CLI Guide

Defaults Not configured.
Command Modes ACCESS-LIST
Supported Modes Full–Switch
Command History
Version Description
9.9(0.0) Introduced on the FN IOM.
9.4(0.0) Added support for logging of ACLs on the MXL 10/40GbE
Switch IO Module.
9.3(0.0) Added support for logging of ACLs on the MXL 10/40GbE
Switch IO Module.
9.2(0.0) Introduced on the MXL 10/40GbE Switch IO Module.
permit icmp
To allow all or specific internet control message protocol (ICMP) messages, configure a filter.
Syntax
permit icmp {source address mask | any | host ipv6-address}
{destination address | any | host ipv6-address} [message-type]
[count [byte]] | [log] [interval minutes] [threshold-in-msgs
[count]][monitor]
To remove this filter, you have two choices:
Use the no seq sequence-number command if you know the filter’s
sequence number.
Use the no permit icmp {source address mask | any | host ipv6-
address} {destination address | any | host ipv6-address}
command.
Parameters
source address Enter the IPv6 address of the network or host from which
the packets were sent in the x:x:x:x::x format then the prefix
length in the /x format. The range is from /0 to /128. The ::
notation specifies successive hexadecimal fields of zero.
mask Enter a network mask in /prefix format (/x).
any Enter the keyword any to specify that all routes are subject
to the filter.
host ipv6-address Enter the keyword host then the IPv6 address of the host in
the x:x:x:x::x format. The :: notation specifies successive
hexadecimal fields of zero.
destination
address
Enter the IPv6 address of the network or host to which the
packets are sent in the x:x:x:x::x format then the prefix
length in the /x format. The range is from /0 to /128. The ::
notation specifies successive hexadecimal fields of zero.
message-type (OPTIONAL) Enter an ICMP message type, either with the
type (and code, if necessary) numbers or with the name of
IPv6 Access Control Lists (IPv6 ACLs)
751