914
Command Reference for AT-IX5-28GPX High Availability, High Power Video Surveillance PoE Switch
C613-50057-01 REV A
AlliedWare Plus™ Operating System - Version 5.4.5-0.x
IP
V
6 H
ARDWARE
A
CCESS
C
ONTROL
L
IST
(ACL) C
OMMANDS
(
IPV
6
ACCESS
-
LIST
NAMED
PROTOCOL
FILTER
)
Mode
IPv6 Hardware ACL Configuration
Default
Any traffic on an interface controlled by a hardware ACL that does not explicate
match a filter is permitted.
Usage
This command adds a hardware classification filter (for use with features such as
QoS), to a current standard IPv6 access-list. The filter will match on any IP protocol
type packet that has the specified source and destination IPv6 addresses and the
specified IP protocol type. The parameter
any
may be specified if an address does
not matter,
NOTE
:
Hardware ACLs will
permit
access unless
explicitly denied
by an ACL action.
Examples
To add an ACL filter entry to block IP traffic from network
2001:0db8::0/64
to
the hardware IPv6 access-list named
my-acl
, use the commands:
awplus#
configure terminal
awplus(config)#
ipv6 access-list my-acl
awplus(config-ipv6-hw-acl)#
deny ipv6 2001:0db8::0/64
To remove an ACL filter entry that blocks all IPv6 traffic from network
2001:0db8::0/ 64
from the hardware IPv6 access-list named
my-acl
, use the
commands:
awplus#
configure terminal
awplus(config)#
ipv6 access-list my-acl
awplus(config-ipv6-hw-acl)#
no deny ipv6 2001:0db8::0/64
Validation
Commands
show ipv6 access-list (IPv6 Hardware ACLs)
Related
Commands
ipv6 access-list (named)
(ipv6 access-list named ICMP filter)
(ipv6 access-list named TCP UDP filter)
ipv6 traffic-filter
show ipv6 access-list (IPv6 Hardware ACLs)