CLI Guide
any Enter the keyword any to filter all packets.
host mac-address Enter the keyword host and then enter a MAC address to
filter packets with that host address.
mac-source-
address
Enter a MAC address in nn:nn:nn:nn:nn:nn format.
The MAC ACL supports an inverse mask; therefore, a mask
of ff:ff:ff:ff:ff:ff allows entries that do not match and a mask
of 00:00:00:00:00:00 only allows entries that match
exactly.
mac-source-
address-mask
Specify which bits in the MAC address must be matched.
mac-destination-
address
Enter the destination MAC address and mask in
nn:nn:nn:nn:nn:nn format.
mac-destination-
address-mask
Specify which bits in the MAC address must be matched.
The MAC ACL supports an inverse mask; therefore, a mask
of ff:ff:ff:ff:ff:ff allows entries that do not match and a mask
of 00:00:00:00:00:00 only allows entries that match
exactly.
ethertype
operator
(OPTIONAL) To filter based on protocol type, enter one of
the following Ethertypes:
• ev2 - is the Ethernet II frame format.
• llc - is the IEEE 802.3 frame format.
• snap - is the IEEE 802.3 SNAP frame format.
count (OPTIONAL) Enter the keyword count to count packets the
filter processes.
byte (OPTIONAL) Enter the keyword byte to count bytes the
filter processes.
Defaults Not configured.
Command Modes CONFIGURATION-MAC ACCESS LIST-STANDARD
Supported Modes Full–Switch
Command History
Version Description
9.9(0.0) Introduced on the FN IOM.
8.3.16.1 Introduced on the MXL 10/40GbE Switch IO Module.
Related
Commands
deny — configures a filter to drop packets.
permit — configures a filter to forward packets.
Access Control Lists (ACL)
219