Hello,
I'd like to drop all packets sourced from a specific MAC address, which are received on a specific sub-interface on my Cisco ASR 9000. So I have configured an ethernet-services access-list and applied it to the sub-interface as shown below. However, I see packets sourced from the same MAC address are still permitted into the ASR from the same sub-interface. Could you please let m know why this ethernet-services acl is not working?
ethernet-services access-list Ethernet_ACL
10 deny host 0050.56a0.6667 any
20 permit any any
interface TenGigE0/0/0/6.41
ethernet-services access-group Ethernet_ACL ingress
Thanks,
Firas