[c-nsp] mac filter on switch

james list jameslist72 at gmail.com
Tue May 23 11:33:20 EDT 2017

it seems fine, do you have an idea if it's possible to use the mask for the
mac ?

Something like:

mac access-list extended secure-mac
 permit 40aa.zz00.0000 0000.00ff.ffff any

It seems I've to list all the mac address and is not possible to use a mask.


2017-05-23 17:01 GMT+02:00 Peter Rathlev <peter at rathlev.dk>:

> On Tue, 2017-05-23 at 15:22 +0200, james list wrote:
> > I’ve a customer switch C3750 (12.2(35)), is there a way to permit on
> > a specific port only a group of mac address which could generate
> > traffic towards the switch ?
> >
> > I’ve tried mac acl but I do not get the expected result.
> MAC ACL only filters non-IP traffic, if I recall correctly.
> Maybe "switchport port-security" with static addresses will do what you
> want?
> --
> Peter

More information about the cisco-nsp mailing list