Chapter 9
| Access Control Lists
IPv6 ACLs
– 327 –
Related Commands
ip access-group (326)
show ip access-list This command displays the rules for configured IPv4 ACLs.
Syntax
show ip access-list {standard | extended} [acl-name]
standard – Specifies a standard IP ACL.
extended – Specifies an extended IP ACL.
acl-name – Name of the ACL. (Maximum length: 16 characters)
Command Mode
Privileged Exec
Example
Console#show ip access-list standard
IP standard access-list david:
permit host 10.1.1.21
permit 168.92.0.0 255.255.15.0
Console#
Related Commands
permit, deny (322)
ip access-group (326)
IPv6 ACLs
The commands in this section configure ACLs based on IPv6 addresses, DSCP traffic
class, or next header type. To configure IPv6 ACLs, first create an access list
containing the required permit or deny rules, and then bind the access list to one or
more ports.
Table 63: IPv4 ACL Commands
Command Function Mode
access-list ipv6 Creates an IPv6 ACL and enters configuration mode for
standard or extended IPv6 ACLs
GC
ipv6 access-group Adds all ports to an IPv6 ACL GC
permit, deny Filters packets matching a specified source IPv6 address IPv6- STD-ACL
permit, deny Filters packets meeting the specified criteria, including
destination IPv6 address, DSCP traffic class, or next
header type
IPv6- EXT-ACL
ipv6 access-group Adds a port to an IPv6 ACL IC