Tp-Link T1700G-28TQ V2 — полное руководство по настройке MAC ACL для сетевых устройств [553/772]

Превью страниц Страница 553 / 772
Tp-Link T1700G-28TQ V2 [553/772] The following example shows how to create mac acl 50 and configure rule 1 to permit packets with source mac address 00 34 a2 d4 34 b5
Configuration Guide 528
Configuring ACL ACL Configuration
Step 2 mac access-list
access-list-num
Input a MAC ACL ID to enter MAC Access-list mode. If it is a new ID , the ACL will be created before
entering MAC Access-list mode.
access-list-num
Enter an ACL ID between 0 and 499.
Step 3 rule
rule-id
{deny | permit} [ [smac
source-mac
]
smask
source-mac-mask
] [
[
dmac
destination-
mac
]
dmask
destination-mac-mask
] [ vid
vlan-id
] [ type
ethernet-type ] [
pri
user-pri
] [ tseg
time-segment
]
Add a MAC ACL Rule.
rule-id
: Assign an ID to the rule.
deny | permit:
Specify the action to be taken with the packets that match the rule. By default, it is set
to permit. The packets will be discarded if “deny” is selected and forwarded if “permit” is selected.
source-mac
:
Enter the source MAC address. The format is FF:FF:FF:FF:FF:FF.
source-mac-mask
:
Enter the mask of the source MAC address. This is required if a source MAC address
is entered. The format is FF:FF:FF:FF:FF:FF.
destination-mac
:
Enter the destination MAC address. The format is FF:FF:FF:FF:FF:FF.
destination-mac-mask
:
Enter the mask of the destination MAC address. This is required if a destination
MAC address is entered. The format is FF:FF:FF:FF:FF:FF.
vlan-id
:
The VLAN ID ranges from 1 to 4094.
ethernet-type:
Specify an Ethernet-type with 4 hexadecimal numbers.
user-pri
:
The user priority ranges from 0 to 7. The default is No Limit.
time-segment
:
The name of the time-range. The default is No Limit.
Step 4 exit
Return to global configuration mode.
Step 5 show access-list [
access-list-num
]
Display the current ACL configuration.
access-list-num
: The ID number of the ACL.
Step 6 end
Return to privileged EXEC mode.
Step 7 copy running-config startup-config
Save the settings in the configuration file.
The following example shows how to create MAC ACL 50 and configure Rule 1 to permit
packets with source MAC address 00:34:a2:d4:34:b5:
Switch#configure
Switch(config)#mac access-list 50

Содержание

3073

Изучите шаги по настройке MAC ACL, включая создание правил и управление доступом. Подробное руководство для эффективной конфигурации сетевых устройств.