Amer Networks SS2R48G4i V2 User Manual
Page 147
SS2R24G4i/SS2R48G4i
136
access-list<num>{deny|permit}{any-source-mac |
{host-source-mac<host_smac>}|{<smac><smac-mask>}}
{any-destination-mac|{host-destination-mac
<host_dmac>}|{<dmac><dmac-mask>}}
{eigrp|gre|igrp|ip|ipinip|ospf|{<protocol-num>}}
{{<source><source-wildcard>}|any-source
|
{host-source<source-host-ip>}}
{{<destination><destination-wildcard>}|any-destination |
{host-destination<destination-host-ip>}}
[precedence <precedence>] [tos
<tos>][time-range<time-range-name>]
Creates a numbered
extended mac-ip
access rule for other
specific mac-ip
protocol or all mac-ip
protocols; if the
numbered extended
access-list of
specified number
does not exist, then
an access-list will be
created using this
number.
no access-list <num>
Deletes this
nunbered extended
MAC-IP access rule
9)
Configuring a extended MAC-IP access-list based on nomenclature
a)
Create a extended MAC-IP access-list based on nomenclature
Command Explanation
Global Mode
mac-ip-access-list extended <name>
no mac-ip-access-list extended <name>
Creates an extended
name-based MAC-IP access
rule; the “no” form command
deletes this name-based
extended MAC-IP access
rule
b) Specify multiple “permit” or “deny” rule entries
Command Explanation
Extended name-based MAC-IP access Mode
[no] {deny|permit} {any-source-mac|{host-source-mac
<host_smac>}|{<smac><smac-mask>}}
{any-destination-mac|{host-destination-mac
<host_dmac>}|{<dmac><dmac-mask>}}icmp
{{<source><source-wildcard>}|any-source
|
{host-source<source-host-ip>}}
{{<destination><destination-wildcard>}|any-destination |
{host-destination <destination-host-ip>}} [<icmp-type>
[<icmp-code>]] [precedence <precedence>] [tos
<tos>][time-range<time-range-name>]
Creates an extended
name-based
MAC-ICMP access
rule; the “no” form
command deletes
this name-based
extended
MAC-ICMP access
rule