Administrator Guide

Layer 2 Switching Commands 265
Commands in this Section
This section explains the following commands:
ip access-list
Use the ip access-list command in Global Configuration mode to create an
Access Control List (ACL) that is identified by the parameter
list-name
and
to enter IPv4-Access-List configuration mode. If parameterized with the
name of an existing access list, additional match clauses are added to the end
of the access list.
ip access-list
list-name
[extended]
no ip access-list
list-name
list-name
—Access-list name up to 31 characters in length.
Default Configuration
This command has no default configuration.
Command Mode
Global Configuration mode
User Guidelines
Access lists now use the extended access list format. Multiple permit and
deny clauses and actions may be specified without requiring the access list
name to be entered each time. Permit and deny clauses are entered in order
from the first match clause when in Access List Configuration mode.
ip access-list mac access-list extended rename
deny | permit (IP ACL) remark
deny | permit (Mac-Access-List-
Configuration)
service-acl input
ip access-group show service-acl interface
mac access-group show ip access-lists
mac access-list extended show mac access-lists
2CSNXXX_SWUM204.book Page 265 Monday, January 25, 2016 1:25 PM