Enterprise AV Home WiFi Mobile Wifi Support Shop Deals

NETGEAR has identified that a particular multicast packet from some third party wireless access points can leak through fully converged STP topologies on some of our fully managed and smart managed switches. This multicast packet has a destination MAC address of 01:80:c2:00:00:1c.

If your switch is affected by this issue, you should first check to see if the problem is resolved in the latest firmware for your switch. You can find the latest firmware version on our support site at https://www.netgear.com/support.

If a firmware fix is not available, you can work around the problem by using a MAC ACL to filter out the multicast packet at the port(s) where the access point(s) are connected. Follow the steps below to create and apply a MAC ACL.

  1. Log on to the admin page of the switch.
  2. Go to Security - ACL.
  3. Under Basic, click on MAC ACL.
  4. In the Name field, type a name for the ACL and click Add.
  5. Click on MAC Rules.
  6. In the ACL Name drop down menu, select the ACL that you created in step 4.
  7. Create the first MAC Rule as follows:

    Sequence Number: 1
    Action: Deny
    Match Every: False
    Destination MAC: 01:80:c2:00:00:1c
    Destination MAC Mask: 00:00:00:00:00:00

    Other fields should remain blank.
     
  8. Click Add.
  9. Create the second MAC Rule as follows:

    Sequence Number: 2
    Action: Permit
    Match Every: True

    Other fields should remain blank.
     
  10. Click Add.
  11. Click MAC Binding Configuration.
  12. In the ACL ID drop down list, select the ACL that you created in step 4.
  13. Ensure that Direction is set to Inbound.
  14. Apply the ACL to the port(s) where the access point(s) are connected by clicking on those ports.
  15. Click Apply when done.
Last Updated:07/07/2025 | Article ID: 000038810

This article applies to:

Recently Viewed Articles

    Our team is here to help!

    Phone
    Chat
    Email