cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
244
Views
0
Helpful
1
Replies

Catalyst 2970 ACL

davidn2007
Level 1
Level 1

I want to set up an ACL allowing only certain MAC addresses to be able to access the managment interface of the switch. I tried setting one up using the Cisco Network Assistant, but it did not work. I created an ACL with 2 rules. The first was to deny all MAC addresses access to the MAC address of the switch. The 2nd rule was to allow my MAC address to connect to the MAC address of the switch. I can still log into that switch from a different machine, so what am I doing wrong?

1 Reply 1

Chuckhull
Level 1
Level 1

The first line of your ACL rejects all MAC addresses, so it rejects yours. It never gets to the second line. You need to put your MAC address accept line first, then the reject all. ACLs read each line either acting on it or passing it down.

Review Cisco Networking products for a $25 gift card