No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

S9300, S9300E, and S9300X V200R012C00 Configuration Guide - Ethernet Switching

This document describes the configuration of Ethernet services, including configuring MAC address table, link aggregation, VLANs, VLAN aggregation, MUX VLAN, VLAN termination, Voice VLAN, VLAN mapping, QinQ, GVRP, STP/RSTP/MSTP, VBST, SEP, RRPP, ERPS, LBDT, HVRP, and Layer 2 protocol transparent transmission.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Example for Configuring Blackhole MAC Address Entries

Example for Configuring Blackhole MAC Address Entries

Networking Requirements

In Figure 2-14, the Switch receives packets from an unauthorized PC that has the MAC address 0005-0005-0005 and belongs to VLAN 3. This MAC address entry can be configured as a blackhole MAC address entry so that the Switch filters out packets from the unauthorized PC.

Figure 2-14  Configuring a blackhole MAC address entry

Configuration Roadmap

The configuration roadmap is as follows:

  1. Create a VLAN to implement Layer 2 forwarding.

  2. Configure a blackhole MAC address entry to filter out packets from the unauthorized PC.

Procedure

  1. Configure a blackhole MAC address entry.

    # Create VLAN 3.

    <Quidway> system-view
    [Quidway] sysname Switch
    [Switch] vlan 3
    [Switch-vlan3] quit
    

    # Configure a blackhole MAC address entry.

    [Switch] mac-address blackhole 0005-0005-0005 vlan 3
    

  2. Verify the configuration.

    # Run the display mac-address blackhole command in any view to check whether the blackhole MAC address entry is successfully added to the MAC address table.

    [Switch] display mac-address blackhole
    ------------------------------------------------------------------------------- 
    MAC Address    VLAN/VSI/BD                       Learned-From        Type       
    ------------------------------------------------------------------------------- 
    0005-0005-0005 3/-/-                             -                   blackhole  
                                                                                    
    ------------------------------------------------------------------------------- 
    Total items displayed = 1
    
    

Configuration Files

Switch configuration file

#
sysname Switch
#
vlan batch 3
#
mac-address blackhole 0005-0005-0005 vlan 3                                     
#
return
Translation
Download
Updated: 2019-01-18

Document ID: EDOC1100038290

Views: 114134

Downloads: 24

Average rating:
This Document Applies to these Products
Related Version
Related Documents
Share
Previous Next