Issue Description
Q:
What is the difference on the configuration and application of ACL based on MAC addresses of middle and low-end routers of VRP 1.74 and VRP 3.40?
Handling Process
A:
For VRP 1.74, ACL rules based on MAC addresses can be from 4000 to 4099 and the wildcard mask is used. That is, the mask with all zeros corresponds to a single address. You can run the mac-filter command to filter packets sent by the lower-layer network to the route.
For VRP3.40, ACL rules based on MAC addresses can be from 4000 to 4099 and normal mask is used. That is, the mask with all Fs corresponds to a single MAC address. It is valid for the bridging interface only. You can run the firewall ethernet-frame-filter command on the interface.