web access-group
web access-group
{
acl-num
|
acl-name
|
ipv6
ipv6-acl-name
}
no web access-group
{
acl-num
|
acl-name
|
ipv6
ipv6-acl-name
}
Web management access is not restricted.
Global configuration mode
The
no form of the command removes the restriction of web management access for an ACL.
The following example shows how to configure an ACL that restricts web management access to the device. In this example, ACL 12 is configured. The device denies web management access from the IP addresses listed in ACL 12 and permits web management access from all other IP addresses. Without the last ACL entry for permitting all packets, this ACL would deny web management access from all IP addresses.
device(config)# ip access-list standard 12 device(config-std-ipacl-12)# deny host 209.157.22.98 log device(config-std-ipacl-12)# deny 209.157.23.0 0.0.0.255 log device(config-std-ipacl-12)# deny 209.157.24.0/24 log device(config-std-ipacl-12)# permit any device(config-std-ipacl-12)# exit device(config)# web access-group 12 device(config)# write memory