Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Regarding Cisco ASA Dynamic ACLs


Greetings , Good Day!!

Could anybody tell me the CLI commands to fetch/view the Dynamic ACLs of my ASA firewall?

Please help me in this regard.

Your help is highly appreciated.

Thanks & Best Regards,

- Mahi

Everyone's tags (1)
Cisco Employee

Re:Regarding Cisco ASA Dynamic ACLs


If I am not mistaken they should appear on the "show users" or in the same "show access-lists". If there was an already configured ACL you need to use the per-user-override, otherwise is not going to work.

Can u see the ACL being pushed by the AAA server?

Sent from Cisco Technical Support Android App

New Member

Re:Regarding Cisco ASA Dynamic ACLs

Hi Maykol,

Greetings , Good Day!!

Thank you so much for responsding to my query.

I guess you misunderstood my query. I'm not asking about the Network ACLs and Webtype ACLs that are used in DAP. Instead I would like to know the ways to view the created DAP record details using CLI command.(I mean complete DAP record details that includes the attributes like Endpoint Security, AAA server details, Network ACLs, Webtype ACLs etc..that are associated with that DAP record)

Also just curious to know about the below things:

1. Will show running-config will show the DAP record details? or does it have any other specific CLI command to show them.

2. Also is there a way that i can configure Dynamic Access Policies using CLI? If so, could you please share the corresponding document if you have any.

Awaiting your response,

Thanks & Best Regards,