Reference Guide

ACL Commands 745
FILE LOCATION: C:\Users\gina\Desktop\Checkout_new\CLI Folders\Dell Plasma-ARC
2+3\new_system_mifs_ARC2_latest\ACL.fm
DELL CONFIDENTIAL – PRELIMINARY 4/3/14 - FOR PROOF ONLY
Command Mode
Interface Configuration mode (Ethernet, Port-Channel)
User Guidelines
If you want to define multiple protocols on the same interface, those
protocols should be defined in the same command.
To change configuration of the protocol filtering for an interface, you should
first remove the current assignment of protocol filtering assignment, and then
assign the new configuration of the protocol filtering.
If Proprietary Protocol Filtering rules are assigned on an interface, the user is
not able to assign ACL or Policy Map or Security suite rules to that interface
and to enable 802.1X Dynamic Policy Assignment to that interface.
If ACL or Policy Map or Security suite rules are assigned to an interface or
802.1X Dynamic Policy Assignment is enabled for an interface, the user is not
able to assign Proprietary Protocol Filtering rules to that interface.
The following table defines the DA and protocol types of the packets that are
subject for discarding per each command:
Example
console(config-if)# service-acl
input
blockcdp blockvtp
Command Destination Address Protocol Type
blockcdp 0100.0ccc.cccc 0x2000
blockvtp 0100.0ccc.cccc 0x2003
blockdtp 0100.0ccc.cccc 0x2004
blockudld 0100.0ccc.cccc 0x0111
blockpagp 0100.0ccc.cccc 0x0104
blocksstp 0100.0ccc.cccd -
blockall 0100.0ccc.ccc0 - 0100.0ccc.cccf -