mac access-group

Apply a MAC ACL to traffic entering or exiting an interface. The following interface types can be used for VLAN , Physical interface, Port channel interface. Enter into the interface mode and apply the mac acl in the following manner.

Syntax

Applying MAC Access group on a physical / port channel interfacemac access-

 

group access-list-name {in [vlan vlan-range] out}

 

To delete a MAC access-group, use the no mac access-groupmac-list-

 

name command.

Parameters

Defaults

Command Modes

Command History

access-list-

Enter the name of a configured MAC access list, up to 140

name

characters.

vlan vlan-range

(OPTIONAL) Enter the keyword vlan and then enter a range

 

of VLANs. The range is from 1 to 4094 (you can use IDs 1 to

 

4094).

 

NOTE: This option is available only with the keywordin

 

option.

in

Enter the keyword in to configure the ACL to filter incoming

 

traffic.

out

Enter the keyword out to configure the ACL to filter

 

outgoing traffic.

 

NOTE: The option is not available on the S-Series.

NOTE:

1.If the MAC ACL is applied on VLAN, none of the VLAN members should have an access list applied for that VLAN.

2.If the MAC ACL is applied on a Physical or Port Channel interface, the VLAN in which this port is associated should not have an access list applied.

3.If the MAC ACL is applied on a VLAN, then that VLAN should not belong to VLAN ACL group.

4.If the MAC ACL is applied on a VLAN ACL group, then none of the VLANs in that group should have an access list applied on it.

none

INTERFACE

This guide is platform-specific. For command information about other platforms, refer to the relevant Dell Networking OS Command Line Reference Guide.

The following is a list of the Dell Networking OS version history for this command.

222

Access Control Lists (ACL)

Page 222
Image 222
Dell 9.7(0.0) manual Mac access-group, Vlan vlan-range