Purpose
Command or Action
Enters the global configuration mode.
configure terminal
Example:
Switch#
configure terminal
Step 2
Defines an IPv6 ACL name, and enters IPv6 access list configuration mode.
{
ipv6 access-list list-name
Example:
Switch(config)#
ipv6 access-list
example_acl_list
Step 3
Enter deny or permit to specify whether to deny or permit the packet if
conditions are matched. These are the conditions:
{
deny
|
permit
} protocol
{
source-ipv6-prefix/
|
prefix-length
|
any
|
host
Step 4
source-ipv6-address
} [ operator [
port-number
•
For protocol, enter the name or number of an Internet protocol:
ahp
,
esp
,
icmp
,
ipv6
,
pcp
,
stcp
,
tcp
, or
udp
, or an integer in the range 0
to 255 representing an IPv6 protocol number.
]] {
destination-ipv6-prefix/ prefix-length
|
any
|
host destination-ipv6-address
} [operator
[
port-number
]][
dscp value
] [
fragments
] [
log
]
[
log-input
] [
routing
] [
sequence value
]
[
time-range name
]
•
The
source-ipv6-prefix/prefix-length
or
destination-ipv6-prefix/
prefix-length
is the source or destination IPv6 network or class of
networks for which to set deny or permit conditions, specified in
hexadecimal and using 16-bit values between colons (see RFC 2373).
•
Enter any as an abbreviation for the IPv6 prefix ::/0.
•
For
host source-ipv6-address
or
destination-ipv6-address
, enter the
source or destination IPv6 host address for which to set deny or permit
conditions, specified in hexadecimal using 16-bit values between
colons.
•
(Optional) For operator, specify an operand that compares the source
or destination ports of the specified protocol. Operands are
lt
(less
than),
gt
(greater than),
eq
(equal),
neq
(not equal), and
range.
If the operator follows the
source-ipv6-prefix/prefix-length
argument,
it must match the source port. If the operator follows the
destination-ipv6- prefix/prefix-length
argument, it must match the
destination port.
•
(Optional) The
port-number
is a decimal number from 0 to 65535
or the name of a TCP or UDP port. You can use TCP port names only
when filtering TCP. You can use UDP port names only when filtering
UDP.
•
(Optional) Enter
dscp
value to match a differentiated services code
point value against the traffic class value in the Traffic Class field of
each IPv6 packet header. The acceptable range is from 0 to 63.
•
(Optional) Enter
fragments
to check noninitial fragments. This
keyword is visible only if the protocol is ipv6.
•
(Optional) Enter
log
to cause an logging message to be sent to the
console about the packet that matches the entry. Enter
log-input
to
Consolidated Platform Configuration Guide, Cisco IOS Release 15.2(4)E (Catalyst 2960-X Switches)
1223
How to Configure IPv6 ACLs
Содержание Catalyst 2960 Series
Страница 78: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches lxxviii Contents ...
Страница 96: ......
Страница 184: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 102 Additional References ...
Страница 195: ...P A R T II IP Multicast Routing Configuring IGMP Snooping and Multicast VLAN Registration page 115 ...
Страница 196: ......
Страница 250: ......
Страница 292: ......
Страница 488: ......
Страница 589: ...P A R T VI Cisco Flexible NetFlow Configuring NetFlow Lite page 509 ...
Страница 590: ......
Страница 619: ...P A R T VII QoS Configuring QoS page 539 Configuring Auto QoS page 645 ...
Страница 620: ......
Страница 749: ...P A R T VIII Routing Configuring IP Unicast Routing page 669 Configuring IPv6 First Hop Security page 677 ...
Страница 750: ......
Страница 796: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 714 Additional References ...
Страница 856: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 774 Additional References ...
Страница 1400: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 1318 Additional References ...
Страница 1546: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 1464 Auto Identity ...
Страница 1596: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 1514 Additional References ...
Страница 1604: ......
Страница 1740: ......
Страница 1764: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 1682 Additional References ...
Страница 1942: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 1860 cli_write ...
Страница 1950: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 1868 context_save ...
Страница 2058: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 1976 event_register_wdsysmon ...
Страница 2076: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 1994 smtp_subst ...
Страница 2090: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 2008 sys_reqinfo_syslog_history ...
Страница 2104: ...Consolidated Platform Configuration Guide Cisco IOS Release 15 2 4 E Catalyst 2960 X Switches 2022 unregister_counter ...
Страница 2105: ...P A R T XII Configuring Cisco IOS IP SLAs Configuring Cisco IP SLAs page 2025 ...
Страница 2106: ......
Страница 2118: ......
Страница 2164: ......