Configuring ACLs
The following keywords may be used in the condition to indicate the client parameters:
Multicast ACL Keywords
destination ip
destination vlan
destination port
destination port group
destination mac
destination mac group
If a destination group is specified, the corresponding single value keyword cannot be combined in the
same condition. For example, if a destination port is specified, a destination port group cannot be speci-
fied in the same condition.
To filter multicast clients, specify the multicast IP address, which is the address of the multicast group or
stream, and specify the client IP address, VLAN, MAC address, or slot/port. For example:
-> qos default multicast disposition deny
-> policy condition Mclient1 multicast ip 224.0.1.2 destination vlan 5
-> policy action ok disposition accept
-> policy rule Mrule condition Mclient1 action ok
In this example, any traffic coming in on VLAN 5 requesting membership to the 224.0.1.2 multicast group
will be allowed.
OmniSwitch AOS Release 6 Network Configuration Guide
September 2009
Configuring ACLs
page 41-15