Brocade Multi-Service IronWare Security Configuration Guide (Supporting R05.6.00) User Manual
Page 107
Multi-Service IronWare Security Configuration Guide
89
53-1003035-02
Displaying Layer-2 ACLs
2
10: deny 0000.0030.0310 ffff.ffff.ffff 0000.0030.0010 ffff.ffff.ffff any etype
20: permit any any any etype any
L2 MAC Access List mac-access-list-481-1234567890123456789012345678901234567890:
10: permit 0025.0113.0101 ffff.ffff.ffff 0021.3113.0101 ffff.ffff.ffff any etype
any
20: permit any 0021.3121.0101 ffff.ffff.ffff any etype any
30: deny 0025.0122.010a ffff.ffff.ffff any any etype arp log
40: deny any any any etype any
Syntax: show access-list l2
The l2 parameter specifies the display of all Layer-2 ACL tables.
Displaying Layer-2 ACL statistics on Brocade NetIron XMR and Brocade
MLX series devices
To display Layer 2 inbound ACL statistics on Brocade NetIron XMR and Brocade MLX series devices,
enter commands such as the following.
To display Layer 2 outbound ACL statistics on Brocade NetIron XMR and Brocade MLX series
devices, enter commands such as the following.
Syntax: show access-list accounting int_type slot/port in | out l2
To display the show access-list command output in the configuration format, use the
display-config-format command.
Brocade(config)# acl-policy
Brocade(config-acl-policy)# display-config-format
Output example with display-config-format command enabled.
Brocade(config)#show access-list name xGW_Filter2
ip access-list extended xGW_Filter2
permit vlan 2405 ip host 10.33.44.55 any
(config-if-e10000-14/1)#show access-list acc eth 14/1 in l2
Collecting L2 ACL accounting for 400 on port 14/1 ... Completed successfully.
L2 ACL Accounting Information:
Inbound: ACL 400
0: permit any any 100 etype ipv4-l5
Hit count: (1 sec) 0 (1 min) 0
(5 min) 0 (accum) 0
1: deny any any any etype arp
Hit count: (1 sec) 0 (1 min) 0
(5 min) 0 (accum) 0
Brocade(config-if-e10000-14/1)#show access-list acc eth 14/1 out l2
Collecting L2 ACL accounting for 400 on port 14/1 ... Completed successfully.
L2 ACL Accounting Information:
Outbound: ACL 400
0: permit any any 100 etype ipv4-l5
Hit count: (1 sec) 0 (1 min) 0
(5 min) 0 (accum) 0
1: deny any any any etype arp
Hit count: (1 sec) 0 (1 min) 0
(5 min) 0 (accum) 0