Administrator Guide

Version Description
8.3.19.0 Introduced on the S4820T.
8.3.11.1 Introduced on the Z9000.
8.3.7.0 Introduced on the S4810.
8.1.1.0 Introduced on the E-Series ExaScale.
7.8.1.0 Increased the name string to accept up to 140 characters. Prior to 7.8.1.0, names
are up to 16 characters long.
7.6.1.0 Introduced on the S-Series.
7.5.1.0 Introduced on the C-Series.
6.1.1.0 Introduced on the E-Series.
Usage
Information
The system supports one ingress and one egress MAC ACL per interface.
The number of entries allowed per ACL is hardware-dependent. For detailed information on the number
entries allowed per ACL on the C9000, refer to the Content Addressable Memory (CAM) chapter in the
C9000 Configuration Guide.
Use this command in Configuration Terminal Batch mode to configure a standard MAC ACL, name in a
dual-homing setup.
Example
Dell(conf)#mac-access-list access-list standard TestMAC
Dell(config-std-macl)#?
deny Specify packets to reject
description List description
exit Exit from access-list configuration mode
no Negate a command or set its defaults
permit Specify packets to forward
remark Specify access-list entry remark
seq Sequence numbers
show Show Standard ACL configuration
permit
To forward packets from a specific source MAC address, configure a filter.
C9000 Series
Syntax
permit {any | mac-source-address [mac-source-address-mask]} [count [byte]]
| [log [interval minutes] [threshold-in-msgs [count]] [monitor]
To remove this filter, you have two choices:
Use the no seq sequence-number command if you know the filters sequence number.
Use the no permit {any | mac-source-address mac-source-address-mask}
command.
Parameters
any Enter the keyword any to forward all packets received with a MAC address.
mac-source-
address
Enter a MAC address in nn:nn:nn:nn:nn:nn format.
mac-source-
address-mask
(OPTIONAL) Specify which bits in the MAC address must match. If no mask is
specified, a mask of 00:00:00:00:00:00 is applied (in other words, the filter allows
only MAC addresses that match).
count (OPTIONAL) Enter the keyword count to count packets processed by the filter.
byte (OPTIONAL) Enter the keyword byte to count bytes processed by the filter.
268 Access Control Lists (ACL)