(Named Ipv6 Hardware Acl: Tcp Or Udp Entry) - Allied Telesis x510-28GTX Command Reference Manual

Stackable gigabit edge switches x510 series
Table of Contents

Advertisement

IP
6 H
A
C
V
ARDWARE
CCESS
ONTROL
(
IP
6
ACL: TCP
NAMED
V
HARDWARE
(named IPv6 hardware ACL: TCP or UDP
entry)
Overview
Use this command to add a TCP or UDP filter entry to the current IPv6 hardware
access-list. The access-list will match on TCP or UDP packets that have the specified
source and destination IP addresses and optionally, port values. You can use the
value any instead of source or destination IP address if an address does not matter.
The no variant of this command removes a filter entry from the current hardware
access-list. You can specify the filter entry for removal by entering either its
sequence number (e.g. no 100), or by entering its filter profile without specifying
its sequence number (e.g. no deny tcp 2001:0db8::0/64 any).
You can find the sequence number by running the
Hardware ACLs)
Hardware ACLs will permit access unless explicitly denied by an ACL action.
[<sequence-number>] <action> {tcp|udp} <source-addr>
Syntax
[<source-ports>] <dest-addr> [<dest-ports>] [vlan <1-4094>]
no <sequence-number>
no <action> {tcp|udp} <source-addr> [<source-ports>]
<dest-addr> [<dest-ports>] [vlan <1-4094>]
C613-50170-01 Rev B
L
(ACL) C
IST
OMMANDS
UDP
)
OR
ENTRY
command.
Parameter
Description
<sequence-
The sequence number for the filter entry of the selected access
number>
control list, in the range 1-65535. If you do not specify a sequence
number, the switch puts the entry at the end of the ACL and
assigns it the next available multiple of 10 as its sequence
number. .
<action>
The action that the switch will take on matching packets:
deny
permit
copy-to-cpu
copy-to-mirror
send-to-mirror
Command Reference for x510 Series
AlliedWare Plus™ Operating System - Version 5.4.7-1.x
show ipv6 access-list (IPv6
Reject packets that match the
source and destination filtering
specified with this command.
Permit packets that match the
source and destination filtering
specified with this command.
Send a copy of matching packets to
the CPU.
Send a copy of matching packets to
the mirror port.
Use the
mirror interface
command
to configure the mirror port.
Send matching packets to the
mirror port.
Use the
mirror interface
command
to configure the mirror port.
1580

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents