Web Management Guide-R02

Table Of Contents
Chapter 12
| Security Measures
Access Control Lists
– 335 –
Figure 212: Configuring a Standard IPv6 ACL
Configuring an
Extended IPv6 ACL
Use the Security > ACL (Configure ACL - Add Rule - IPv6 Extended) page to
configure an Extended IPv6 ACL.
Parameters
These parameters are displayed:
Type – Selects the type of ACLs to show in the Name list.
Name – Shows the names of ACLs matching the selected type.
Action – An ACL can contain any combination of permit or deny rules.
Protocol – Selects the protocol of the next header in the packet. Select TCP,
UDP, ICMP, or Next Header to identify the protocol by value.
Next Header – Identifies the type of header immediately following the IPv6
header. (Range: 0-255)
Optional Internet-layer information is encoded in separate headers that may be
placed between the IPv6 header and the upper-layer header in a packet. There
are a small number of such extension headers, each identified by a distinct Next
Header value. IPv6 supports the values defined for the IPv4 Protocol field in
RFC 1700, and includes these commonly used headers:
0 : Hop-by-Hop Options (RFC 2460)
6 : TCP Upper-layer Header (RFC 1700)
17 : UDP Upper-layer Header (RFC 1700)
43 : Routing (RFC 2460)
44 : Fragment (RFC 2460)
50 : Encapsulating Security Payload (RFC 2406)
51 : Authentication (RFC 2402)
60 : Destination Options (RFC 2460)