781
access-list 100 deny ip any any-destination
access-list 100 deny tcp any any-destination
access-list 1100(used 0 time(s))
access-list 1100 permit any-source-mac any-destination-mac tagged-eth2 14 2 0800
access-list 3100(used 0 time(s))
access-list 3100 deny any-source-mac any-destination-mac udp any s-port 100
any-destination d-port 40000
Displayed information
Explanation
access-list 10(used 1 time(s))
Number ACL10, 0 time to be used
access-list 10 deny any
Deny any IP packets to pass
access-list 100(used 1 time(s))
Nnumber ACL10, 1 time to be used
access-list 100 deny ip any
any-destination
Deny IP packet of any source IP address
and destination address to pass
access-list 100 deny tcp any
any-destination
Deny TCP packet of any source IP
address and destination address to pass
access-list 1100 permit any-source-mac
any-destination-mac tagged-eth2 14 2
0800
Permit tagged-eth2 with any source MAC
addresses and any destination MAC
addresses and the packets whose 15
th
and 16
th
byte is respectively 0x08 , 0x0 to
pass
access-list 3100 permit any-source-mac
any-destination-mac udp any s-port 100
any-destination d-port 40000
Deny the passage of UDP packets with
any source MAC address and destination
MAC address, any source IP address and
destination IP address, and source port
100 and destination interface 40000
19.4.1.2 show access-group
Command: show access-group [interface [Ethernet] <name>]
Functions:
Reveal tying situation of ACL on port
Parameters:<name>,
Interface name
Default:
None
Command Mode:
Admin mode
Usage Guide:
When not assigning interface names, all ACL tied to port will be revealed
Examples:
Switch#show access-group
interface name: Ethernet