AS5800-EC Series CLI Reference Guide R02

Table Of Contents
Chapter 10
| Access Control Lists
IPv6 ACLs
– 340 –
Command Usage
New rules are appended to the end of the list.
Example
This example configures one permit rule for the specific address 2009:DB9:2229::79
and another rule for the addresses with the network prefix 2009:DB9:2229:5::/64.
Console(config-std-ipv6-acl)#permit host 2009:DB9:2229::79
Console(config-std-ipv6-acl)#permit 2009:DB9:2229:5::/64
Console(config-std-ipv6-acl)#
Related Commands
access-list ipv6 (338)
(174)
permit, deny
(Extended IPv6 ACL)
This command adds a rule to an Extended IPv6 ACL. The rule sets a filter condition
for packets with specific destination IP addresses, next header type, or flow label.
Use the no form to remove a rule.
Syntax
{permit | deny} {any | host destination-ipv6-address |
destination-ipv6-address[/prefix-length]}
no {permit | deny} {any | host destination-ipv6-address |
destination-ipv6-address[/prefix-length]}
any – Any IP address (an abbreviation for the IPv6 prefix ::/0).
host – Keyword followed by a specific destination IP address.
destination-ipv6-address - An IPv6 destination address or network class. The
address must be formatted according to RFC 2373 “IPv6 Addressing
Architecture,” using 8 colon-separated 16-bit hexadecimal values. One
double colon may be used in the address to indicate the appropriate
number of zeros required to fill the undefined fields.
prefix-length - A decimal value indicating how many contiguous bits (from
the left) of the address comprise the prefix; i.e., the network portion of the
address. (Range: 0-128)
Default Setting
None
Command Mode
Extended IPv6 ACL
Command Usage
All new rules are appended to the end of the list.