deny (IPv6)
To create an IPv6 ACL rule that denies traffic matching its conditions, use the
deny
command. To remove a
rule, use the
no
form of this command.
General Syntax
[
sequence-number
]
deny protocol source destination
[
dscp dscp
] [
flow-label flow-label-value
]
[fragments]
[log]
[
time-range time-range-name
] [
packet-length operator packet-length
[
packet-length
]]
no deny protocol source destination
[
dscp dscp
] [
flow-label flow-label-value
]
[fragments] [log]
[
time-range
time-range-name
] [
packet-length operator packet-length
[
packet-length
]]
no sequence-number
Internet Control Message Protocol
[
sequence-number| no
]
deny icmp source destination
[
icmp-message
|
icmp-type
[
icmp-code
]] [
dscp dscp
]
[
flow-label flow-label-value
]
[fragments] [log]
[
time-range time-range-name
] [
packet-length operator
packet-length
[
packet-length
]]
Internet Protocol v6
[
sequence-number
]
deny ipv6 source destination
[
dscp dscp
] [
flow-label flow-label-value
]
[fragments]
[log]
[
time-range time-range-name
] [
packet-length operator packet-length
[
packet-length
]]
Stream Control Transmission Protocol
[
sequence-number| no
]
deny sctp source
[
operator port
[
port
]|
portgroup portgroup
]
destination
[
operator
port
[
port
]|
portgroup portgroup
] [
dscp dscp
] [
flow-label flow-label-value
]
[fragments] [log]
[
time-range
time-range-name
] [
packet-length operator packet-length
[
packet-length
]]
Transmission Control Protocol
[
sequence-number
]
deny tcp source
[
operator port
[
port
]|
portgroup portgroup
]
destination
[
operator
port
[
port
]|
portgroup portgroup
] [
dscp dscp
] [
flow-label flow-label-value
]
[fragments] [log]
[
time-range
time-range-name
] [
flags
]
[established]
[
packet-length operator packet-length
[
packet-length
]]
User Datagram Protocol
[
sequence-number| no
]
deny udp source
[
operator port
[
port
]|
portgroup portgroup
]
destination
[
operator
port
[
port
]|
portgroup portgroup
] [
dscp dscp
] [
flow-label flow-label-value
]
[fragments] [log]
[
time-range
time-range-name
] [
packet-length operator packet-length
[
packet-length
]]
Cisco Nexus 7000 Series Security Command Reference
243
D Commands
deny (IPv6)
Содержание Nexus 7000 Series
Страница 2: ... Cisco Systems Inc All rights reserved ...
Страница 20: ...Cisco Nexus 7000 Series Security Command Reference xx Contents ...
Страница 62: ...Cisco Nexus 7000 Series Security Command Reference 36 A Commands aaa authentication rejected ...
Страница 78: ...Cisco Nexus 7000 Series Security Command Reference 52 A Commands aaa user default role ...
Страница 157: ...Cisco Nexus 7000 Series Security Command Reference 131 C Commands crypto ca import ...
Страница 172: ...Cisco Nexus 7000 Series Security Command Reference 146 C Commands cts role based sgt map ...
Страница 186: ...Cisco Nexus 7000 Series Security Command Reference 160 C Commands cts role based access list ...
Страница 190: ...Cisco Nexus 7000 Series Security Command Reference 164 C Commands cts role based detailed logging ...
Страница 256: ...dscp dscp Cisco Nexus 7000 Series Security Command Reference 230 D Commands deny IPv4 ...
Страница 271: ...protocol Cisco Nexus 7000 Series Security Command Reference 245 D Commands deny IPv6 ...
Страница 274: ...dscp dscp Cisco Nexus 7000 Series Security Command Reference 248 D Commands deny IPv6 ...
Страница 291: ...Cisco Nexus 7000 Series Security Command Reference 265 D Commands description identity policy ...
Страница 293: ...Cisco Nexus 7000 Series Security Command Reference 267 D Commands description user role ...
Страница 299: ...Cisco Nexus 7000 Series Security Command Reference 273 D Commands device role ...
Страница 313: ...Cisco Nexus 7000 Series Security Command Reference 287 E Commands enable Cert DN match ...
Страница 340: ...Cisco Nexus 7000 Series Security Command Reference 314 E Commands eq ...
Страница 344: ...Cisco Nexus 7000 Series Security Command Reference 318 F Commands feature cts ...
Страница 350: ...Cisco Nexus 7000 Series Security Command Reference 324 F Commands feature ldap ...
Страница 369: ...G Commands gt page 344 Cisco Nexus 7000 Series Security Command Reference 343 ...
Страница 372: ...Cisco Nexus 7000 Series Security Command Reference 346 G Commands gt ...
Страница 398: ...Cisco Nexus 7000 Series Security Command Reference 372 I Commands interface policy deny ...
Страница 454: ...Cisco Nexus 7000 Series Security Command Reference 428 I Commands ip udp relay subnet broadcast ...
Страница 470: ...Cisco Nexus 7000 Series Security Command Reference 444 I Commands ipv6 dhcp ldra attach policy interface ...
Страница 497: ...Cisco Nexus 7000 Series Security Command Reference 471 K Commands key config key ...
Страница 504: ...Cisco Nexus 7000 Series Security Command Reference 478 K Commands key string ...
Страница 518: ...Cisco Nexus 7000 Series Security Command Reference 492 L Commands It ...
Страница 536: ...Cisco Nexus 7000 Series Security Command Reference 510 M Commands monitor session ...
Страница 537: ...N Commands nac enable page 512 neq page 513 Cisco Nexus 7000 Series Security Command Reference 511 ...
Страница 543: ...Cisco Nexus 7000 Series Security Command Reference 517 O Commands object group identity policy ...
Страница 552: ...Cisco Nexus 7000 Series Security Command Reference 526 O Commands other config flag ...
Страница 569: ...dscp dscp Cisco Nexus 7000 Series Security Command Reference 543 P Commands permit IPv4 ...
Страница 584: ...protocol Cisco Nexus 7000 Series Security Command Reference 558 P Commands permit IPv6 ...
Страница 587: ...dscp dscp Cisco Nexus 7000 Series Security Command Reference 561 P Commands permit IPv6 ...
Страница 622: ...Cisco Nexus 7000 Series Security Command Reference 596 P Commands propagate sgt ...
Страница 664: ...Cisco Nexus 7000 Series Security Command Reference 638 R Commands rule ...
Страница 714: ...Cisco Nexus 7000 Series Security Command Reference 688 S Commands switchport port security violation ...
Страница 737: ...Cisco Nexus 7000 Series Security Command Reference 711 Show Commands show arp access lists ...
Страница 841: ...Cisco Nexus 7000 Series Security Command Reference 815 Show Commands show ipv6 dhcp ldra ...
Страница 992: ...Cisco Nexus 7000 Series Security Command Reference 966 T Commands trustedCert ...
Страница 1015: ...Cisco Nexus 7000 Series Security Command Reference 989 V Commands vlan policy deny ...
Страница 1017: ...Cisco Nexus 7000 Series Security Command Reference 991 V Commands vrf policy deny ...
Страница 1018: ...Cisco Nexus 7000 Series Security Command Reference 992 V Commands vrf policy deny ...