Usage 
Information
When you use the log option, the CP processor logs detail the packets that match. Depending 
on how many packets match the log entry and at what rate, the CP may become busy as it has 
to log these packets’ details.
NOTE: When ACL logging and byte counters are configured simultaneously, byte counters 
may display an incorrect value. Configure packet counters with logging instead.
Related 
Commands
permit – configures a MAC address filter to pass packets.
seq – configures a MAC address filter with a specified sequence number.
mac access-list extended
Name a new or existing extended MAC access control list (extended MAC ACL).
C-Series, E-Series, S-Series, Z-Series, S4810
Syntax
mac access-list extended access-list-name [cpu-qos
To delete a MAC access list, use the no mac access-list extended access-
list-name command.
Parameters
access-list-name
Enter a text string as the MAC access list name, up to 140 characters.
cpu-qos Enter the keywords cpu-qos to assign this ACL to control plane 
traffic only (CoPP).
Defaults none
Command Modes CONFIGURATION
Command History
Version 8.3.11.1 Introduced on the Z9000.
Version 8.3.10.0 Introduced on the S4810.
Version 8.1.1.0 Introduced on the E-Series ExaScale.
Version 7.8.1.0 Increased the name string to accept up to 140 characters. Prior to 
7.8.1.0, names were up to 16 characters long.
Version 7.6.1.0 Introduced on the S-Series.
Version 7.5.1.0 Introduced on the C-Series.
pre-Version 
6.1.1.0
Introduced on the E-Series.
Usage 
Information
The number of entries allowed per ACL is hardware-dependent. For detailed specifications on 
entries allowed per ACL, refer to your line card documentation.
Prior to 7.8.1.0, names are up to 16 characters long.
Example
FTOS(conf)#mac-access-list access-list extended TestMATExt
FTOS(config-ext-macl)#remark 5 IPv4
FTOS(config-ext-macl)#seq 10 permit any any ev2 eq 800 count 
bytes
FTOS(config-ext-macl)#remark 15 ARP
272