Access Control Lists 3

Configuring a MAC ACL Mask

This mask defines the fields to check in the packet header.

Command Usage

You must configure a mask for an ACL rule before you can bind it to a port.

Command Attributes

Source/Destination Address Type – Use “Any” to match any address, “Host” to specify the host address for a single node, or “MAC” to specify a range of addresses. (Options: Any, Host, MAC; Default: Any)

Source/Destination Bit Mask – Address of rule must match this bitmask.

VID Bitmask – VLAN ID of rule must match this bitmask.

Ethernet Type Bit Mask – Ethernet type of rule must match this bitmask.

Packet Format Mask – A packet format must be specified in the rule.

Web – Configure the mask to match the required rules in the MAC ingress or egress ACLs. Set the mask to check for any source or destination address, a host address, or an address range. Use a bitmask to search for specific VLAN ID(s) or Ethernet type(s). Or check for rules where a packet format was specified. Then click Add.

Figure 3-50 ACL Mask Configuration - MAC

3-83