OS10 Enterprise Edition User Guide Release 10.4.1.0

PDF

deny (MAC)

Configures a filter to drop packets with a specific MAC address.

Syntax
deny { nn:nn:nn:nn:nn:nn [ 00:00:00:00:00:00] | any} { nn:nn:nn:nn:nn:nn [ 00:00:00:00:00:00] | any} [ protocol-number | capture | cos | vlan]
Parameters
  • nn:nn:nn:nn:nn:nn — Enter the MAC address of the network from or to which the packets are sent.
  • 00:00:00:00:00:00 — (Optional) Enter which bits in the MAC address must match. If you do not enter a mask, a mask of 00:00:00:00:00:00 applies.
  • any — (Optional) Set routes which are subject to the filter.
    • protocol-number — (Optional) MAC protocol number identified in the header, from 600 to ffff.
    • capture — (Optional) Capture packets the filter processes.
    • cos — (Optional) CoS value, from 0 to 7.
    • vlan — (Optional) VLAN number, from 1 to 4093.
Default
Disabled
Command Mode
MAC-ACL
Usage Information
The no version of this command removes the filter.
Example
OS10(config)# mac access-list macacl
                                       OS10(conf-mac-acl)# deny any any cos 7
                                       OS10(conf-mac-acl)# deny any any vlan 2
                                    
Supported Releases
10.2.0E or later

Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\