General Security Measures
3-129
3
Configuring an Extended IPv6 ACL
Command Attributes
•
Action
– An ACL can contain any combination of permit or deny rules.
•
Source Address Type
– Specifies the source IP address. Use “Any” to include all
possible addresses, “Host” to specify a specific host address in the Address field,
or “IPv6-prefix” to specify a range of addresses. (Options: Any, Host, IPv6-prefix;
Default: Any)
•
Source IPv6 Address
– The address must be formatted according to RFC 2373
“IPv6 Addressing Architecture,” using 8 colon-separated 16-bit hexadecimal
values. One double colon may be used in the address to indicate the appropriate
number of zeros required to fill the undefined fields.
• Source Prefix-Length
– A decimal value indicating how many contiguous bits
(from the left) of the address comprise the prefix (Range: 0-128)
•
Destination Address Type
– Specifies the destination IP address. Use “Any” to
include all possible addresses, or “IPv6-prefix” to specify a range of addresses.
(Options: Any, IPv6-prefix; Default: Any)
•
Destination IPv6 Address
– The address must be formatted according to RFC
2373 “IPv6 Addressing Architecture,” using 8 colon-separated 16-bit hexadecimal
values. One double colon may be used in the address to indicate the appropriate
number of zeros required to fill the undefined fields. (The switch only checks the
first 64 bits of the destination address.)
•
Destination Prefix-Length
– A decimal value indicating how many contiguous bits
(from the left) of the address comprise the prefix (Range: 0-8)
•
DSCP
– DSCP priority level. (Range: 0-63)
Summary of Contents for 6152PL2 FICHE
Page 2: ......
Page 6: ...vi ...
Page 8: ...viii ...
Page 32: ...Tables xxxii ...
Page 38: ...Figures xxxviii ...
Page 56: ...Initial Configuration 2 10 2 ...
Page 378: ...Configuring the Switch 3 322 3 ...
Page 817: ......