Security and authentication
11.3 MAC access control list
SCALANCE XM-400/XR-500 Command Line Interface (CLI)
Configuration Manual, 06/2016, C79000-G8976-C252-11
831
Result
The MAC access control list is configured.
Further notes
You exit the MAC ACL configuration mode with the
exit
command.
You delete the MAC access control list with the
no mac access-list extended
command.
You display the configuration of the access control list with the
show access-lists
command.
11.3.4.2
deny
Description
With this command, you configure a MAC address control list that describes the MAC
addresses for which incoming and/or outgoing data traffic is locked.
The access control list contains only one entry. If you want to lock or permit further
addresses, create a new access control list.
Note
Processing order of the lists
The access control lists are processed on the interface in the order in which they were
created.
The index number of the access control list is not used for this.
Requirement
You are in the MAC ACL configuration mode.
The command prompt is as follows:
cli(config-ext-macl)#
Syntax
Call up the command with the following parameters:
deny {any|host<src-mac-address>}{any|host<dest-mac-address>}
The parameters have the following meaning:
Parameter
Description
Range of values / note
any
Keyword for "all"
-
host
Keyword for the MAC address of an
incoming connection that is locked
-
src-mac-address
MAC address of the locked incoming
connection
Specify a valid MAC address.
Summary of Contents for SCALANCE XM-400
Page 882: ......