Reference Guide

226 | Access Control Lists (ACL)
www.dell.com | support.dell.com
Usage
Information
The number of entries allowed per ACL is hardware-dependent. Refer to your line card documentation
for detailed specification on entries allowed per ACL.
Prior to 7.8.1.0, names are up to 16 characters long.
Example
Figure 6-8. Command Example: mac-access-list extended
Related
Commands
permit
c e s z
Configure a filter to pass packets matching the criteria specified.
Syntax
permit {any | host mac-address | mac-source-address mac-source-address-mask} {any |
host mac-address | mac-destination-address mac-destination-address-mask} [ethertype
operator] [count [byte]] | [log] [monitor]
To remove this filter, you have two choices:
Use the no seq sequence-number command syntax if you know the filters sequence number or
Use the no permit {any | host mac-address | mac-source-address
mac-source-address-mask} {any | mac-destination-address
mac-destination-address-mask} command.
Parameters
Version 7.8.1.0 Increased name string to accept up to 140 characters. Prior to 7.8.1.0, names are up to
16 characters long.
Version 7.6.1.0 Support added for S-Series
Version 7.5.1.0 Support added for C-Series
pre-Version 6.1.1.0 Introduced for E-Series
FTOS(conf)#mac-access-list access-list extended TestMATExt
FTOS(config-ext-macl)#remark 5 IPv4
FTOS(config-ext-macl)#seq 10 permit any any ev2 eq 800 count bytes
FTOS(config-ext-macl)#remark 15 ARP
FTOS(config-ext-macl)#seq 20 permit any any ev2 eq 806 count bytes
FTOS(config-ext-macl)#remark 25 IPv6
FTOS(config-ext-macl)#seq 30 permit any any ev2 eq 86dd count bytes
FTOS(config-ext-macl)#seq 40 permit any any count bytes
FTOS(config-ext-macl)#exit
FTOS(conf)#do show mac accounting access-list snickers interface g0/47 in
Extended mac access-list snickers on GigabitEthernet 0/47
seq 10 permit any any ev2 eq 800 count bytes (559851886 packets 191402152148
bytes)
seq 20 permit any any ev2 eq 806 count bytes (74481486 packets 5031686754
bytes)
seq 30 permit any any ev2 eq 86dd count bytes (7751519 packets 797843521 bytes)
mac access-list standard Configure a standard MAC access list.
show mac accounting access-list
Display MAC access list configurations and counters (if
configured).
any Enter the keyword any to forward all packets.
host Enter the keyword host followed by a MAC address to
forward packets with that host address.
mac-source-address
Enter the source MAC address in nn:nn:nn:nn:nn:nn format.