We made a mac access-list to block a especific vendor:
mac access-list extended list1
deny vendorID 0000.00ff.ffff any
deny vendorID 0000.00ff.ffff any
permit any any
and applied on interfaces...
interface fa0/1
mac access-group list1 in
We also have a port-security enabled on this interface.
I was trying to simulate on packet tracer, but it doesn´t suporte mac access-list.
My doubt is what will be checked first. Port-Security or Access-list.
If I block a mac in a list it will activate port-security or it will be blocked first before generating the port violation?
Thanks.