Jeff, I've noticed that, unlike other ACLs, I receive syslog entries for denied *SNMP queries* even when an SNMP ACL is the reason for the failure. It looks just like a failure due to an incorrect community string. The ACL isn't set to log.
I hadn't really thought about it until I saw your question, but now I'm intrigued... George Koffler UMKC IS Networking & Telecommunications > > > Date: Fri, 2 May 2008 17:05:50 -0400 From: Jeff Fitzwater <[EMAIL PROTECTED]> Subject: [c-nsp] snmp access list To: [email protected] Does anybody know how a numbered standard ACL that is applied to snmp traffic via commands shown below, actually works? Does the SNMP process still get touched when a DENY is hit? snmp-server community xxxx RO 99 snmp-server community xxxx RW 99 Thanks for any info. Jeff Fitzwater OIT Network Systems Princeton University /> _______________________________________________ cisco-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/
