一、IOS版本的Cisco交换机(二层): 1.Config模式下,配置Mac Access-list Switch#conf t Switch(config)#mac access-list extended XXXX Switch(config-ext-macl)#deny any host MAC-Add Switch(config-ext-macl)#permit any any 2.找到交换机上相应的上连
1、阻止MAC地址为B8:EE:65:DE:17:E3主机的所有通信: iptables -A INPUT -m mac --mac-source B8:EE:65:DE:17:E3 -j DROP 2、允许MAC地址为B8:EE:65:DE:17:E3主机访问22端口: iptables -A INPUT -p tcp --destination-port 22 -m mac --mac-source B8:EE:65:DE:17:E3 -j ACCE…