Device Security 97
console(config-mac-access-list)#permit any any ?
assign-queue Configure the Queue Id assignment attribute.
cos Configure a match condition based on a COS value.
log Configure logging for this access list rule.
mirror Configure the packet mirroring attribute.
redirect Configure the packet redirection attribute.
vlan Configure a match condition based on a VLAN ID.
<0x0600-0xffff> Enter a four-digit hexadecimal number in the range of
0x0600 to 0xffff to specify a custom Ethertype value.
<cr> Press enter to execute the command.
<ethertypekey> Enter one of the following keywords to specify an
Ethertype (appletalk, arp, ibmsna, ipv4, ipv6, ipx,
mplsmcast, mplsucast, netbios, novell, pppoe, rarp).
console(config-mac-access-list)#permit any any
Example #8: Show MAC Access Lists
console#show mac access-lists
Current number of all ACLs: 3 Maximum number of all ACLs: 100
MAC ACL Name Rules Interface(s) Direction
------------------------------- ----- ------------------------- ---------
mac1 1 1/g5 Inbound
mac2 1
console#show mac access-lists mac1
MAC ACL Name: mac1
Rule Number: 1
Action......................................... deny
Destination MAC Address........................ 00:11:22:33:44:55
Destination MAC Mask........................... 00:00:00:00:FF:FF
Log............................................ TRUE
RADIUS
Making use of a single database of accessible information—as in an Authentication Server—can greatly
simplify the authentication and management of users in a large network. One such type of
Authentication Server supports the Remote Authentication Dial In User Service (RADIUS) protocol as
defined by RFC 2865.