4 Command Line Interface

ACL Information

Table 4-38 ACL Information Commands

Command

Function

Mode

Page

 

 

 

 

show access-listShow all ACLs and associated rules

PE

4-110

 

 

 

 

show access-groupShows the ACLs assigned to each port

PE

4-110

 

 

 

 

show access-list

This command shows all ACLs and associated rules, as well as all the user-defined masks.

Command Mode

Privileged Exec

Command Usage

Once the ACL is bound to an interface (i.e., the ACL is active), the order in which the rules are displayed is determined by the associated mask.

Example

Console#show access-list

IP standard access-list david: permit host 10.1.1.21

permit 168.92.0.0 255.255.15.0 IP extended access-list bob:

permit 10.7.1.1 255.255.255.0 any

permit 192.168.1.0 255.255.255.0 any destination-port 80 80

permit 192.168.1.0 255.255.255.0 any protocol tcp control-code 2 2 MAC access-list jerry:

permit any host 00-30-29-94-34-de ethertype 800 800 IP extended access-list A6:

deny tcp any any control-flag 2 2 permit any any

IP ingress mask ACL:

mask protocol any any control-flag 2 Console#

show access-group

This command shows the port assignments of ACLs.

Command Mode

Privileged Executive

Example

Console#show access-group

Interface ethernet 1/2

IP standard access-list david

MAC access-list jerry

Console#

4-110