754
[no]{deny|permit}{any-source-mac|{host-source-
mac
<host_smac>}|{<smac><smac-mask>}}
{any-destination-mac|{host-destination-mac<host
_dmac>}|{<dmac><dmac-mask>}} [tagged-802-3
[cos
<cos-val>
[<cos-bitmask>]] [vlanId
<vid-value> [<vid-mask>]]]
Creates an MAC access
rule matching tagged 802.3
frame;the “
no
” form
command deletes this MAC
access rule
c. Exit
ACL
Configuration
Mode
Command Explanation
Extended name-based MAC access configure Mode
Exit
Quit the
extended
name-based MAC access
configure mode
8) Configuring a numbered extended MAC-IP access-list
Command Explanation
Global mode
access-list<num>{deny|permit}{any-source-mac|
{host-source-mac<host_smac>}|{<smac><smac-
mask>}}
{any-destination-mac|{host-destination-mac
<host_dmac>}|{<dmac><dmac-mask>}}icmp
{{<source><source-wildcard>}|any-source|
{host-source<source-host-ip>}}
{{<destination><destination-wildcard>}|any-desti
nation|
{host-destination<destination-host-ip>}}[<icmp-ty
pe> [<icmp-code>]] [precedence <precedence>]
[tos <tos>][time-range<time-range-name>]
Creates a numbered
mac-icmp extended mac-ip
access rule; if the numbered
extended access-list of
specified number does not
exist, then an access-list will
be created using this
number.