From: Maximus (victorius@gmail.com)
Date: Tue Jun 06 2006 - 21:27:47 ART
If i apply a drop in a vlan acces-map.... which direction does the filtering
take place ?
if i want to deny 'dec-spanning' about a router r1 are these two options
valid ?
i make a mac access-list deny 'dec-spanning' then permit any.. apply it
using a #mac access-group.... in bound n outbound to an interface where R1
is connected....
# mac access-list extended R1
deny any any dec-spanning
permit any any
#int f0/11
mac access-group R1 in
or
i make a mac access-list permit dec-spanning tree... match it on a vlan
access-map... perform action drop... then apply it to the vlan using #vlan
filter
# mac access-list extended R1
permit any any dec-spanning
vlan access-map r1 10
action drop
match mac address r1
vlan access-map r1 20
action forward
vlan filter r1 vlan-list 10
-- regards,Max
This archive was generated by hypermail 2.1.4 : Sat Jul 01 2006 - 07:57:32 ART