Deployment Guide
Supported Modes Full–Switch
Command History
Version Description
9.9(0.0) Introduced on the FN IOM.
8.3.16.1 Introduced on the MXL 10/40GbE Switch IO Module.
Usage Information You can assign one ACL (standard or extended) to an interface.
In case of applying a MAC ACL to trac entering or exiting a VLAN interface. Enter the VLAN interface mode and
apply the mac acl in the following manner.
mac access-group access-list-name {in | out}
1 If the MAC ACL is applied on VLAN, none of the VLAN members should have an access list applied for that
VLAN.
2 If the MAC ACL is applied on a Physical or Port Channel interface, the VLAN in which this port is associated
should not have an access list applied.
3 If the MAC ACL is applied on a VLAN, then that VLAN should not belong to VLAN ACL group.
4 If the MAC ACL is applied on a VLAN ACL group, then none of the VLANs in that group should have an
access list applied on it.
Related Commands
mac access-list standard — congures a standard MAC ACL.
mac access-list extended — congures an extended MAC ACL.
show mac access-lists
Display all of the Layer 2 ACLs congured in the system, whether or not they are applied to an interface, and the count of matches/
mismatches against each ACL entry displayed.
Syntax
show mac access-lists [access-list-name] [interface interface] [in | out]
Parameters
access-list-name Enter the name of a congured MAC ACL, up to 140 characters.
interface interface Enter the keyword interface then the one of the following keywords and slot/port or
number information:
• For a Port Channel interface, enter the keywords port-channel and then enter a
number. The range is from 1 to 128.
•
For a 10-Gigabit Ethernet interface, enter the keyword TenGigabitEthernet and
then enter the slot/port information.
• For a VLAN interface enter the keyword VLAN and then the vlan id.
in | out Identify whether ACL is applied on ingress or egress side.
Command Modes EXEC Privilege
Supported Modes Full–Switch
Command History
Version Description
9.9(0.0) Introduced on the FN IOM.
180 Access Control Lists (ACL)