- Numbered Extended ACLs
- Named standard IPv4 ACLs
- router and switch security
- NAT
-
Config
- ip access-list standard name
- {deny | permit} source [source wildcard] [log]
- remark text
-
Exec
- Same as Numbered
-
Exec
- show ip nat statistics
- show ip nat translations [verbose]
- clear ip nat translation {* | [inside global-ip local-ip] [outside local-ip global-ip]}
- debug ip nat
-
Config
- access-list access-list-number {deny | permit} protocol source source-wildcard destination destination-wildcard [log]
- access-list access-list-number {deny | permit} {tcp | udp} source source-wildcard [source_port] destination destination-wildcard [destination_port] [log]
- access-list access-list-number remark text
- ip access-group {number | name [in | out]}
-
Show
- show access-lists [access-list-number | access-list-name]
- show ip access-list [access-list-number | access-list-name]
- show ip interface [type number]
- Named Extended ACLs
-
Config
- clear ip nat translation protocol inside global-ip global-port local-ip local-port [outside local-ip global-ip]
- ip access-list extended name
- ip access-group name [in | out]
- {deny | permit} protocol source source-wildcard destination destination-wildcard [log]
- {deny | permit} tcp source source-wildcard [operator [port]] destination destination-wildcard [operator [port]] [log]
-
Show
- same as other types
- Numbered Standard ACLs
- NTP
-
Config
- ntp server address version 1..4
-
show
- show ntp associations
- show ntp status
-
Config
- access-list access-list-number {deny | permit} source [source-wildcard] [log]
- access-list access-list-number {deny | permit} host source [log]
- access-list access-list-number remark text
- ip access-group {number | name [in | out]}
-
Exec
- show access-lists [access-list-number | access-list-name]
- show ip access-list [access-list-number | access-list-name]
- show ip interface [type number]
-
Config
- enable secret pass-value
- enable password pass-value
- login local
- service password-encryption
- username name password pass-value
- username name secret pass-value
- crypto key generate rsa
- transport input {telnet | ssh | all | none}
- [no] ip http server
- [no] service tcp-small-servers
- [no] cdp run
- [no] cdp enable
-
Config
- ip nat {inside | outside}
- ip nat inside source {list {access-list-number | access-list-name}} {interface type number | pool pool-name} [overload]
- ip nat pool name start-ip end-ip {netmask netmask | prefix-length prefix-length}
- ip nat source static inside-ip {outside-ip | interface-id}