cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
243
Views
0
Helpful
1
Replies

Catalyst 2970 ACL

davidn2007
Level 1
Level 1

I want to set up an ACL allowing only certain MAC addresses to be able to access the managment interface of the switch. I tried setting one up using the Cisco Network Assistant, but it did not work. I created an ACL with 2 rules. The first was to deny all MAC addresses access to the MAC address of the switch. The 2nd rule was to allow my MAC address to connect to the MAC address of the switch. I can still log into that switch from a different machine, so what am I doing wrong?

1 Reply 1

Chuckhull
Level 1
Level 1

The first line of your ACL rejects all MAC addresses, so it rejects yours. It never gets to the second line. You need to put your MAC address accept line first, then the reject all. ACLs read each line either acting on it or passing it down.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card