beautypg.com

Brocade Multi-Service IronWare Security Configuration Guide (Supporting R05.6.00) User Manual

Page 107

background image

Multi-Service IronWare Security Configuration Guide

89

53-1003035-02

Displaying Layer-2 ACLs

2

10: deny 0000.0030.0310 ffff.ffff.ffff 0000.0030.0010 ffff.ffff.ffff any etype

20: permit any any any etype any

L2 MAC Access List mac-access-list-481-1234567890123456789012345678901234567890:

10: permit 0025.0113.0101 ffff.ffff.ffff 0021.3113.0101 ffff.ffff.ffff any etype

any

20: permit any 0021.3121.0101 ffff.ffff.ffff any etype any

30: deny 0025.0122.010a ffff.ffff.ffff any any etype arp log

40: deny any any any etype any

Syntax: show access-list l2

The l2 parameter specifies the display of all Layer-2 ACL tables.

Displaying Layer-2 ACL statistics on Brocade NetIron XMR and Brocade
MLX series devices

To display Layer 2 inbound ACL statistics on Brocade NetIron XMR and Brocade MLX series devices,
enter commands such as the following.

To display Layer 2 outbound ACL statistics on Brocade NetIron XMR and Brocade MLX series
devices, enter commands such as the following.

Syntax: show access-list accounting int_type slot/port in | out l2

To display the show access-list command output in the configuration format, use the
display-config-format command.

Brocade(config)# acl-policy

Brocade(config-acl-policy)# display-config-format

Output example with display-config-format command enabled.

Brocade(config)#show access-list name xGW_Filter2

ip access-list extended xGW_Filter2

permit vlan 2405 ip host 10.33.44.55 any

(config-if-e10000-14/1)#show access-list acc eth 14/1 in l2

Collecting L2 ACL accounting for 400 on port 14/1 ... Completed successfully.

L2 ACL Accounting Information:

Inbound: ACL 400

0: permit any any 100 etype ipv4-l5

Hit count: (1 sec) 0 (1 min) 0

(5 min) 0 (accum) 0

1: deny any any any etype arp

Hit count: (1 sec) 0 (1 min) 0

(5 min) 0 (accum) 0

Brocade(config-if-e10000-14/1)#show access-list acc eth 14/1 out l2

Collecting L2 ACL accounting for 400 on port 14/1 ... Completed successfully.

L2 ACL Accounting Information:

Outbound: ACL 400

0: permit any any 100 etype ipv4-l5

Hit count: (1 sec) 0 (1 min) 0

(5 min) 0 (accum) 0

1: deny any any any etype arp

Hit count: (1 sec) 0 (1 min) 0

(5 min) 0 (accum) 0