1035
Chapter 68
ACL Commands
The access control list (ACL) commands are summarized in Table 110.
Table 110. Access Control List Commands
Command Mode Description
“ACCESS-LIST (MAC Address)” on
page 1037
Global
Configuration
Creates ACLs that identify packets
based on source and destination MAC
addresses.
“ACCESS-LIST ICMP” on page 1040 Global
Configuration
Creates ACLs that identify packets
based on ICMP type and source and
destination IP addresses.
“ACCESS-LIST IP” on page 1044 Global
Configuration
Creates ACLs that filter packets based
on source and destination IP
addresses.
“ACCESS-LIST PROTO” on
page 1048
Global
Configuration
Creates ACLs that identify packets
based on protocol numbers and
source and destination IP addresses.
“ACCESS-LIST TCP” on page 1053 Global
Configuration
Creates access control lists that filter
ingress packets based on TCP port
numbers.
“ACCESS-LIST UDP” on page 1057 Global
Configuration
Creates access control lists that
identify ingress packets based on
UDP port numbers.
“ACCESS-GROUP” on page 1061 Port Interface Adds ACLs to ports.
“MAC ACCESS-GROUP” on
page 1062
Global
Configuration
Adds MAC address ACLs to ports on
the switch.
“NO ACCESS-LIST” on page 1063 Global
Configuration
Deletes ACLs from the switch.
“NO ACCESS-GROUP” on page 1064 Port Interface Removes ACLs from ports on the
switch.
“NO MAC ACCESS-GROUP” on
page 1065
Port Interface Removes MAC address ACLs from
ports on the switch.
“SHOW ACCESS-LIST” on page 1066 Privileged Exec Displays the ACLs on the switch.