PLANET XGS3-24042 User Manual

Page 507

Advertising
background image

51-16

Command

Explanation

Extended IPV6 ACL Mode

[no] {deny | permit} icmp {{<sIPv6Prefix/sPrefixlen>} |

any-source | {host-source <sIPv6Addr>}}

{<dIPv6Prefix/dPrefixlen> | any-destination |

{host-destination <dIPv6Addr>}} [<icmp-type>

[<icmp-code>]] [dscp <dscp>] [flow-label <flowlabel>]

[time-range <time-range-name>]

Creates an extended

name-based ICMP IPv6

access rule; the no form

command deletes this

name-based extended IPv6

access rule.

[no] {deny | permit} tcp {<sIPv6Prefix/sPrefixlen> |

any-source | {host-source <sIPv6Addr>}} [s-port

{<sPort> | range <sPortMin> <sPortMax>}]

{<dIPv6Prefix/dPrefixlen> | any-destination |

{host-destination <dIPv6Addr>}} [d-port {<dPort> |

range <dPortMin> <dPortMax>}] [syn | ack | urg | rst |

fin | psh] [dscp <dscp>] [flow-label <fl>]

[time-range<time-range-name>]

Creates an extended

name-based TCP IPv6

access rule; the no form

command deletes this

name-based extended IPv6

access rule.

[no] {deny | permit} udp {<sIPv6Prefix/sPrefixlen> |

any-source | {host-source <sIPv6Addr>}} [s-port

{<sPort> | range <sPortMin> <sPortMax>}]

{<dIPv6Prefix/dPrefixlen> | any-destination |

{host-destination <dIPv6Addr>}} [d-port {<dPort> |

range <dPortMin> <dPortMax>}] [dscp <dscp>]

[flow-label <fl>] [time-range<time-range-name>]

Creates an extended

name-based UDP IPv6

access rule; the no form

command deletes this

name-based extended IPv6

access rule.

[no] {deny | permit} <proto> {<sIPv6Prefix/sPrefixlen>

| any-source | {host-source <sIPv6Addr>}}

{<dIPv6Prefix/dPrefixlen> | any-destination |

{host-destination <dIPv6Addr>}} [dscp <dscp>]

[flow-label <flowlabel>] [time-range

<time-range-name>]

Creates an extended

name-based IPv6 access

rule for other IPv6 protocols;

the

no

form command

deletes this name-based

extended IPv6 access rule.

[no] {deny | permit} {<sIPv6Prefix/sPrefixlen> |

any-source | {host-source <sIPv6Addr>}}

{<dIPv6Prefix/dPrefixlen> | any-destination |

{host-destination <dIPv6Addr>}} [dscp <dscp>]

[flow-label <flowlabel>] [time-range

<time-range-name>]

Creates an extended

name-based IPv6 access

rule; the no form command

deletes this name-based

extended IPv6 access rule.

c. Exit extended IPv6 ACL configuration mode

Advertising
This manual is related to the following products: