03-03-2016 08:09 PM
We have an MCT setup using 2 ICX-7750, there are 3 IP routed interfaces (VE) working with vrrp-extended. There is also a non routed interface ethernet 1/1/12 on one of the ICX-7750 that pushes some vlans to another switch.
We want to prevent the VRRP mulicasts from going throuh this interface, can this be done using access lists?
Thanks in advance.
Solved! Go to Solution.
03-10-2016 06:26 AM
I realise that it's not possible to configure an outbound (egress) filter on interface 1/1/12,
The solution is to configure an inbound mac filter (ingress) on the ICX-7450 port 1/1/5 connected to
port 1/1/12 of the ICX-7750:
On the ICX-7450:
mac filter 1 deny any 02e0.5200.000.000 ffff.ff00.0000 (this will filter all the vrrp-e announcements for all the vlans)
mac filter 2 permit any any
interface ethernet 1/1/5
mac filter-group 1 2