Direction - Displays the direction of packet traffic affected by the MAC ACL, which
•
can be Inbound or blank.
To delete a MAC ACL, select the check box next to the Name field, then click DELETE.
2.
To change the name of a MAC ACL, select the check box next to the Name field, update the
3.
name, then click APPLY.
Click ADD to add a new MAC ACL to the switch configuration.
4.
MAC Rules
Use the MAC Rules page to define rules for MAC-based ACLs. The access list definition
includes rules that specify whether traffic matching the criteria is forwarded normally or
discarded. A default 'deny all' rule is the last rule of every list.
To display the MAC Rules page, click Security
To configure MAC ACL rules:
From the ACL Name field, specify the existing MAC ACL to which the rule will apply. To
1.
set up a new MAC ACL use the "MAC Binding Table" on page 6-293.
To add a new rule, enter a whole number in the range of (1 to 12) that will be used to identify
2.
the rule, configure the following settings, and click ADD.
Action - Specify what action should be taken if a packet matches the rule's criteria.
•
The choices are permit or deny.
Assign Queue Id - Specifies the hardware egress queue identifier used to handle all
•
packets matching this ACL rule. Valid range of Queue Ids is (0 to 6).
CoS - Specifies the 802.1p user priority to compare against an Ethernet frame. Valid
•
range of values is 0 to 7.
Ethertype User Value - Specifies the user defined customized Ethertype value to be
•
used when the user has selected "User Value" as Ethertype Key, to compare against
an Ethernet frame. Valid range of values is 0x0600 to 0xFFFF.
Source MAC - Specifies the Source MAC address to compare against an Ethernet
•
frame. Valid format is (xx:xx:xx:xx:xx:xx).
Source MAC Mask - Specifies the Source MAC address mask specifying which bits in
•
the Source MAC to compare against an Ethernet frame. Valid format is
(xx:xx:xx:xx:xx:xx).
Destination MAC - Specifies the destination MAC address to compare against an
•
Ethernet frame. Valid format is (xx:xx:xx:xx:xx:xx). The BPDU keyword may be
specified using a Destination MAC address of 01:80:C2:xx:xx:xx.
Web Management User Guide
ACL> Basic
291
MAC Rules.