-66
Cisco ME 3800X and ME 3600X Switch Command Reference
OL-28238-01
Chapter
switchport block
switchport block
To prevent unknown multicast or unicast packets from being forwarded, use the switchport block
command in interface configuration mode. To allow forwarding unknown multicast or unicast packets,
use the no form of this command.
switchport block {multicast | unicast}
no switchport block {multicast | unicast}
Note This command is not available on interfaces with service instances configured.
Syntax Description
Defaults Unknown multicast and unicast traffic is not blocked.
Command Modes Interface configuration
Command History
Usage Guidelines By default, all traffic with unknown MAC addresses is sent to all ports. You can block unknown multicast
or unicast traffic on protected or nonprotected ports. If unknown multicast or unicast traffic is not
blocked on a protected port, there could be security issues.
With multicast traffic, the port blocking feature blocks only pure Layer 2 packets. Multicast packets that
contain IPv4 or IPv6 information in the header are not blocked.
Blocking unknown multicast or unicast traffic is not automatically enabled on protected ports; you must
explicitly configure it.
You can verify your setting by entering the show interfaces interface-id switchport privileged EXEC
command.
For more information about blocking packets, see the software configuration guide for this release.
Examples This example shows how to block unknown multicast traffic on an interface:
Switch(config-if)# switchport block multicast
multicast Specifies that unknown multicast traffic should be blocked.
Note Only pure Layer 2 multicast traffic is blocked. Multicast packets that
contain IPv4 or IPv6 information in the header are not blocked.
unicast Specifies that unknown unicast traffic should be blocked.
Release Modification
12.2(52)EY This command was introduced.