Chapter 9
| Access Control Lists
IPv6 ACLs
– 279 –
Command Usage
New rules are appended to the end of the list.
Example
This example configures one permit rule for the specific address 2009:DB9:2229::79
and another rule for the addresses with the network prefix 2009:DB9:2229:5::/64.
Console(config-std-ipv6-acl)#permit host 2009:DB9:2229::79
Console(config-std-ipv6-acl)#permit 2009:DB9:2229:5::/64
Console(config-std-ipv6-acl)#
Related Commands
access-list ipv6 (277)
Time Range (128)
permit, deny,
redirect-to
(Extended IPv6 ACL)
This command adds a rule to an Extended IPv6 ACL. The rule sets a filter condition
for packets with specific source or destination IP addresses, or next header type.
Use the
no
form to remove a rule.
Syntax
{
permit
|
deny
|
redirect-to
interface
}
{
any
|
host
source-ipv6-address
|
source-ipv6-address
[
/prefix-length
]}
{
any
|
destination-ipv6-address/prefix-length
}
[
dscp
dscp
] [
next-header
next-header
]
[
time-range
time-range-name
]
no
{
permit
|
deny
} {
any
|
host
source-ipv6-address
|
source-ipv6-address
[
/prefix-length
]}
{
any
|
destination-ipv6-address/prefix-length
}
[
dscp
dscp
] [
next-header
next-header
]
interface
ethernet
unit
/
port
unit
- Unit identifier. (Range: 1)
port
- Port number. (Range: 1-28/52)
any
– Any IP address (an abbreviation for the IPv6 prefix ::/0).
host
– Keyword followed by a specific source IP address.
source-ipv6-address
- An IPv6 source address or network class. The address
must be formatted according to RFC 2373 “IPv6 Addressing Architecture,”
using 8 colon-separated 16-bit hexadecimal values. One double colon may
be used in the address to indicate the appropriate number of zeros
required to fill the undefined fields.
destination-ipv6-address
- An IPv6 destination address or network class. The
address must be formatted according to RFC 2373 “IPv6 Addressing
Содержание EX-3524
Страница 2: ......
Страница 28: ...Figures 28 ...
Страница 34: ...Section I Getting Started 34 ...
Страница 58: ...Chapter 1 Initial Switch Configuration Setting the System Clock 58 ...
Страница 72: ...Chapter 2 Using the Command Line Interface CLI Command Groups 72 ...
Страница 156: ...Chapter 5 SNMP Commands Notification Log Commands 156 ...
Страница 164: ...Chapter 6 Remote Monitoring Commands 164 ...
Страница 218: ...Chapter 7 Authentication Commands Management IP Filter 218 ...
Страница 268: ...Chapter 8 General Security Measures Port based Traffic Segmentation 268 ...
Страница 292: ...Chapter 9 Access Control Lists ACL Information 292 ...
Страница 312: ...Chapter 10 Interface Commands Power Savings 312 ...
Страница 324: ...Chapter 11 Link Aggregation Commands Trunk Status Display Commands 324 ...
Страница 366: ...Chapter 15 Address Table Commands 366 ...
Страница 428: ...Chapter 17 VLAN Commands Configuring Voice VLANs 428 ...
Страница 572: ...Chapter 25 IP Interface Commands IPv6 Interface 572 ...
Страница 578: ...Section I Appendices 578 ...
Страница 594: ...Appendix C Customer Support Manuals 594 ...