command to know my ACLs are running? command to know my ACLs are running?

Unanswered Question
Nov 22nd, 2007


are there commands to know if my ACLs are runing or not? i found only this:

debug ip packet 100

is there any more?


I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Kevin Dorrell Thu, 11/22/2007 - 07:52

debug ip packet 100 does not tell you whether or not ACL 100 is running. What it does is it monitors IP packets, filtering the monitor according to the AVL.

As the other posting suggest, the way to see whether the ACL is operating is to show access-list, with perhaps the name or number of the ACL. This will tell you how many times each line on the access-list has been hit. To clear those counters, use the clear access-list counters command.

Kevin Dorrell



This Discussion