Access Security Guide K/KA/KB.15.15

explicitly configure the filter on the port trunk. If you use the show filter < index > command for a
filter created before the related source port was added to a trunk, the port number appears between
asterisks ( * ), indicating that the filter action has been suspended for that filter. For example, if
you create a filter on port 5, then create a trunk with ports 5 and 6, and display the results, you
would see the following:
Figure 324 Switch Response to Adding a Filtered Source Port to a Trunk
Configuring a multicast or protocol traffic filter
Syntax
[multicast <mac-address>]
Specifies a multicast address. Inbound traffic received (on any port) with this multicast address
will be filtered. (Default: Forward on all ports.) The noform of the command deletes the multicast
filter for the < mac-address > multicast address and returns the destination ports for that filter
to the Forwardaction.
[<forward l drop> <port-list>]
Specifies whether the designated destination port(s) should forward or drop the filtered traffic.
Syntax
[protocol < ip | ipx | arp | appletalk | sna | netbeui >]
Specifies a protocol type. Traffic received (on any port) with this protocol type will
be filtered. (Default: Forward on all ports.)
The noform of the command deletes the protocol filter for the specified protocol
and returns the destination ports for that filter to the Forwardaction.
[<forward | drop> <port-list>]
Specifies whether the designated destination port(s) should forward or drop the
filtered traffic.
Configuring traffic/security 433