IN customer network, ACL are applied on NE80 router to deny all users to access remote routers from FTP and enable only one customer terminal to enable FTP on remote router.
We add another ACL rule map as follows :-
rule-map intervaln o&m tcp 18.104.22.168 255.255.255.0 any any equal ftp
and then permit the rulemap globally as follows :-
eacl router global permit
After this configuration all the new terminals which are having IP addresses inthe subnet 22.214.171.124/24 are able to access FTP server successfully.
There were many ACLs defined on NE80 already ad FTP ACL was also included but customer has changed the IP address of FTP terminal which is not included in ACL. So we need to add the new IP address in ACL or make new ACL for this terminal.