Inserting Rules into ACLs
- Enter the
configure terminalcommand to access global configuration mode. - Enter ACL configuration sub-mode for the IPv4, IPv6, or MAC ACL you want to modify.
- Enter the appropriate
showcommand to display the rules of the relevant ACL.- Enter the
show ip access-listscommand followed by the name ofan IPv4 ACL. - Enter the
show ipv6 access-listscommand followed by the name of an IPv6 ACL. - Enter the
show mac access-lists namecommand followed by the name of a MAC ACL.
device(config-std-ipacl-ip_acl_1)# show ip access-lists ip_acl_1 Standard IP access list ip_acl_1: 3 entries 10: permit 1.1.1.0 0.0.0.255 11: permit host 2.2.2.1 20: deny 2.2.2.0 0.0.0.255
device(config-ipv6-access-list ipv6_acl_1)# show ipv6 access-lists ipv6_acl_1 ipv6 access list ipv6_acl_1: 3 entries 10: permit ipv6 2001:DB8::/64 any 11: permit ipv6 2001:DB8:101::/64 any 20: permit ipv6 host 2001:DB8:aa:10::102 host 2001:DB8:101::102
- Enter the
- To insert a rule between two adjacent rules, complete the following steps:
- Create the new rule, beginning with the keyword sequence and the needed sequence number.