53
Parameters
ipv6-acl-number
: Specifies an IPv6 ACL by its number in the range of 2000 to 3999 to filter
redistributed routes by destination address.
prefix-list
prefix-list-name
: Specifies an IPv6 prefix list by its name, a case-sensitive
string of 1 to 63 characters, to filter redistributed routes by destination address.
direct
: Filters redistributed direct routes.
ospfv3
: Filters redistributed OSPFv3 routes.
ripng
: Filters redistributed RIPng routes.
process-id
: Specifies a process by its ID in the range of 1 to 65535. The default value is 1.
static
: Filters redistributed static routes.
Usage guidelines
When you specify an ACL, follow these guidelines:
•
If a rule in the specified ACL is applied to a VPN instance, the rule does not take effect.
•
If a rule in the specified ACL is not applied to any VPN instance, the rule takes effect on both
VPN packets and public-network packets.
To use an advanced ACL (with a number from 3000 to 3999) in the command, configure the ACL in
one of the following ways:
•
To deny/permit a route with the specified destination, use
rule
[
rule-id
]
{
deny
|
permit
}
ipv6 source
sour sour-prefix
.
•
To deny/permit a route with the specified destination and prefix, use
rule
[
rule-id
]
{
deny
|
permit
}
ipv6 source
sour sour-prefix
destination
dest
dest-prefix
.
The
source
keyword specifies the destination address of a route, and the
destination
keyword
specifies the prefix of the route. For the configuration to take effect, specify a contiguous prefix.
Using the
filter-policy export
command filters only routes redistributed by the
import-route
command. If the
import-route
command is not configured to redistribute
routes from other protocols and other OSPFv3 processes, the
filter-policy export
command does not take effect.
If you do not specify a routing protocol, the command filters all redistributed routes.
Examples
# Use IPv6 prefix list
abc
to filter redistributed routes.
<Sysname> system-view
[Sysname] ipv6 prefix-list abc permit 2002:1:: 64
[Sysname] ospfv3
[Sysname-ospfv3-1] filter-policy prefix-list abc export
# Configure IPv6 advanced ACL 3000 to permit only route 2001::1/128. Use ACL 3000 to filter
redistributed routes.
<Sysname> system-view
[Sysname] acl ipv6 advanced 3000
[Sysname-acl-ipv6-adv-3000] rule 10 permit ipv6 source 2001::1 128 destination
ffff:ffff:ffff:ffff:ffff:ffff:ffff:ffff 128
[Sysname-acl-ipv6-adv-3000] rule 100 deny ipv6
[Sysname-acl-ipv6-adv-3000] quit
[Sysname] ospfv3
[Sysname-ospfv3-1] filter-policy 3000 export
Содержание SOHO IE4300
Страница 114: ...ii tftp client ipv6 source 41 tftp client source 41 tftp ipv6 42 tftp server acl 44 tftp server ipv6 acl 44...
Страница 285: ...i Contents Tcl commands 1 cli 1 tclquit 1 tclsh 2...
Страница 288: ...i Contents Python commands 1 exit 1 python 1 python filename 2...
Страница 291: ...i Contents Automatic configuration commands 1 autodeploy udisk enable 1...
Страница 323: ...25 Sysname Ten GigabitEthernet1 0 51 undo shutdown Related commands irf port...
Страница 396: ...i Contents Bulk interface configuration commands 1 display interface range 1 interface range 1 interface range name 3...
Страница 460: ...i Contents Port isolation commands 1 display port isolate group 1 port isolate enable 2 port isolate group 2...
Страница 465: ...ii stp vlan enable 55 vlan mapping modulo 55...
Страница 589: ...60 Examples Enable LLDP for automatic IP phone discovery Sysname system view Sysname voice vlan track lldp...
Страница 602: ...12 Related commands display mvrp statistics...
Страница 609: ...i Contents VLAN mapping commands 1 display vlan mapping 1 vlan mapping 2...
Страница 678: ...9 Related commands reset pppoe relay statistics...
Страница 846: ...i Contents Basic IP forwarding commands 1 display fib 1 ip forwarding table save 2...
Страница 1073: ...i Contents HTTP redirect commands 1 http redirect https port 1 http redirect ssl server policy 1...
Страница 1087: ...Documentation feedback You can e mail your comments about product documentation to info h3c com We appreciate your comments...
Страница 1340: ...9 Sysname ipv6 route static default preference 120 Related commands display ipv6 routing table protocol...
Страница 1649: ...Documentation feedback You can e mail your comments about product documentation to info h3c com We appreciate your comments...
Страница 1668: ...Documentation feedback You can e mail your comments about product documentation to info h3c com We appreciate your comments...
Страница 1770: ...i Contents Time range commands 1 display time range 1 time range 1...
Страница 2026: ...34 Related commands display mac authentication...
Страница 2028: ...ii...
Страница 2143: ...i Contents User profile commands 1 display user profile 1 user profile 2...
Страница 2308: ...61 ipsec transform set...
Страница 2473: ...i Contents TCP attack prevention commands 1 tcp anti naptha enable 1 tcp check state interval 1 tcp state 2...
Страница 2531: ...i Contents SAVI commands 1 ipv6 savi down delay 1 ipv6 savi log enable 1 ipv6 savi strict 2...
Страница 2534: ...3 Sysname ipv6 savi strict Related commands ipv6 verify source...
Страница 2541: ...i Contents Crypto engine commands 1 display crypto engine 1 display crypto engine statistics 1 reset crypto engine statistics 3...
Страница 2545: ...i Contents FIPS commands 1 display crypto version 1 display fips status 1 fips mode enable 2 fips self test 4...
Страница 2791: ...14 Sysname track 1 Related commands delay display track...
Страница 2939: ...9 sntp authentication keyid sntp reliable authentication keyid...
Страница 2967: ...27 Related commands apply poe profile poe enable poe max power interface view poe priority...
Страница 3240: ...Documentation feedback You can e mail your comments about product documentation to info h3c com We appreciate your comments...
Страница 3263: ...Documentation feedback You can e mail your comments about product documentation to info h3c com We appreciate your comments...