ACCESS CONTROL LIST COMMANDS

address-bitmask16– Bitmask for MAC address (in hexidecimal format).

vid – VLAN ID. (Range: 1-4094)

vid-end– Upper bound of VID range. (Range: 1-4094)

protocol – A specific Ethernet protocol number. (Range: 0-65535)

protocol-end– Upper bound of protocol range. (Range: 0-65535)

Default Setting

None

Command Mode

MAC ACL

Command Usage

New rules are added to the end of the list.

The ethertype option can only be used to filter Ethernet II formatted packets.

A detailed listing of Ethernet protocol types can be found in RFC

1060. A few of the more common types include the following:

-0800 - IP

-0806 - ARP

-8137 - IPX

Example

This rule permits packets from any source MAC address to the destination address 00-e0-29-94-34-de where the Ethernet type is 0800.

Console(config-mac-acl)#permit any host 00-e0-29-94-34-de ethertype 0800

Console(config-mac-acl)#

Related Commands

access-list mac (4-127)

16. For all bitmasks, “1” means care and “0” means ignore.

4-129

Page 377
Image 377
SMC Networks SMC6224M manual Mac Acl