
Access Control List Commands
4-127
4
show ip access-list
This command displays the rules for configured IP ACLs.
Syntax
show ip access-list
{
standard
|
extended
} [
acl_name
]
•
standard
– Specifies a standard IP ACL.
•
extended
– Specifies an extended IP ACL.
•
acl_name
– Name of the ACL. (Maximum length: 16 characters)
Command Mode
Privileged Exec
Example
Related Commands
permit, deny (4-124)
ip access-group (4-127)
ip access-group
This command binds a port to an IP ACL. Use the
no
form to remove the port.
Syntax
[
no
]
ip access-group
acl_name
{
in
|
out
}
•
acl_name
– Name of the ACL. (Maximum length: 16 characters)
•
in
– Indicates that this list applies to ingress packets.
Default Setting
None
Command Mode
Interface Configuration (Ethernet)
Command Usage
• A port can only be bound to one ACL.
• If a port is already bound to an ACL and you bind it to a different ACL, the
switch will replace the old binding with the new one.
• You must configure a mask for an ACL rule before you can bind it to a port.
Example
Console#show ip access-list standard
IP standard access-list david:
permit host 10.1.1.21
permit 168.92.0.0 0.0.15.255
Console#
Console(config)#int eth 1/25
Console(config-if)#ip access-group standard david in
Console(config-if)#
Summary of Contents for ES4524M-PoE
Page 2: ......
Page 4: ...ES4524M PoE F1 0 0 5 E012008 ST R01 149100037400A...
Page 22: ...xviii Tables...
Page 26: ...xxii Figures...
Page 34: ...Introduction 1 8 1...
Page 270: ...Configuring the Switch 3 226...
Page 404: ...Command Line Interface 4 134 4...
Page 546: ...Software Specifications A 4 A...
Page 559: ......