Specifications
Configuring Access Lists
21-70 Security Configuration
Configuring Access Lists
Purpose
Toreviewandconfiguresecurityaccesscontrollists(ACLs),whichpermitordenyaccessto
routinginterfacesbasedonprotocolandIPaddressrestrictions.
Commands
Thecommandsusedtoreviewandconfiguresecurityaccesslistsarelistedbelow:
show access-lists
UsethiscommandtodisplayconfiguredIPaccesslistswhenoperatinginroutermode.
Syntax
showaccess‐lists[number]
Parameters
Defaults
Ifnumberisnotspecified,theentiretableofaccess listswillbedisplayed.
Mode
Anyroutermode.
Example
ThisexampleshowshowtodisplayIPaccesslistnumber101.Thisisanextendedaccesslist,
whichpermitsordeniesICMP,UDPandIPframesbasedonrestrictionsconfiguredwiththeone
oftheaccess‐listcommands.Fordetailsonconfiguringstandardaccesslists,referto“access‐list
(standard)”on
page 21‐71.Fordetailsonconfiguringextendedaccesslists,referto“access‐list
(extended)”onpage 21‐72
.
C3(su)->router#show access-lists 101
Extended IP access list 101
Router: These commands can be executed when the device is in router mode only. For details
on how to enable router configuration modes, refer to “Enabling Router Configuration Modes” on
page 14-3.
For information about... Refer to page...
show access-lists 21-70
access-list (standard) 21-74
access-list (extended) 21-72
ip access-group 21-74
access‐list‐
number
(Optional)Displaysaccesslistinformationforaspecificaccesslistnumber.
Validvaluesare between1and199.