2110 CHAPTER 139: IPV6 ACL CONFIGURATION COMMANDS

Table 551 Match criteria and other rule information for advanced IPv6 ACL rules

Parameter

Function

Description

 

 

 

source { source

Specifies a source

The source and source-prefix arguments

source-prefix

IPv6 address.

specify an IPv6 source address and its prefix

source/source-prefix

 

length in the range 1 to 128.

any }

 

The any keyword indicates any IPv6 source

 

 

 

 

address.

destination { dest

Specifies a

The dest and dest-prefixarguments specify a

dest-prefix

destination IPv6

destination IPv6 address, and its prefix length

dest/dest-prefix any }

address.

in the range 1 to 128.

 

 

The any keyword indicates any IPv6

 

 

destination address.

dscp dscp

Specifies a DSCP

The dscp argument can be a number in the

 

preference

range 0 to 63, or in words, af11, af12, af13,

 

 

af21, af22, af23, af31, af32, af33, af41,

 

 

af42, af43, cs1, cs2, cs3, cs4, cs5, cs6, cs7,

 

 

default, or ef.

logging

Specifies to log

The log provides information about ACL rule

 

matched packets

number, whether packets are permitted or

 

 

denied, protocol that IP carries,

 

 

source/destination IPv6 address,

 

 

source/destination port number, and number

 

 

of packets.

fragment

Indicates that the

 

rule applies only to

 

non-first fragments

time-range time-name

Specifies the time

 

range in which the

 

rule can take effect.

With this keyword not provided, the rule is effective to both non-fragments and fragments.

The time-name argument comprises 1 to 32 characters. It is case insensitive and must start with an English letter. To avoid confusion, this name cannot be all.

If the protocol argument is set to tcp or udp, you may define the parameters in the following table.

Page 2110
Image 2110
3Com MSR 30, MSR 50 manual Parameter Function Description Source source, Destination dest, Time-range time-name