IPv6 Access List Commands 525
every Allows all protocols.
icmpv6 | ipv6 | tcp
| udp |
protocolnumber
Protocol to match, specified as keywords icmp, igmp, ipv6, tcp,
udp or as a standard protocol number from 1–255.
any
|
sourceipv6
prefix
/
prefixlength
any matches any source IP address. Or, you can specify a source
IPv6 addressed expressed as a prefix/prefixlength.
eq
{portnumber |
portkey}
eq matches a port number being used as a match criteria. The
first reference provides the source match criteria and the
second provides destination match criteria.
The portnumber variable must be in the range 0–65535.
Or you can specify one of the values as the portkey: domain,
echo, efts, ftpdata, http, smtp, snmp, telnet, tftp, and www.
any
|
destinationipv6
prefix
/
prefixlength
any matches any source IP address. Or, you can specify a source
IPv6 addressed expressed as a prefix/prefixlength.
flow label flow-label-
value
The value to match in the Flow Label field of the IPv6 header
(Range 0–1048575).
dscp dscp-value Specifies the TOS for an IPv6 ACL rule depending on a match
of DSCP values using the parameter dscp.
assign-queue queue-
id
Specifies particular hardware queue for handling traffic that
matches the rule. (Range: 0-6)
log Specifies that this rule is to be logged.
mirror interface Allows the traffic matching this rule to be copied to the
specified interface.
redirect interface This parameter allows the traffic matching this rule to be
forwarded to the specified interface.
time-range-name Use the time-range parameter to impose a ti me limitation on
the IPv6 ACL rule as defined by the parameter
time-range-name
.
Parameter Description
2CSPC4.XCT-SWUM2XX1.book Page 525 Monday, October 3, 2011 11:05 AM