CLI (Command Line Interface)

MAC ACL Commands

MAC ACL Commands

Command

Function

 

 

access-list mac

Syntax:

This command adds a MAC

[no] access-list mac acl_name

access list and enters MAC ACL

• acl_name – Name of the ACL.

configuration mode.

(Maximum length: 16 characters)

Use the no form to remove the

Default Setting: None

specified ACL.

Command Mode: Global Configuration

 

Command Usage: When you create a new ACL or enter configuration

 

mode for an existing ACL, use the permit or deny command to add new

 

rules to the bottom of the list. To create an ACL, you must add at least one

 

rule to the list.

 

To remove a rule, use the no permit or no deny command followed by the

 

exact text of a previously configured rule.

 

An ACL can contain up to 32 rules.

 

Example:

 

Console(config)#access-list mac jerry

 

Console(config-mac-acl)#

 

 

permit, deny

Syntax:

(MAC ACL)

[no] {permit deny}

This command adds a rule to a

{any host source source address-bitmask}

{any host destination destination address-bitmask}

MAC ACL. The rule filters packets

[vid vid [vid-end]] [ethertype protocol [protocol-end]]

matching a specified MAC source

Note: The default is for Ethernet II packets.

or destination address (i.e., physi-

• any – Any MAC source or destination address.

cal layer address), or Ethernet

• host – A specific MAC address.

protocol type.

• source – Source MAC address.

Use the no form to remove a rule.

 

• destination – Destination MAC address range with bitmask.

 

address-bitmask – Bitmask for MAC address (in hexidecimal format). For

 

all bitmasks, “1” means care and “0” means ignore.

 

• vid – VLAN ID. (Range: 1-4094)

 

vid-end – Upper bound of VID range. (Range: 1-4094)

 

• protocol – A specific Ethernet protocol number.

 

(Range: 0-65535)

 

protocol-end – Upper bound of protocol range.

 

(Range: 0-65535)

 

Default Setting: None

 

Command Mode: MAC ACL

 

Command Usage: New rules are added to the end of the list.

 

The ethertype option can only be used to filter Ethernet II formatted pack-

 

ets. A detailed listing of Ethernet protocol types can be found in RFC 1060.

 

A few of the more common types include the following:

 

• 0800 - IP

 

• 0806 - ARP

 

• 8137 - IPX

 

Example:

 

This rule permits packets from any source MAC address to the destination

 

address 00-e0-29-94-34-de where the Ethernet type is 0800:

 

Console(config-mac-acl)#permit any host 00-e0-29-94-34-de

 

ethertype 0800

 

Console(config-mac-acl)#

 

 

218

NXA-ENET24 - Software Management Guide

Page 238
Image 238
AMX NXA-ENET24 manual MAC ACL Commands, Command Function Access-list mac Syntax, Permit, deny Syntax, Command Mode MAC ACL

NXA-ENET24 specifications

The AMX NXA-ENET24 is a versatile and powerful networked control interface designed to meet the growing demands of modern AV systems. This network switch offers an exceptional combination of reliability, performance, and scalability, making it an ideal choice for professional environments such as conference rooms, educational facilities, and control rooms.

One of the key features of the NXA-ENET24 is its 24-port configuration, allowing for extensive connectivity options. Each port supports 10/100/1000 Mbps speeds, ensuring that high bandwidth applications are handled with ease. Additionally, the switch incorporates advanced auto-negotiation technology, which automatically configures the optimal speed and duplex mode for connected devices. This ensures seamless connectivity and minimizes the risk of network disruptions.

The NXA-ENET24 is designed with advanced management capabilities, including support for VLANs, which helps to segment network traffic for enhanced security and performance. Network administrators can easily create virtual local area networks to optimize traffic flow and reduce congestion. This feature is particularly beneficial in environments where multiple AV systems operate concurrently.

Another significant characteristic of the NXA-ENET24 is its support for Power over Ethernet, or PoE. This feature enables the switch to deliver electrical power alongside data through the network cables. As a result, devices such as IP cameras, VoIP phones, and wireless access points can be powered directly from the switch, simplifying deployment and reducing the need for additional power sources.

Monitoring and management of the switch are made easier through a user-friendly interface. The NXA-ENET24 supports SNMP for network management, allowing users to monitor performance metrics, configure settings, and receive alerts in case of issues. This level of oversight is crucial for maintaining the stability of AV systems in mission-critical applications.

Durability is another hallmark of the NXA-ENET24 design. The switch features a robust chassis that is engineered to withstand the rigors of professional use. With cooling mechanisms in place and a fanless design, the NXA-ENET24 operates quietly and efficiently, making it suitable for environments where noise is a concern.

In conclusion, the AMX NXA-ENET24 is a powerful, reliable, and feature-rich network switch that effectively supports modern AV applications. With its extensive connectivity options, advanced management capabilities, PoE support, and durable design, it is an excellent choice for integrators and organizations looking to optimize their network infrastructure.