I'm working with cisco switches (4000 series) that have extensive ACLs with hundreds of entries to limit traffic between various servers. Every time servers need to connect to each other via a new port, it means modifying the ACL in notepad, then pasting the modified ACL to the switches. If there are several servers that need the same change, then it's copy-paste-copy-paste with the various servers' IP addresses into the modified ACL.
I'm wondering, does Cisco (or any other company) have a GUI tool that can modify and publish ACL changes to multiple switches? I'm thinking of something that might allow grouping servers that need identical ACLs together, then modifying a single ACL to apply to the group. It doesn't matter if the tool has to generate separate ACL lines for each server; I'm looking for something that simplifies management.