No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


Configuration Guide - Ethernet Switching

S1720, S2700, S5700, and S6720 V200R012(C00 and C20)

This document describes the configuration of Ethernet services, including configuring MAC address table, link aggregation, VLANs, VLAN aggregation, MUX VLAN, VLAN termination, Voice VLAN, VLAN mapping, QinQ, GVRP, VCMP, STP/RSTP/MSTP, VBST, SEP, RRPP, ERPS, LBDT, and Layer 2 protocol transparent transmission.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
How Do I Configure VLAN-based Blackhole MAC Address Entries?

How Do I Configure VLAN-based Blackhole MAC Address Entries?

To configure VLAN-based blackhole MAC address entries, perform the following operations:

# Add a blackhole MAC address entry to the MAC address table. For example, in the blackhole MAC address entry, the MAC address is 0004-0004-0004 and the VLAN ID is VLAN 10.

<HUAWEI> system-view
[HUAWEI] vlan 10
[HUAWEI-vlan10] quit
[HUAWEI] mac-address blackhole 0004-0004-0004 vlan 10

For the S1720GF, S1720GFR, S1720GW, S1720GW-E, S1720GWR, S1720GWR-E, S1720X, S1720X-E, S2720EI, S2750EI, S5700LI, S5700S-LI, S5710-X-LI, S5720I-SI, S5720LI, S5720S-LI, S5720S-SI, S5720SI, S5730S-EI, S5730SI, S6720LI, S6720S-LI, S6720S-SI, or S6720SI switch, if both traffic policy-based redirection action and VLAN-based blackhole MAC address are configured, the switch will not discard the packet if its source or destination MAC address is a blackhole MAC address and the packet matches the redirection policy. In this scenario, you are advised to configure a global blackhole MAC address or configure an ACL-based simplified traffic policy to discard specific packets.

# Add the global blackhole MAC address 0004-0004-0004 to the MAC address table.

<HUAWEI> system-view
[HUAWEI] mac-address blackhole 0004-0004-0004

# Configure an ACL-based simplified traffic policy to discard packets with MAC address 0004-0004-0004 and VLAN 10.

<HUAWEI> system-view
[HUAWEI] vlan 10
[HUAWEI-vlan10] quit
[HUAWEI] acl number 4000
[HUAWEI-acl-L2-4000] rule 5 deny source-mac 0004-0004-0004 vlan-id 10
[HUAWEI-acl-L2-4000] rule 10 deny destination-mac 0004-0004-0004 vlan-id 10
[HUAWEI-acl-L2-4000] quit
[HUAWEI] traffic-filter inbound acl 4000 
Updated: 2018-12-24

Document ID: EDOC1100038339

Views: 158522

Downloads: 685

Average rating:
This Document Applies to these Products
Related Version
Related Documents
Previous Next