26-39
Cisco ME 3800X and 3600X Switch Software Configuration Guide
OL-23400-01
Chapter 26 Configuring Network Security with ACLs
Displaying IPv4 ACL Configuration
Displaying IPv4 ACL Configuration
You can display the ACLs that are configured on the switch, and you can display the ACLs that have
been applied to interfaces and VLANs.
When you use the ip access-group interface configuration command to apply ACLs to a Layer 2 or 3
interface, you can display the access groups on the interface. You can also display the MAC ACLs
applied to a Layer 2 interface. You can use the privileged EXEC commands as described in
Table 26-2
to display this information.
You can also display information about VLAN access maps or VLAN filters. Use the privileged EXEC
commands in
Table 26-3
to display VLAN map information.
Table 26-2
Commands for Displaying Access Lists and Access Groups
Command
Purpose
show access-lists [number | name]
Displays the contents of one or all current IP and MAC address access lists
or a specific access list (numbered or named).
show ip access-lists [number | name]
Displays the contents of all current IP access lists or a specific IP access
list (numbered or named).
show ip interface interface-id
Displays detailed configuration and status of an interface. If IP is enabled
on the interface and ACLs have been applied by using the ip access-group
interface configuration command, the access groups are included in the
display.
show running-config [interface interface-id]
Displays the contents of the configuration file for the switch or the
specified interface, including all configured MAC and IP access lists and
which access groups are applied to an interface.
show mac access-group [interface interface-id]
Displays MAC access lists applied to all Layer 2 interfaces or the specified
Layer 2 interface.
Table 26-3
Commands for Displaying VLAN Map Information
Command
Purpose
show vlan access-map [mapname]
Shows information about all VLAN access-maps or the
specified access map.
show vlan filter [access-map name | vlan vlan-id]
Shows information about all VLAN filters or about a specified
VLAN or VLAN access map.