User Manual UMN:CLI
V8102
247
[{ log | log-input} tag WORD ]
no { deny | permit } {tcp | udp} {any | host A.B.C.D | A.B.C.D
WILDCARD-BITS} {any | eq PORT | gt PORT | lt PORT | neq
PORT | range RANGE } {any | host A.B.C.D | A.B.C.D WILD-
CARD-BITS} {any | host A.B.C.D | A.B.C.D WILDCARD-BITS}
[{TCP_FLAG | precedence <0-7> | tos <0-255> | dscp <0-
63>}] [{ log | log-input} tag WORD ]
no { deny | permit } igmp {any | host A.B.C.D | A.B.C.D
WILDCARD-BITS} {any | host A.B.C.D | A.B.C.D WILDCARD-
BITS} [{dvmrp | host-query | host-report | pim | trace}]
[{precedence <0-7> | tos <0-255> | dscp <0-63>}] [{ log | log-
input} tag WORD ]
no { deny | permit } icmp {any | host A.B.C.D | A.B.C.D
WILDCARD-BITS} {any | host A.B.C.D | A.B.C.D WILD-
CARD-BITS} [{TYPE CODE | administratively-prohibited |
alternate-address | conversion-error | dod-host-
prohibited | dod-net-prohibited | echo | echo-reply | gen-
eral-parameter-problem | host-isolated | host-precedence-
unreachable | host-redirect | host-tos-redirect | host-tos-
unreachable | host-unknown | host-unreachable | infor-
mation-reply | information-request | mask-reply | mask-
request | mobile-redirect | net-redirect | net-tos-redirect |
net-tos-unreachable | net-unreachable | network-
unknown | no-room-for-option | option-missing | packet-
too-big | parameter-problem | port-unreachable | prece-
dence-unreachable | protocol-unreachable | reassembly-
timeout | redirect | router-advertisement | router-
solicitation | source-quench | source-route-failed | time-
exceeded | timestamp-reply | timestamp-request | trac-
eroute | ttl-exceeded | unreachable }] [{TCP_FLAG | prec-
edence <0-7> | tos <0-255> | dscp <0-63>}] [{ log | log-
input} tag WORD ]
7.18.6.3 Filters Using Extended MAC ACLs
To create an extended MAC address-based ACL to filter client devices of the hard coded
MAC address, use the following command.
mac access-list extended {<700-
799> | <1100-1199> | WORD}
Creates an extended MAC address-based ACL.
700-799: extended MAC access-list number
1100-1199: extended MAC access-list number (ex-
panded range)
WORD: access list name
no mac access-list extended
{<700-799> | <1100-1199> | WORD}
Deletes the configured MAC address-based ACL.