SG300-10 MAC ACL help please! -2

What I want to achieve, it's don't allow that specific mac addresses on switch and deny all others by using MAC ACE.

My periods are as below;   What's wrong?  It does not have specific host! 00:00:00:00:00:00 generic mask is correct for the host?

Action        Source                                                                                     Destination                                 Mask

allow any 00:00:00:00:00:00 ab: cd:ef:aa:bb:cd(Host_MAC)

license ab: cd:ef:aa:bb:cd(Host_MAC) (mask:00:00:00:00:00:00) any

deny           any                                                                                             any

Thank you.

Hello

Well, I'm wonfering if the device of interest must at layer 2 to get an IP address for that this referred to MAC address ARP has a static IP address?

I tried and got the following results;

My first entry is to deny access from Layer 2 to my NAS to 192.168.20.61 - ping failed.

My second entry allows me to manage my switch SG300 - 10 p 192.168.20.200 - successful ping

My third invisible entry is probably that implied all refuse it.

So my ping to internet 4.2.2.1 address failed

My attempt to ping my router gateway to 192.168.20.1 also failed.

I still have to worry about ARPing at layer 2.  But the result is my filters worked, I think that pings in the screenshot below shows that.

I kept it simple, just applied my MAC ACL filter to the port connected to my PC and not all ports.

Tags: Cisco Support

Similar Questions

Maybe you are looking for