7 access-list(mac standard), Access, List – PLANET WGSW-50040 User Manual

Page 321: Mac standard

Advertising
background image

Commands for Security Function Chapter 6 Commands for TACACS+

number from 0-255;

<time-range-name>, name of time range

Command Mode:

Global mode

Default Configuration:

No access-list configured.

Usage Guide:

When the user assign specific <num> for the first time, ACL of the serial number is created, then the

lists are added into this ACL; the access list which marked 3200-3299 can configure not continual

reverse mask of IP address.

Examples:

Permit the passage of TCP packet with source MAC 00-12-34-45-XX-XX, any destination MAC

address, source IP address 100.1.1.0 0.255.255.255, and source port 100.

Switch(config)#access-list 3199 permit 00-12-34-45-67-00 00-00-00-00-FF-FF

any-destination-mac tcp 100.1.1.0 0.255.255.255 s-port 100 any-destination

21.7 access-list(mac standard)

Command:

access-list <num> {deny|permit} {any-source-mac | {host-source-mac <host_smac> } |

{<smac> <smac-mask>} }

no access-list <num>

Functions:

Define a standard numeric MAC ACL rule, ‘no access-list <num>’ command deletes a standard

numeric MAC ACL access-list rule.

Parameters:

<num> is the access-list No. which is a decimal’s No. from 700-799;

deny if rules are matching, deny access;

permit if rules are matching, permit access;

<host_smac>, <sumac> source MAC address;

<sumac-mask> mask (reverse mask) of source MAC address.

Command Mode:

Global mode

Default Configuration:

No access-list configured.

Usage Guide:

Advertising