3Com Switch 7750 Series
Command Reference Guide – ACL
Chapter 1 ACL Commands
1-22
Table 1-15
Rule information
Parameter
Type
Function
Description
format-type
Link layer
encapsulation
type
Defines the link
layer
encapsulation
type in the rule
format-type
: the value can be
802.3/802.2, 802.3, ether_ii,
or snap.
lsap
lsap-code
lsap-wildcard
lsap field
Defines the lsap
field in the rule
lsap-code: the encapsulation
format of data frames, a
16-bit hexadecimal number
lsap-wildcard
: mask of the
lsap value, a 16-bit
hexadecimal number used to
specify the mask bit
source
{
source-addr
source-mask |
vlan-id
}*
Source MAC
address
information
Specifies the
source MAC
address range
in the rule
source-addr
: source MAC
address, in the format of
H-H-H
source- mask
: source MAC
address mask, in the format
of H-H-H
vlan-id
: source VLAN ID, in
the range of 1 to 4,094
dest
dest-addr
dest-mask
Destination
MAC address
information
Specifies the
destination MAC
address range
in the rule
dest-addr
: destination MAC
address, in the format of
H-H-H
dest- mask
: destination MAC
address mask, in the format
of H-H-H
cos
vlan-pri
Priority
Defines the
802.1p priority
of the rule
vlan-pri
: VLAN priority, in the
range of 0 to 7
time-range
time-name
Time range
information
Specifies the
time range in
which the rule is
active
time-name
: specifies the
name of the time range in
which the rule is active; a
string of 1 to 32 characters
type
protocol-type
protocol-mask
Protocol type
of Ethernet
frames
Defines the
protocol type of
Ethernet frames
protocol-type
: protocol type
protocol-mask
: protocol type
mask
Note:
ARP packets are allowed to pass by default on the Switch 7750. You cannot use the
packet-filter
command to filter ARP packets, even though you have used the
rule
command to define a Layer 2 ACL, in which the argument
protocol
is defined as ARP.