data:image/s3,"s3://crabby-images/435d8/435d86f713554c8367488bd2b5901f23d7c129e4" alt="Cisco NCS 1004 Скачать руководство пользователя страница 47"
ipv6 access-group
To configure the Access List (ACL), use the
ipv6 access-group
command at the IPv6 interface in the interface
configuration mode.
ipv6 access-group access-list-name
{
ingress | egress
}
Syntax Description
Access list name. Names cannot contain a space or quotation marks.
access-list-name
Specifies an inbound interface.
ingress
Specifies an outbound interface.
egress
Command Default
No IPv6 access list is defined.
Command Modes
Interface configuration
Command History
Modification
Release
This command is
introduced.
Release
7.0.1
Usage Guidelines
Use the ipv6 access-list command to configure an IPv6access list. This command places the system in access
list configuration mode, in which the denied or permitted access conditions must be defined with the deny or
permit command.
Example
The following examples shows how to configure the Access List at the IPv6 interface in the
configuration mode
interface MgmtEth0/RP0/CPU0/0
ipv6 address 1000::1/64
ipv6 access-group IPV6_SSH_DENY ingress
ipv6 access-group IPV6_ROUTER_FWD_TELNET_TRAFFIC_DENY egress
Sample Configuration for IPv6 Access Lists
ipv6 access-list IPV6_SSH_DENY
10 deny tcp any any eq ssh
20 permit ipv6 any any
!
ipv6 access-list IPV6_ROUTER_FWD_TELNET_TRAFFIC_DENY
10 deny tcp any any eq telnet
20 permit ipv6 any any
!
Command Reference for Cisco NCS 1004
41
Commands
ipv6 access-group