Command Line Interface
4-94
4
Related Commands
mask (IP ACL) (4-90)
ip access-group
This command binds a port to an IP ACL. Use the no form to remove the port.
Syntax
[no] ip access-group acl_name {in | out}
acl_name – Name of the ACL. (Maximum length: 16 characters)
in – Indicates that this list applies to ingress packet s.
out – Indicates that this list applies to egress packets.
Default Setting
None
Command Mode
Interface Configuration (Ethernet)
Command Usage
A port can only be bound to one ACL.
If a port is already bound to an ACL and you bind it to a different ACL, the
switch will replace the old binding with the new one.
You must configure a mask for an ACL rule before you can bind it to a port.
Example
Related Commands
show ip access-list (4-89)
show ip access-group
This command shows the ports assigned to IP ACLs.
Command Mode
Privileged Exec
Example
Console(config)#int eth 1/25
Console(config-if)#ip access-group standard david in
Console(config-if)#
Console#show ip access-group
Interface ethernet 1/25
IP standard access-list david
Console#