[c-nsp] management access BCP?

Nick Hilliard nick at foobar.org
Fri Mar 14 06:38:38 EDT 2014


On 14/03/2014 02:02, Charles Sprickman wrote:
> Is this still mostly applicable, or have more recent changes to IOS
> already dated this information?

it's mostly applicable, but using a mgmt vrf is a really good idea.

Then you come across e.g. CSCuj66318(*) and you cry a little because it
affects ntp even if you've got it configured in a vrf.

Nick
--
(*)Symptom: After applying an NTP access-group to deny inbound NTP queries,
a device still responds to NTP queries as if the ACL was not configured. It
will affect IOS-XE too.


More information about the cisco-nsp mailing list