Layer 2 Access Control Lists
Feature Name |
Release Information |
Description |
---|---|---|
Layer 2 Access Control Lists |
Release 7.5.3 |
The feature allows ACLs in the router to classify the packets in the ingress direction based on Layer 2 header information such as source and destination MAC address, ether type, or 802.1ad DEI (Drop Eligible Indicator). Layer 2 access control lists perform packet filtering to control which packets move through the network and where. Such controls help to limit incoming and outgoing network traffic and restrict the access of users and devices to the network at the port level. This feature introduces the following commands: |
A Layer 2 access control lists (ACLs) consist of one or more access control entries (ACE) that collectively define the Layer 2 network traffic profile. This profile can then be referenced by Cisco IOS XR software features. Layer 2 access control list is also known as Ethernet services control access list. Each Ethernet services ACL includes an action element (permit or deny) based on criteria such as source and destination MAC address, Class of Service (CoS), ether-type, or 802.1ad DEI.
Layer 2 ACLs enable the router to copy the contents of an existing access list to another access list, clear counters for an access list using a specific sequence number, and apply sequence numbers to permit or deny statements.
Note |
For more information about Access Control list, see the Implementing Access Lists in IP Addresses and Services Configuration Guide for Cisco 8000 Series Routers. |