08-13-2008 09:23 AM - edited 03-06-2019 12:46 AM
Hi guys,
i configured mac address filtering and ip filtering on cisco catalyst 4506 like the configuration below, the ip filtering works fine but not mac filtering feature.
could someone help me for that ?
Regards.
Mustapha.
---
Switch(config)# mac access-list extended mac-device-list
Switch(config-ext-macl)# permit host 0000.0101.0011 any
Switch(config-ext-macl)# permit host 0000.0101.0012 any
Switch(config)# ip access-list extended ip-device-list
Switch(config-ext-nacl)# permit ip host 10.1.101.11 any
Switch(config-ext-nacl)# permit ip host 10.1.101.12 any
Switch(config)# interface fa0/1
Switch(config-if)# ip access-group ip-device-list in
Switch(config-if)# mac access-group mac-device-list in
08-13-2008 09:29 AM
Hello Mustapha,
is your interface fas0/1 currently configured as a routed port (no switchport + ip address)
In that case this behaviour can be explained.
Try the following
move L3 config to an SVI interface make fas0/1 an access link of the same l2 vlan
test again and tell if you see any change
Hope to help
Giuseppe
08-13-2008 09:40 AM
Hi giuseppe,
the port is configured as switchport access mode.
Regards.
Mustapha.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide