Mac acls, Access-list mac, Table 23-3 – Edge Products ES3528-WDM User Manual

Page 396: Mac acl commands

Advertising
background image

Access Control List Commands

23-12

23

MAC ACLs

The commands in this section configure ACLs based on hardware addresses,
packet format, and Ethernet type. To configure MAC ACLs, first create an access list
containing the required permit or deny rules, set a precedence mask to control the
filter sequence, and then bind the access list to one or more ports

access-list mac

This command adds a MAC access list and enters MAC ACL configuration mode.
Use the no form to remove the specified ACL.

Syntax

[no] access-list mac acl_name

acl_name – Name of the ACL. (Maximum length: 16 characters)

Default Setting

None

Command Mode

Global Configuration

Command Usage

• When you create a new ACL or enter configuration mode for an existing ACL,

use the permit or deny command to add new rules to the bottom of the list.
To create an ACL, you must add at least one rule to the list.

• To remove a rule, use the no permit or no deny command followed by the

exact text of a previously configured rule.

• An ACL can contain up to 32 rules.

Table 23-3 MAC ACL Commands

Command

Function

Mode

Page

access-list mac

Creates a MAC ACL and enters configuration mode

GC

23-12

permit, deny

Filters packets matching a specified source and

destination address, packet format, and Ethernet type

MAC-ACL

23-13

show mac access-list

Displays the rules for configured MAC ACLs

PE

23-14

access-list mac

mask-precedence

Changes to the mode for configuring access control masks GC

23-15

mask

Sets a precedence mask for the ACL rules

MAC-Mask 23-15

show access-list mac

mask-precedence

Shows the ingress or egress rule masks for MAC ACLs

PE

23-17

mac access-group

Adds a port to a MAC ACL

IC

23-18

show mac access-group

Shows port assignments for MAC ACLs

PE

23-18

Advertising
This manual is related to the following products: