672
Default:
None
Command Mode:
Interface Configuration Mode
Usage Guide:
The command configures with only enabling global multicast source
control. After that, it will match multicast data message imported from the interface
according to configured access-list, such as matching: permit, the message will be
received and forwarded; otherwise the message will be thrown away.
Example:
Switch(config)#inter e
Switch(Config-If-Ethernet )#ip multicast source-control access-group 5000
Switch(Config-If-Ethernet )#
17.5.4 ECSCM Configuration Examples
1
.
Source Control
In order to prevent an Edge Switch from putting out multicast data ad asbitsium, we
configure Edge Switch so that only the switch at port Ethernet1/5 is allowed to transmit
multicast, and the data group must be 225.1.2.3. Also, switch connected up to port
Ethernet1/10 can transmit multicast data without any limit, and we can make the following
configuration.
Switch(config)#access-list 5000 permit ip any host 225.1.2.3
Switch(config)#access-list 5001 permit ip any any
Switch(config)#ip multicast source-control
Switch(config)#interface ethernet1/5
Switch(Config-If-Ethernet1/5)#ip multicast source-control access-group 5000
Switch(config)#interface ethernet1/10
Switch(Config-If-Ethernet1/10)#ip multicast source-control access-group 5001
2
.
Destination Control
We want to limit users with address in 10.0.0.0/8 network segment from entering the
group of 238.0.0.0/8, so we can make the following configuration:
Firstly enable IGMP snooping in the VLAN it is located (Here it is assumed to be in
VLAN2)
Switch(config)#ip igmp snooping
Switch(config)#ip igmp snooping vlan 2
After that, configure relative destination control access-list, and configure specified
IP address to use that access-list.
Switch(config)#access-list 6000 deny ip any 238.0.0.0 0.255.255.255
Switch(config)#access-list 6000 permit ip any any