Configuration Guide User guide

1746 FastIron Configuration Guide
53-1002494-02
Displaying ACL information
The following displays an example of the show output for an SX 800 device in which an SX-FI48GPP
interface module is installed.
Syntax: show access-list hw-usage on | off
Syntax: show access-list <access-list-id> | all
By default, hardware usage statistics are disabled. To disable hardware usage statistics after is has
been enabled, use the show access-list hw-usage off command.
The <access-list-id> variable is a valid ACL name or number.
Displaying ACL information
To display the number of Layer 4 CAM entries used by each ACL, enter the following command.
Syntax: show access-list <ACL-num> | <ACL-name> | all
The Rule cam use field lists the number of CAM entries used by the ACL or entry. The number of
CAM entries listed for the ACL itself is the total of the CAM entries used by the ACL entries.
Brocade#show access-list all
Standard IP access list 1 (hw usage (if applied on 24GC modules) : 2) (hw usage
(if applied on 48GC modules) : 2)
permit any (hw usage (if applied on 24GC modules) : 1) (hw usage (if applied on
48GC modules) : 1)
Extended IP access list 100 (hw usage (if applied on 24GC modules) : 7) (hw
usage (if applied on 48GC modules) : 7)
deny tcp any range newacct src any (hw usage (if applied on 24GC modules) : 6)
(hw usage (if applied on 48GC modules) : 6)
FastIron SX 800 Router#sh mod
Module Status Ports Starting MAC
F1: SX-FISF Switch Fabric active
F2: SX-FISF Switch Fabric active
S1:
S2:
S3: Configured as SX-FI648 48-port 100/1000 Copper
S4: SX-FI648PP 48-port 100/1000 Copper OK 48 0012.f227.7918
S5: SX-FI624C 24-port Gig Copper OK 24 0012.f227.7960
S6:
S7: SX-FI624C 24-port Gig Copper OK 24 0012.f227.7990
S8:
S9: SX-FIZMR6 0-port Management Standby 0
{ Status : OK }
S10: SX-FIZMR6 0-port Management Active 0
{ Status : OK }
Brocade#show access-list all
Extended IP access list 100 (Total flows: N/A, Total packets: N/A, Total rule cam
use: 3)
permit udp host 192.168.2.169 any (Flows: N/A, Packets: N/A, Rule cam use: 1)
permit icmp any any (Flows: N/A, Packets: N/A, Rule cam use: 1)
deny ip any any (Flows: N/A, Packets: N/A, Rule cam use: 1)