Command Line Interface
4-110
4
MAC ACLs
access-list mac
This command adds a MAC access list and enters MAC ACL configuration mode.
Use the no form to remove the specified ACL.
Syntax
[no] access-list mac acl_name
acl_name – Name of the ACL. (Maximum length: 16 characters)
Default Setting
None
Command Mode
Global Configuration
Command Usage
• When you create a new ACL or enter configuration mode for an existing ACL,
use the permit or deny command to add new rules to the bottom of the list.
To create an ACL, you must add at least one rule to the list.
• To remove a rule, use the no permit or no deny command followed by the
exact text of a previously configured rule.
• An ACL can contain up to 32 rules.
Example
Table 4-37 MAC ACLs
Command Function Mode Page
access-list mac Creates a MAC ACL and enters configuration mode GC 4-110
permit, deny Filters packets matching a specified source and
destination address, packet format, and Ethernet type
MAC-ACL 4-111
show mac access-list Displays the rules for configured MAC ACLs PE 4-112
mac access-group Adds a port to a MAC ACL IC 4-112
show mac access-group Shows port assignments for MAC ACLs PE 4-113
map access-list mac Sets the CoS value and corresponding output queue for
packets matching an ACL rule
IC 4-113
show map access-list
mac
Shows CoS value mapped to an access list for an interface PE 4-114
Console(config)#access-list mac jerry
Console(config-mac-acl)#