Administrator Guide

Layer 2 Switching Commands 269
Commands in this Section
This section explains the following commands:
ip access-list
Use the ip access-list command in Global Configuration mode to create an
Access Control List (ACL) that is identified by the parameter list-name and
to enter IPv4-Access-List configuration mode. If parameterized with the
name of an existing access list, additional match clauses are added to the end
of the access list.
ip access-list list-name [extended]
no ip access-list list-name
list-name
—Access-list name up to 31 characters in length.
Default Configuration
This command has no default configuration.
Command Mode
Global Configuration mode
User Guidelines
Access lists use the extended access list format. Multiple permit and deny
clauses and actions may be specified without requiring the access list name to
be entered each time. Permit and deny clauses are entered in order from the
first match clause when in Access List Configuration mode.
ip access-list mac access-list extended rename
deny | permit (IP ACL) remark
deny | permit (Mac-Access-List-
Configuration)
service-acl input
ip access-group show service-acl interface
mac access-group show ip access-lists
mac access-list extended show mac access-lists