![Cisco 350XG series Скачать руководство пользователя страница 559](http://html.mh-extra.com/html/cisco/350xg-series/350xg-series_administration-manual_67491559.webp)
Access Control
MAC-Based ACLs Creation
Cisco 350XG & 550XG Series 10G Stackable Managed Switches
539
25
Modifying ACLs Workflow
An ACL can only be modified if it is not in use. The following describes the process
of unbinding an ACL in order to modify it:
1. If the ACL does not belong to a QoS Advanced Mode class map, but it has been
associated with an interface, unbind it from the interface using the
2. If the ACL is part of the class map and not bound to an interface, then it can be
modified.
3. If the ACL is part of a class map contained in a policy bound to an interface, you
must perform the chain of unbinding as follows:
•
Unbind the policy containing the class map from the interface by using
Policy Binding.
•
Delete the class map containing the ACL from the policy using the
Configuring a Policy
(
Edit
).
•
Delete the class map containing the ACL, by using
Defining Class Mapping
.
Only then can the ACL be modified, as described in this section.
MAC-Based ACLs Creation
MAC-based ACLs are used to filter traffic based on Layer 2 fields. MAC-based
ACLs check all frames for a match.
MAC-based ACLs are defined in the
page. The rules are defined
.
MAC-based ACL
To define a MAC-based ACL:
STEP 1
Click
Access Control
>
MAC-Based ACL
.
This page contains a list of all currently-defined MAC-based ACLs.
STEP 2
Click
Add
.
STEP 3
Enter the name of the new ACL in the
ACL Name
field. ACL names are
case-sensitive.