remark

Adds a comment to describe entries in an IPv4 or IPv6 ACL.
Syntax
remark comment-text
no remark comment-text
Command Default

No comments are added to describe entries in an IPv4 or IPv6 ACL.

Parameters
comment-text

Specifies the comment for the ACL entry, up to 256 alphanumeric characters.

Modes

IPv4 ACL configuration mode

IPv6 ACL configuration mode

Usage Guidelines

You can add a comment by entering the remark command immediately preceding an ACL entry. The comment appears in the output of show commands that display ACL information.

The no form of the command deletes the comment text added for an ACL entry.

Examples

The following example configures remarks for an IPv4 ACL.

device(config)# ip access-list extended tcp_udp
device(config-ext-ipacl-tcp_udp)# remark The following line permits TCP packets
device(config-ext-ipacl-tcp_udp)# permit tcp 192.168.4.40/24 2.2.2.2/24
device(config-ext-ipacl-tcp_udp)# remark The following permits UDP packets
device(config-ext-ipacl-tcp_udp)# permit udp 192.168.2.52/24 2.2.2.2/24
device(config-ext-ipacl-tcp_udp)# deny ip any any

The following example configures remarks for an IPv6 ACL.

device(config)# ipv6 access-list rtr
device(config-ipv6-access-list rtr)# remark This entry permits ipv6 packets from 2001:DB8::2 to any destination
device(config-ipv6-access-list rtr)# permit ipv6 host 2001:DB8::2 any
device(config-ipv6-access-list rtr)# remark This entry denies udp packets from any source to any destination
device(config-ipv6-access-list rtr)# deny udp any any
device(config-ipv6-access-list rtr)# remark This entry denies IPv6 packets from any source to any destination
device(config-ipv6-access-list rtr)# deny ipv6 any any

The following example shows the comment text for the ACL named "rtr" in a show running-config display.

device# show running-config
ipv6 access-list rtr
remark This entry permits ipv6 packets from 2001:DB8::2 to any destination permit ipv6 host 2001:DB8::2 any
remark This entry denies udp packets from any source to any destination deny udp any any
remark This entry denies IPv6 packets from any source to any destination deny ipv6 any any

The following example shows how to delete a comment from an IPv6 ACL entry.

device(config)# ipv6 access-list rtr
device(config-ipv6-access-list rtr)# no remark This entry permits ipv6 packets from 2001:DB8::2 to any destination