15-55
Catalyst 6500 Series Switch Software Configuration Guide—Release 8.7
OL-8978-04
Chapter 15 Configuring Access Control
Configuring VACLs
To display a VACL-to-VLAN mapping, perform this task in privileged mode:
This example shows how to display the mappings of a specific VACL:
Console> (enable)
show security acl map IPACL1
ACL IPACL1 is mapped to VLANs:
1
Console> (enable)
This example shows how to display the mappings of a specific VLAN:
Console> (enable)
show security acl map 1
VLAN 1 is mapped to IP ACL IPACL1.
VLAN 1 is mapped to IPX ACL IPXACL1.
VLAN 1 is mapped to MAC ACL MACACL1.
Console> (enable)
Clearing the Edit Buffer
You can clear the changes made to the ACL edit buffer since its last save with the
rollback
command.
The ACL is rolled back to its state at the last
commit
command.
To clear the ACL edit buffer, perform this task in privileged mode:
This example shows how to clear the edit buffer of a specific security ACL:
Console> (enable)
rollback security acl IPACL1
Editbuffer for ‘IPACL1’ rolled back to last commit state.
Console> (enable)
Removing ACEs from Security ACLs
You can remove a specific ACE or all ACEs from an ACL with the
clear security acl
command. This
command deletes the ACEs from the edit buffer.
To remove an ACE from a security ACL, perform this task in privileged mode:
Task
Command
Display a VACL-to-VLAN
mapping.
show security acl map
{
acl_name
|
vlan
|
all
}
Task
Command
Clear the ACL edit buffer.
rollback security acl
{
acl_name |
all
|
adjacency
}
Task
Command
Remove an ACE from a security ACL.
clear security acl all
clear security acl
acl_name
clear security acl
acl_name editbuffer_index