21
undo group-policy
[
vlan
vlan-list
]
Default
No IPv6 multicast group policies exist. Hosts can join any IPv6 multicast groups.
Views
MLD-snooping view
Predefined user roles
network-admin
Parameters
ipv6-acl-number
: Specifies an IPv6 basic or advanced ACL by its number in the range of 2000
to 3999. Hosts can join only IPv6 multicast groups that the ACL permits. If the ACL does not exist or
does not have valid rules, hosts cannot join IPv6 multicast groups.
vlan vlan-list
: Specifies a space-separated list of up to 10 VLAN items. Each item specifies a
VLAN by its ID or a range of VLANs in the form of
start-vlan-id
to end-vlan-id
. The VLAN
ID is in the range of 1 to 4094. If you do not specify a VLAN, this command takes effect for all VLANs.
Usage guidelines
An IPv6 multicast group policy filters MLD reports to control the IPv6 multicast groups that hosts can
join.
This command does not take effect on static member ports, because static member ports do not
send MLD reports.
You can configure an IPv6 multicast group policy globally for all ports in MLD-snooping view or for a
port in interface view. For a port, the port-specific configuration takes priority over the global
configuration.
When you configure a rule in the IPv6 ACL, follow these restrictions and guidelines:
•
For the rule to take effect, do not specify the
vpn-instance
vpn-instance
option.
•
In a basic ACL, the
source source-address source-prefix
option specifies an IPv6
multicast group address.
•
In an advanced ACL, the
source
source-address source-prefix
option specifies an
IPv6 multicast source address. The
destination
dest-address dest-prefix
option
specifies an IPv6 multicast group address.
To match MLDv1 reports, set the
source source-address source-prefix
option to
0::0.
•
If the
vpn-instance
vpn-instance
option is specified in the rule, the rule does not take
effect. If the
vpn-instance
vpn-instance
option is not specified in the rule, the rule
applies to both VPN packets and non-VPN packets.
•
Among the other optional parameters, only the
fragment
keyword and the
time-range
time-range-name
option take effect.
You can configure different ACLs for all ports in different VLANs. If you configure multiple ACLs for all
ports in the same VLAN, the most recent configuration takes effect.
Examples
# Configure an IPv6 multicast group policy for VLAN 2 so that hosts in VLAN 2 can join only IPv6
multicast group FF03::101.
<Sysname> system-view
[Sysname] acl ipv6 basic 2000
[Sysname-acl-ipv6-basic-2000] rule permit source ff03::101 128
[Sysname-acl-ipv6-basic-2000] quit
Summary of Contents for SOHO IE4300
Page 285: ...i Contents Tcl commands 1 cli 1 tclquit 1 tclsh 2...
Page 288: ...i Contents Python commands 1 exit 1 python 1 python filename 2...
Page 291: ...i Contents Automatic configuration commands 1 autodeploy udisk enable 1...
Page 323: ...25 Sysname Ten GigabitEthernet1 0 51 undo shutdown Related commands irf port...
Page 465: ...ii stp vlan enable 55 vlan mapping modulo 55...
Page 602: ...12 Related commands display mvrp statistics...
Page 609: ...i Contents VLAN mapping commands 1 display vlan mapping 1 vlan mapping 2...
Page 678: ...9 Related commands reset pppoe relay statistics...
Page 846: ...i Contents Basic IP forwarding commands 1 display fib 1 ip forwarding table save 2...
Page 1770: ...i Contents Time range commands 1 display time range 1 time range 1...
Page 2026: ...34 Related commands display mac authentication...
Page 2028: ...ii...
Page 2143: ...i Contents User profile commands 1 display user profile 1 user profile 2...
Page 2308: ...61 ipsec transform set...
Page 2531: ...i Contents SAVI commands 1 ipv6 savi down delay 1 ipv6 savi log enable 1 ipv6 savi strict 2...
Page 2534: ...3 Sysname ipv6 savi strict Related commands ipv6 verify source...
Page 2791: ...14 Sysname track 1 Related commands delay display track...
Page 2939: ...9 sntp authentication keyid sntp reliable authentication keyid...
Page 2967: ...27 Related commands apply poe profile poe enable poe max power interface view poe priority...