Users Guide

Command History
Version 9.0.2.0 Introduced on the S6000.
Version 8.4.2.1 Introduced on the S-Series.
Version 8.2.1.0 Introduced on the E-Series TeraScale.
Version 7.8.1.0 Introduced on the C-Series.
Version 7.4.1.0 Introduced on the E-Series TeraScale Added the monitor option.
deny icmp
Congure a lter to drop all or specic ICMP messages.
Syntax
deny icmp {source address mask | any | host ipv6-address} {destination
address | any | host ipv6-address} [message-type] [count [byte]] | [log]
[monitor]
To remove this lter, you have two choices:
Use the no seq sequence-number command syntax if you know the lter’s sequence number
Use the no deny icmp {source address mask | any | host ipv6-address}
{destination address | any | host ipv6-address} command
Parameters
source address Enter the IPv6 address of the network or host from which the packets were sent in
the x:x:x:x::x format followed by the prex length in the /x format. The range is /0
to /128. The :: notation species successive hexadecimal elds of zero.
mask Enter a network mask in /prex format (/x).
any Enter the keyword any to specify that all routes are subject to the lter.
host ipv6-address Enter the keyword host followed by the IPv6 address of the host in the x:x:x:x::x
format. The :: notation species successive hexadecimal elds of zero.
destination address Enter the IPv6 address of the network or host to which the packets are sent in the
x:x:x:x::x format followed by the prex length in the /x format. The range is /0 to /
128. The :: notation species successive hexadecimal elds of zero.
count (OPTIONAL) Enter the keyword count to count packets processed by the lter.
byte (OPTIONAL) Enter the keyword byte to count bytes processed by the lter.
Defaults Not congured.
Command Modes ACCESS-LIST
Command History
Version 9.0.2.0 Introduced on the S6000.
Version 8.4.2.1 Introduced on the S-Series.
Version 8.2.1.0 Introduced on the E-Series TeraScale.
Version 7.8.1.0 Introduced on the C-Series.
856
IPv6 Access Control Lists (IPv6 ACLs)