
C
HAPTER
26
| Access Control Lists
MAC ACLs
– 965 –
E
XAMPLE
Console(config)#access-list mac jerry
Console(config-mac-acl)#
R
ELATED
C
OMMANDS
permit, deny (965)
mac access-group (968)
show mac access-list (969)
permit
,
deny
(MAC ACL)
This command adds a rule to a MAC ACL. The rule filters packets matching
a specified MAC source or destination address (i.e., physical layer address),
or Ethernet protocol type. Rules can also filter packets based on IPv4/v6
addresses, including Layer 4 ports and protocol types. Use the
no
form to
remove a rule.
S
YNTAX
{
permit
|
deny
}
{
any
|
host
source
|
source address-bitmask
}
{
any
|
host
destination
|
destination address-bitmask
}
[
vid
vid vid-bitmask
] [
ethertype
ethertype
[
ethertype
-
bitmask
]]
{{
ip
{
any
|
host
source-ip
|
source-ip network-mask
}
{
any
|
host
destination-ip
|
destination-ip network-mask
}
{
ipv6
{
any
|
host
source-ipv6
|
source-ipv6/prefix-length
}
{
any
|
host
destination-ipv6
|
destination-ipv6/prefix-length
}}
[
protocol
protocol
]
[
l4-source-port
sport
[
port-bitmask
]]
[
l4-destination-port
dport
[
port-bitmask
]}]
[
time-range
time-range-name
]
no
{
permit
|
deny
}
{
any
|
host
source
|
source address-bitmask
}
{
any
|
host
destination
|
destination address-bitmask
}
[
vid
vid vid-bitmask
] [
ethertype
ethertype
[
ethertype
-
bitmask
]]
{{
ip
{
any
|
host
source-ip
|
source-ip network-mask
}
{
any
|
host
destination-ip
|
destination-ip network-mask
}
{
ipv6
{
any
|
host
source-ipv6
|
source-ipv6/prefix-length
}
{
any
|
host
destination-ipv6
|
destination-ipv6/prefix-length
}}
[
protocol
protocol
]
[
l4-source-port
sport
[
port-bitmask
]]
[
l4-destination-port
dport
[
port-bitmask
]}]
Note:
The default is for Ethernet II packets.
Summary of Contents for ES3528MV2
Page 1: ...Management Guide www edge core com ES3528MV2 ES3528MV2 DC 28 Port Fast Ethernet Layer 2 Switch...
Page 2: ......
Page 4: ......
Page 48: ...CONTENTS 48...
Page 68: ...SECTION I Getting Started 68...
Page 78: ...CHAPTER 1 Introduction System Defaults 78...
Page 96: ...SECTION II Web Configuration 96...
Page 116: ...CHAPTER 3 Using the Web Interface Navigating the Web Browser Interface 116...
Page 148: ...CHAPTER 4 Basic Management Tasks Resetting the System 148...
Page 192: ...CHAPTER 5 Interface Configuration VLAN Trunking 192 Figure 65 Configuring VLAN Trunking...
Page 226: ...CHAPTER 6 VLAN Configuration Configuring VLAN Translation 226...
Page 236: ...CHAPTER 7 Address Table Settings Configuring MAC Address Mirroring 236...
Page 270: ...CHAPTER 9 Congestion Control Automatic Traffic Control 270...
Page 300: ...CHAPTER 11 Quality of Service Attaching a Policy Map to a Port 300...
Page 418: ...CHAPTER 13 Security Measures DHCP Snooping 418...
Page 588: ...CHAPTER 15 IP Configuration Setting the Switch s IP Address IP Version 6 588...
Page 606: ...CHAPTER 16 IP Services Configuring the PPPoE Intermediate Agent 606...
Page 676: ...CHAPTER 17 Multicast Filtering Multicast VLAN Registration for IPv6 676...
Page 772: ...CHAPTER 20 System Management Commands Switch Clustering 772...
Page 802: ...CHAPTER 22 Remote Monitoring Commands 802...
Page 808: ...CHAPTER 23 Flow Sampling Commands 808...
Page 872: ...CHAPTER 24 Authentication Commands PPPoE Intermediate Agent 872...
Page 950: ...CHAPTER 25 General Security Measures Port based Traffic Segmentation 950...
Page 1002: ...CHAPTER 27 Interface Commands Power Savings 1002...
Page 1016: ...CHAPTER 28 Link Aggregation Commands Trunk Status Display Commands 1016...
Page 1046: ...CHAPTER 30 Congestion Control Commands Automatic Traffic Control Commands 1046...
Page 1058: ...CHAPTER 32 UniDirectional Link Detection Commands 1058...
Page 1064: ...CHAPTER 33 Address Table Commands 1064...
Page 1124: ...CHAPTER 35 ERPS Commands 1124...
Page 1168: ...CHAPTER 36 VLAN Commands Configuring Voice VLANs 1168...
Page 1182: ...CHAPTER 37 Class of Service Commands Priority Commands Layer 3 and 4 1182...
Page 1202: ...CHAPTER 38 Quality of Service Commands 1202...
Page 1360: ...CHAPTER 41 CFM Commands Delay Measure Operations 1360...
Page 1382: ...CHAPTER 43 Domain Name Service Commands 1382...
Page 1440: ...SECTION IV Appendices 1440...
Page 1468: ...COMMAND LIST 1468...
Page 1479: ......
Page 1480: ...ES3528MV2 ES3528MV2 DC E112013 ST R03...