Dell 9.8(0.0) Network Router User Manual


  Open as PDF
of 1910
 
mac access-group
Apply a MAC ACL to traffic entering or exiting an interface. The following interface types can be used for
VLAN , Physical interface, Port channel interface. Enter into the interface mode and apply the mac acl in
the following manner.
Syntax Applying MAC Access group on a physical / port channel interfacemac access-
group access-list-name {in [vlan vlan-range] | out}
To delete a MAC access-group, use the no mac access-group mac-list-
name command.
Parameters
access-list-
name
Enter the name of a configured MAC access list, up to 140
characters.
vlan vlan-range (OPTIONAL) Enter the keyword vlan and then enter a range
of VLANs. The range is from 1 to 4094 (you can use IDs 1 to
4094).
NOTE: This option is available only with the keywordin
option.
in Enter the keyword in to configure the ACL to filter incoming
traffic.
out Enter the keyword out to configure the ACL to filter
outgoing traffic.
NOTE: The option is not available on the S-Series.
NOTE:
1. If the MAC ACL is applied on VLAN, none of the VLAN members should have
an access list applied for that VLAN.
2. If the MAC ACL is applied on a Physical or Port Channel interface, the VLAN
in which this port is associated should not have an access list applied.
3. If the MAC ACL is applied on a VLAN, then that VLAN should not belong to
VLAN ACL group.
4. If the MAC ACL is applied on a VLAN ACL group, then none of the VLANs in
that group should have an access list applied on it.
Defaults none
Command
Modes
INTERFACE
Command
History
This guide is platform-specific. For command information about other platforms,
refer to the relevant Dell Networking OS Command Line Reference Guide.
Access Control Lists (ACL)
265