DELL 9.8(0.0) User Manual

Page of 1910
mac access-group
Apply a MAC ACL to traffic entering or exiting an interface. The following interface types can be used for 
VLAN , Physical interface, Port channel interface. Enter into the interface mode and apply the mac acl in 
the following manner.
Syntax
Applying MAC Access group on a physical / port channel interfacemac access-
group access-list-name {in [vlan vlan-range] | out}
To delete a MAC access-group, use the no mac access-group mac-list-
name
 command.
Parameters
access-list-
name
Enter the name of a configured MAC access list, up to 140 
characters.
vlan vlan-range
(OPTIONAL) Enter the keyword vlan and then enter a range 
of VLANs. The range is from 1 to 4094 (you can use IDs 1 to 
4094).
NOTE: This option is available only with the keywordin 
option.
in
Enter the keyword in to configure the ACL to filter incoming 
traffic.
out
Enter the keyword out to configure the ACL to filter 
outgoing traffic.
NOTE: The option is not available on the S-Series.
NOTE: 
1. If the MAC ACL is applied on VLAN, none of the VLAN members should have 
an access list applied for that VLAN.
2. If the MAC ACL is applied on a Physical or Port Channel interface, the VLAN 
in which this port is associated should not have an access list applied.
3. If the MAC ACL is applied on a VLAN, then that VLAN should not belong to 
VLAN ACL group.
4. If the MAC ACL is applied on a VLAN ACL group, then none of the VLANs in 
that group should have an access list applied on it.
Defaults
none
Command 
Modes
INTERFACE
Command 
History
This guide is platform-specific. For command information about other platforms, 
refer to the relevant Dell Networking OS Command Line Reference Guide.
Access Control Lists (ACL)
265