Deployment Guide

Table Of Contents
Chapter 6: Access Control Lists (ACL).......................................................................................216
Commands Common to all ACL Types....................................................................................................................... 216
remark...........................................................................................................................................................................216
show config................................................................................................................................................................. 218
Common IP ACL Commands.........................................................................................................................................219
clear counters ip access-group.............................................................................................................................. 219
ip access-group......................................................................................................................................................... 220
ip control-plane egress-filter...................................................................................................................................221
show ip accounting access-list.............................................................................................................................. 222
Standard IP ACL Commands........................................................................................................................................223
deny.............................................................................................................................................................................. 223
feature acloptimized.................................................................................................................................................225
ip access-list standard............................................................................................................................................. 225
permit...........................................................................................................................................................................226
resequence access-list.............................................................................................................................................228
resequence prefix-list ipv4......................................................................................................................................229
seq................................................................................................................................................................................ 229
show ip access-lists...................................................................................................................................................231
Extended IP ACL Commands....................................................................................................................................... 232
deny.............................................................................................................................................................................. 233
deny icmp....................................................................................................................................................................234
deny tcp.......................................................................................................................................................................237
deny udp......................................................................................................................................................................240
ip access-list extended............................................................................................................................................ 242
permit...........................................................................................................................................................................243
permit icmp.................................................................................................................................................................245
permit tcp................................................................................................................................................................... 246
permit udp...................................................................................................................................................................249
resequence prefix-list ipv4...................................................................................................................................... 251
seq................................................................................................................................................................................ 252
ACL VLAN Group Commands...................................................................................................................................... 254
acl-vlan-group............................................................................................................................................................254
cam-acl-vlan...............................................................................................................................................................255
description (ACL VLAN Group).............................................................................................................................256
ip access-group (ACL VLAN Group)....................................................................................................................256
member vlan (ACL VLAN Group)..........................................................................................................................257
show acl-vlan-group ................................................................................................................................................257
show cam-acl-vlan....................................................................................................................................................258
show running config acl-vlan-group.....................................................................................................................259
Common MAC ACL Commands.................................................................................................................................. 260
clear counters mac access-group.........................................................................................................................260
mac control-plane egress-acl..................................................................................................................................261
mac access-group..................................................................................................................................................... 261
show mac access-lists............................................................................................................................................. 262
show mac accounting access-list......................................................................................................................... 264
Standard MAC ACL Commands.................................................................................................................................. 265
deny..............................................................................................................................................................................265
mac access-list standard.........................................................................................................................................266
permit........................................................................................................................................................................... 267
6
Contents