
3-5
z
The source IPv6 ACL and the destination IPv6 ACL must be of the same type.
z
The destination ACL does not take the name of the source IPv6 ACL.
Displaying and Maintaining IPv6 ACLs
To do…
Use the command…
Remarks
Display information about one or all
IPv6 ACLs
display
acl
ipv6
{
acl6-number
|
all
|
name
acl6-name
}
Available in any
view
Display information about ACL uses of a
switch
display acl resource
Available in any
view
Display the configuration and status on
time range
display
time-range
{
time-range-name
|
all
}
Available in any
view
Clear statistics about a specified or all
IPv6 ACLs that are referenced by upper
layer software
reset
acl
ipv6
counter
{
acl6-number
|
all
|
name
acl6-name
}
Available in user
view
IPv6 ACL Configuration Example
Network Requirements
As shown in
, a company interconnects its departments through the switch.
Configure an ACL to deny access of the R&D department to external networks.
Figure 3-1
Network diagram for IPv6 ACL configuration
Configuration Procedure
# Create an IPv6 ACL 2000.
<Switch> system-view
[Switch] acl ipv6 number 2000
[Switch-acl6-basic-2000] rule deny source 4050::9000/120
[Switch-acl6-basic-2000] quit
# Configure class c_rd for packets matching IPv6 ACL 2000.
Summary of Contents for S5120-EI Series
Page 139: ...ii...
Page 578: ...1 21 C...
Page 739: ...1 12 Enable ARP detection based on 802 1X security entries SwitchB arp detection mode dot1x...
Page 926: ...2 8...
Page 942: ...ii Single Device Upgrade 3 4 IRF System Upgrade 3 5...
Page 985: ...1 1...
Page 1018: ...1 6...