CLI Guide

particularly useful when looking for malicious traffic. It is available for Layer 2 and
Layer 3 ingress and egress traffic. You may specify traffic using standard or
extended access-lists. This mechanism copies all incoming or outgoing packets on
one port and forwards (mirrors) them to another port. The source port is the
monitored port (MD) and the destination port is the monitoring port (MG).
Related
Commands
deny — Configures a filter to drop packets.
permit — Configures a filter to forward packets.
Common MAC Access List Commands
The following commands are available within both MAC ACL modes (Standard and Extended) and do not
have mode-specific options. These commands allow you to clear, display, and assign MAC ACL
configurations. The MAC ACL can be applied on Physical, Port-channel and VLAN interfaces. As per the
stipulated rules in the ACL, the traffic on the Interface/VLAN members or Port-channel members will be
permitted or denied.
The switch supports both Ingress and Egress MAC ACLs.
clear counters mac access-group
Clear counters for all or a specific MAC ACL.
Syntax
clear counters mac access-group [mac-list-name]
Parameters
mac-list-name (OPTIONAL) Enter the name of a configured MAC access
list.
Command Modes EXEC Privilege
Supported Modes Full–Switch
Command History
Version Description
9.9(0.0) Introduced on the FN IOM.
8.3.16.1 Introduced on the MXL 10/40GbE Switch IO Module.
204
Access Control Lists (ACL)