Security MAC ACLs can be used to permit and/or deny ethernet packets on the egress port by matching on the following

Support for egress IPv6 PACLs without using packet recirculation. The matching of ACLs can be done on routed packets, and the ACL can be applied to Front Panel Ports ( FPPs ), and also the match criteria in ACL rules are restricted to ipv6-next-header, and dscp ( traffic-class ).

ACL Egress EOS 4.31.1F

Packets sampled for sFlow are packaged in a flow sample structure containing, amongst other things, input and output

Packets sampled for sFlow are packaged in a flow sample structure containing, amongst other things, input and output

GRE (Generic Routing Encapsulation) packet header has a Key extension which is used by Arista to carry packet