Force10 Networks S2410s Switch User Manual


 
290 ACL Commands
mac access-list extended
The assign-queue and redirect parameters are only valid for a permit rule.
Mode
Mac Access List Config
Related
Commands
mac access-list extended
This command creates a MAC Access Control List (ACL) identified by name, consisting of
classification fields defined for the Layer 2 header of an Ethernet frame. .
The
no version of this command deletes a MAC ACL identified by name from the system.
Syntax
mac access-list extended name
Parameters
Mode
Global Config
Related
Commands
novell 0x8137, 0x8138
pppoe 0x8863, 0x8864
rarp 0x8035
Table 23 Ethertype Keyword and 4-digit Hexadecimal Value (continued)
Ethertype Keyword Corresponding Value
interface range Identify an interface range and access the Interface Range mode.
mac access-group (port
channel)
In the Interface Port Channel Config mode, attach a MAC ACL to the
selected port channel.
mac access-group
Attach a specific MAC Access Control List (ACL) identified by
name
to an interface in the ingress direction.
mac access-list extended Create a MAC ACL.
show mac access-lists
Display the rules defined for the MAC access list specified by
name.
Note: The CLI mode is changed to Mac Access List Config (prompt is “hostname
(Mac-Access-List Config)#”) when this command is successfully executed. If a MAC
ACL by this name already exists, this command simply invokes the mode.
name
Case-sensitive alphanumeric string from 1 to 31 characters uniquely
identifying the MAC access list. The string may include alphabetic,
numeric, dash, dot or underscore characters only. The string must start
with a letter.
{deny|permit}
Creates a new rule for the MAC access list selected by the
mac
access-list extended
command.
interface range Defines an interface range and accesses the Interface Range mode