Layer-2 Protocol Tunneling ACLs
Three ACL match conditions and one ACL action interoperate with vendor-proprietary Layer-2 protocol tunneling on the platforms listed for this feature in the ExtremeXOS 32.2 Feature License Requirements document.
- Destination service access point (SAP)
- Source SAP
- SNAP type
- Replacement of the Ethernet MAC destination address
This action replaces the destination MAC address of any matching Layer-2 forwarded packets on the supported platforms. This action can be used to effectively tunnel protocol packets, such as STP, across a network by replacing the well-known protocol MAC address with a different proprietary or otherwise unique MAC address. After tunnel egress, the MAC destination address can be reverted back to the well-known MAC address.
NoteThe "replace-ethernet-destination-address" action applies only to Layer-2 forwarded packets.