OS10 Enterprise Edition User Guide Release 10.4.0E(R3)


deny (MAC)

Configures a filter to drop packets with a specific MAC address.

deny { nn:nn:nn:nn:nn:nn [ 00:00:00:00:00:00] | any} { nn:nn:nn:nn:nn:nn [ 00:00:00:00:00:00] | any} [ protocol-number | capture | cos | count | vlan]
  • nn:nn:nn:nn:nn:nn — Enter the MAC address of the network from or to which the packets are sent.
  • 00:00:00:00:00:00 — (Optional) Enter which bits in the MAC address must match. If you do not enter a mask, a mask of 00:00:00:00:00:00 applies.
  • any — (Optional) Set routes which are subject to the filter.
    • protocol-number — (Optional) MAC protocol number identified in the header, from 600 to ffff.
    • capture — (Optional) Capture packets the filter processes.
    • cos — (Optional) CoS value, from 0 to 7.
    • count — (Optional) Count packets the filter processes.
    • vlan — (Optional) VLAN number, from 1 to 4093.
Command Mode
Usage Information
OS10 cannot count both packets and bytes; when you use the count byte options, only bytes increment. The no version of this command removes the filter.
OS10(config)# mac access-list macacl
                                       OS10(conf-mac-acl)# deny any any cos 7
                                       OS10(conf-mac-acl)# deny any any vlan 2
Supported Releases
10.2.0E or later

Rate this content

Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\