doesn't even need to do the insertion into the router, just be able to produce something that can be cut-n-pasted into place.
I'm not sure exactly what you're looking for, but you could check into Filter Language Compiler, by Darren Reed of ipfilter fame (or infamy depending on how you look at it). Looks interesting, but I'm not sure if it would decrease your admin efforts unless you're pushing the same policy throughout your network's edge devices. One of FLC's biggest features is it's ability to work with the various UNIX packet filters, as well as Cisco ACL's. Regards, -- Joseph W. Shaw II CCNA/Network Security Goon "Unemployed. Will hack for food. God bless."