Configuring and Managing Security ACLs 363

Viewing Security ACL Information

To determine whether a security ACL is committed, you can check the edit buffer and the committed ACLs. After you commit an ACL, WSS Software removes it from the edit buffer.

Viewing the Edit Buffer

The edit buffer enables you to view the security ACLs you create before committing them to the configuration. To view a summary of the ACLs in the edit buffer, type the following command:

23x0# show security acl editbuffer ACL edit-buffer table

ACL

Type Status

 

 

--------------------------------

----

-------------

acl-99

IP

Not committed

acl-blue

IP

Not

committed

acl-violet

IP

Not

committed

Viewing Committed Security ACLs

To view a summary of the committed security ACLs in the configuration, type the following command:

23x0# show security acl ACL table

ACL

Type Class

Mapping

--------------------------------

----

------ -------

acl-2

IP

Static

acl-3

IP

Static

acl-4

IP

Static

Viewing Security ACL Details

You can display the contents of one or all security ACLs that are committed. To display the contents of all committed security ACLs, type the following command:

23x0# show security acl info all ACL information for all

set security acl ip acl-999 (hits #2 0)

----------------------------------------------------

1.deny IP source IP 192.168.0.1 0.0.0.0 destination IP any

2.permit IP source IP 192.168.0.2 0.0.0.0 destination IP any enable-hits

set security acl ip acl-2 (hits #1 0)

----------------------------------------------------

1.permit L4 Protocol 115 source IP 192.168.1.11 0.0.0.0 destination IP 192.168.1.15 0.0.0.0 precedence 0 tos 0 enable-hits

Nortel WLAN Security Switch 2300 Series Configuration Guide

Page 363
Image 363
Nortel Networks 2300 manual Viewing Security ACL Information, Viewing the Edit Buffer, Viewing Committed Security ACLs