Usage Information Use the order option only when you use policy-based QoS on the switch. For moreinformation, refer to the Quality of Service chapter of the C9000 Series ConfigurationGuide. The following conditions apply:• The seq sequence-number command is applicable only in an ACL group.• The order option works across ACL groups that have been applied on aninterface via the QoS policy framework.• The order option takes precedence over seq sequence-number.• If sequence-number is not configured, the rules with the same order value areordered according to their configuration order.• If sequence-number is configured, the sequence-number is used as a tie breakerfor rules with the same order.When you use the log option, the CP processor logs detail the packets that match.Depending on how many packets match the log entry and at what rate, the CP maybecome busy as it has to log these packets’ details.By default, 10 ACL logs are generated if you do not specify the threshold explicitly. Thedefault frequency at which ACL logs are generated is five minutes. By default, flow-based monitoring is not enabled.Use the monitor option only when you are using flow-based monitoring. For moreinformation, refer to the Port Monitoring chapter of the C9000 Series ConfigurationGuide.RelatedCommandsdeny — configures a filter to drop packets.permit — configures a filter to forward packets.show ip access-listsDisplay inbound or outbound IP access-list information based on a given option.C9000 SeriesSyntax show ip access-lists {interface interface [in | out]}Parameters interface Enter the keyword interface then one of the followingkeywords and slot/port or pe-id / stack-unit / port-idinformation:• For a 1-Gigabit Ethernet interface, enter the keywordGigabitEthernet then the slot/port information.• For a 10-Gigabit Ethernet interface, enter the keywordTenGigabitEthernet then the slot/port information.• For a 40-Gigabit Ethernet interface, enter the keywordfortyGigE then the slot/port information.Access Control Lists (ACL) 287