Hub/Switch Configuration Guide
290 ACL Commands
mac access-list extended
The assign-queue and redirect parameters are only valid for a permit rule.
Mode
Mac Access List Config 
Related
Commands
mac access-list extended
This command creates a MAC Access Control List (ACL) identified by name, consisting of 
classification fields defined for the Layer 2 header of an Ethernet frame. .
The 
no version of this command deletes a MAC ACL identified by name from the system.
Syntax
mac access-list extended name
Parameters
Mode
Global Config
Related
Commands
novell 0x8137, 0x8138
pppoe 0x8863, 0x8864
rarp 0x8035
Table 23  Ethertype Keyword and 4-digit Hexadecimal Value (continued)
Ethertype Keyword Corresponding Value
interface range Identify an interface range and access the Interface Range mode.
mac access-group (port 
channel)
In the Interface Port Channel Config mode, attach a MAC ACL to the 
selected port channel.
mac access-group
Attach a specific MAC Access Control List (ACL) identified by 
name 
to an interface in the ingress direction.
mac access-list extended Create a MAC ACL.
show mac access-lists
Display the rules defined for the MAC access list specified by 
name.
Note: The CLI mode is changed to Mac Access List Config (prompt is “hostname 
(Mac-Access-List Config)#”) when this command is successfully executed. If a MAC 
ACL by this name already exists, this command simply invokes the mode.
name
Case-sensitive alphanumeric string from 1 to 31 characters uniquely 
identifying the MAC access list. The string may include alphabetic, 
numeric, dash, dot or underscore characters only. The string must start 
with a letter.
{deny|permit}
Creates a new rule for the MAC access list selected by the 
mac 
access-list extended 
command.
interface range Defines an interface range and accesses the Interface Range mode










