Version 7.4.1.0
Added the
monitor
option.
pre-Version
6.1.1.0
Introduced on the E-Series.
Usage
Information
When you use the
log
option, the CP processor logs details about the packets that match.
Depending on how many packets match the log entry and at what rate, the CP may become
busy as it has to log these packets’ details.
NOTE: When ACL logging and byte counters are configured simultaneously, byte counters
may display an incorrect value. Configure packet counters with logging instead.
Related
Commands
deny
– configures a filter to drop packets.
permit
– configures a filter to forward packets.
Extended MAC ACL Commands
When an access-list is created without any rule and then applied to an interface, ACL behavior reflects implicit permit.
The following commands configure Extended MAC ACLs.
The C-Series and S-Series platforms support Ingress MAC ACLs only.
The S4810 and Z9000 support both Ingress and Egress MAC ACLs.
NOTE: For more information, also refer to the
Commands Common to all ACL Types
and
Common MAC Access List
Commands
sections.
deny
Configure a filter to drop packets that match the filter criteria.
C-Series, E-Series, S-Series, Z-Series
Syntax
deny {any | host
mac-address
|
mac-source-address mac-source-
address-mask
} {any | host
mac-address
|
mac-destination-address
mac-destination-address-mask
} [
ethertype-operator
] [count
[byte]] [log] [monitor]
To remove this filter, you have two choices:
•
Use the
no seq
sequence-number
command if you know the filter’s sequence
number.
•
Use the
no deny {any | host
mac-address
|
mac-source-address
mac-source-address-mask
} {any |
host mac-address
|
mac-
destination-address mac-destination-address-mask
}
command.
Parameters
any
Enter the keyword
any
to drop all packets.
host
mac-
address
Enter the keyword
host
and then enter a MAC address to drop
packets with that host address.
270
Содержание Force10 Z9000
Страница 1: ...FTOS Command Line Reference Guide for the Z9000 System FTOS 9 1 0 0 ...
Страница 96: ...96 ...
Страница 194: ...194 ...
Страница 312: ...312 ...
Страница 540: ...540 ...
Страница 546: ...546 ...
Страница 560: ...560 ...
Страница 566: ...566 ...
Страница 590: ...action act UpdateCounter param0 1 0x01 param1 0 0x00 output truncated 590 ...
Страница 624: ...624 ...
Страница 638: ...638 ...
Страница 648: ...648 ...
Страница 659: ...Related Commands show gvrp displays the GVRP configuration 659 ...
Страница 660: ...660 ...
Страница 834: ...834 ...
Страница 854: ...854 ...
Страница 906: ...906 ...
Страница 914: ...914 ...
Страница 976: ...976 ...
Страница 990: ...990 ...
Страница 1006: ...1006 ...
Страница 1008: ...1008 ...
Страница 1026: ...1026 ...
Страница 1145: ...10 211 1 2 Outgoing interface list GigabitEthernet 8 0 1145 ...
Страница 1146: ...1146 ...
Страница 1156: ...1156 ...
Страница 1166: ...1166 ...
Страница 1180: ...1180 ...
Страница 1258: ...1258 ...
Страница 1272: ...1272 ...
Страница 1394: ...1394 ...
Страница 1400: ...1400 ...
Страница 1410: ...1410 ...
Страница 1423: ...To display the type of STP guard Portfast BPDU root or loop guard enabled on a port enter the show spanning tree 0 command 1423 ...
Страница 1424: ...1424 ...
Страница 1444: ...1444 ...
Страница 1456: ...FTOS config interface vlan 40 FTOS conf if vlan tagged TenGi 8 0 FTOS conf if vlan exit FTOS config 1456 ...
Страница 1468: ...Version 8 3 8 0 Introduced on the S4810 1468 ...
Страница 1470: ...1470 ...