
MAC ACL
S
23-17
Related Commands
permit, deny (23-17)
mac access-group (23-23)
show mac access-list (23-19)
permit, deny (MAC ACL)
This command adds a rule to a MAC ACL. The rule filters packets
matching a specified MAC source or destination address (i.e., physical layer
address), or Ethernet protocol type. Use the no form to remove a rule.
Syntax
[no]
{
permit
|
deny
}
{
any
|
host
source
|
source address-bitmask
}
{
any
|
host
destination
|
destination address-bitmask
}
[
vid
vid vid-bitmask
] [
ethertype
protocol
[
protocol
-
bitmask
]]
Note: The default is for Ethernet II packets.
[no]
{
permit
|
deny
}
tagged-eth2
{
any
|
host
source
|
source address-bitmask
}
{
any
|
host
destination
|
destination address-bitmask
}
[
vid
vid vid-bitmask
] [
ethertype
protocol
[
protocol
-
bitmask
]]
[no]
{
permit
|
deny
}
untagged-eth2
{
any
|
host
source
|
source address-bitmask
}
{
any
|
host
destination
|
destination address-bitmask
}
[
ethertype
protocol
[
protocol
-
bitmask
]]
[no]
{
permit
|
deny
}
tagged-802.3
{
any
|
host
source
|
source address-bitmask
}
{
any
|
host
destination
|
destination address-bitmask
}
[
vid
vid vid-bitmask
]
[no]
{
permit
|
deny
}
untagged-802.3
{
any
|
host
source
|
source address-bitmask
}
{
any
|
host
destination
|
destination address-bitmask
}
Comentarios a estos manuales