A
CCESS
C
ONTROL
L
IST
C
OMMANDS
24-16MAC ACLs

The commands in this section configure ACLs based on hardware

addresses, packet format, and Ethernet type. To configure MAC ACLs,

first create an access list containing the required permit or deny rules, set a

precedence mask to control the filter sequence, and then bind the access

list to one or more ports

Table 24-3 MAC ACL Commands

Command Function Mode Page
access-list mac Creates a MAC ACL and enters
configuration mode
GC 24-17
permit, deny Filters packets matching a specified
source and destination address,
packet format, and Ethernet type
MAC-ACL 24-18
show mac access-list Displays the rules for configured
MAC ACLs
PE 24-20
access-list mac
mask-precedence
Changes to the mode for configuring
access control masks
GC 24-20
mask Sets a precedence mask for the ACL
rules
MAC-Mask 24-21
show access-list mac
mask-precedence
Shows the ingress or egress rule
masks for MAC ACLs
PE 24-24
mac access-group Adds a port to a MAC ACL IC 24-25
show mac
access-group
Shows port assignments for MAC
ACLs
PE 24-26