Specifications

270
DCS-3950 series Ethernet switch manual
For Offset(x), different types of data frames are with different value ranges:
for untagged-eth2 type frame: <1251>
for untagged-802.2 type frame: <1255>
for untagged-eth2 type frame: <1259>
for untagged-eth2 type frame: <1263>
Command mode: Global Mode
Default:No access-list configured
Usage Guide: When the user assign specific <num> for the first time, ACL of the serial
number is created, then the lists are added into this ACL.
Example: Permit tagged-eth2 with any source MAC addresses and any destination MAC
addresses, the fifth byte is 0x08,and the sixteenth bytes is 0x0 can pass.
Switch(Config)#access-list 1100 permit any-source-mac any-destination-mac tagged-eth2
15.3.2.11 mac access extended
Command: Mac-access-list extended <name>
no mac-access-list extended <name>
Functions: Define a name-manner MAC ACL or enter access-list configuration mode,no
mac-access-list extended <name>’ command deletes this ACL.
Parameters: <name> name of access-list excluding blank or quotation mark, and it must
start with letter, and the length cannot exceed 16 (remark: sensitivity on capital or small
letter.)
Command mode: Global Mode
Default: No access-lists configured
Usage Guide: After assigning this command for the first time, only an empty name
access-list is created and no list item included.
Example: Create a extended mac based access list, and name it as MAC ACL.
Switch(Config)# mac-access-list extended mac_acl
Switch(Config-Mac-Ext-Nacl-mac_acl)#
15.3.2.12 permit | deny(mac extended)
Command:
[no]{deny|permit}
{any-source-mac|{host-source-mac<host_smac>}|{<smac><smac-mask>}}
{any-destination-mac|{host-destination-mac<host_dmac>}|{<dmac><dmac-mask>}}
[cos <cos-val> [<cos-bitmask>]] [vlanId <vid-value> [<vid-mask>]] [ethertype
<protocol> [<protocol-mask>]]
[no]{deny|permit}
{any-source-mac|{host-source-mac<host_smac>}|{<smac><smac-mask>}}
{any-destination-mac|{host-destination-mac<host_dmac>}|{<dmac><dmac-mask>}}
[untagged-eth2 [ethertype <protocol> [protocol-mask]]]
[no]{deny|permit}
{any-source-mac|{host-source-mac<host_smac>}|{<smac><smac-mask>}}