34-42
Catalyst 3750 SwitchSoftware Configuration Guide
OL-8550-09
Chapter34 Configuring Network Security with ACLs
Displaying IPv4 ACL Configuration
Displaying IPv4 ACL Configuration
You can display the ACLs that are configured on the switch, and you can display the ACLs that have
been applied to interfaces and VLANs.
When you use the ip access-group interface configuration command to apply ACLs to a Layer 2 or 3
interface, you can display the access groups on the interface. You can also display the MAC ACLs
applied to a Layer 2 interface. You can use the privileged EXEC commands as described in Table34-2
to display this information.
You can also display information about VLAN access maps or VLAN filters. Use the privileged EXEC
commands in Table34-3 to display VLAN map information.
Table34-2 Commands for Displaying Access Lists and Access Groups
Command Purpose
show access-lists [number | name] Display the contents of one or all current IP and MAC address access lists
or a specific access list (numbered or named).
show ip access-lists [number | name] Display the contents of all current IP access lists or a specific IP access list
(numbered or named).
show ip interface interface-id Display detailed configuration and status of an interface. If IP is enabled
on the interface and ACLs have been applied by using the ip access-group
interface configuration command, the access groups are included in the
display.
show running-config [interface interface-id] Displays the contents of the configuration file for the switch or the
specified interface, including all configured MAC and IP access lists and
which access groups are applied to an interface.
show mac access-group [interface interface-id] Displays MAC access lists applied to all Layer 2 interfaces or the specified
Layer 2 interface.
Table34-3 Commands for Displaying VLAN Map Information
Command Purpose
show vlan access-map [mapname] Show information about all VLAN access maps or the
specified access map.
show vlan filter [access-map name | vlan vlan-id] Show information about all VLAN filters or about a specified
VLAN or VLAN access map.