Viewing Comments in an ACL

You can use the following commands to display comments for ACLs:

  • show running-config access-list ip
  • show running-config access-list ipv6
  • show running-config access-list mac
  • show access-lists all
  • show ip access-lists
  • show ipv6 access-lists
  • show mac access-lists name

The following example shows the comment text for the ACL acl100 in a show running-config access-list ip display.

device# show running-config access-list ip
ip access-list extended acl100
remark The following line permits TCP packets
sequence 10 permit tcp 192.168.4.0 0.0.0.255 2.2.2.0 0.0.0.255 
remark The following permits UDP packets
sequence 20 permit udp 192.168.2.0 0.0.0.255 2.2.2.0 0.0.0.255 
remark The following line denies all IPv4 traffic
sequence 30 deny ip any any 

The following example shows the comment text for the ACL acl100 in a show access-lists all display.

device# show access-lists all

Extended IP access list acl100: 3 entries
ACL Remark: The following line permits TCP packets
10: permit tcp 192.168.4.0 0.0.0.255 2.2.2.0 0.0.0.255 
ACL Remark: The following permits UDP packets
20: permit udp 192.168.2.0 0.0.0.255 2.2.2.0 0.0.0.255 
ACL Remark: The following line denies all IPv4 traffic
30: deny ip any any