HPE FlexNetwork HSR6800 series Command Reference Manual page 32

Comware 7 acl and qos
Hide thumbs Also See for FlexNetwork HSR6800 series:
Table of Contents

Advertisement

A protocol name: gre (47), icmpv6 (58), ipv6, ipv6-ah (51), ipv6-esp (50), ospf (89), tcp (6),
or udp (17). The ipv6 keyword specifies all protocols.
Table 11
describes the parameters that you can specify regardless of the value for the protocol
argument.
Table 11 Match criteria and other rule information for IPv6 advanced ACL rules
Parameters
Function
source
{ object-group
address-group-na
me |
Specifies a source IPv6
source-address
address.
source-prefix |
source-address/s
ource-prefix |
any }
destination
{ object-group
address-group-na
Specifies a destination
me | dest-address
IPv6 address.
dest-prefix |
dest-address/dest
-prefix | any }
Counts the times that the
counting
rule is matched.
Specifies a DSCP
dscp dscp
preference.
flow-label
Specifies a flow label value
flow-label-value
in an IPv6 packet header.
Applies the rule only to
fragment
non-first fragments.
logging
Logs matching packets.
routing [ type
Specifies an IPv6 routing
routing-type ]
header type.
Specifies an IPv6
hop-by-hop
Hop-by-Hop Options
[ type hop-type ]
header type.
Description
The address-group-name argument specifies an object
group of source IPv6 addresses.
The source-address argument specifies an IPv6 source
address.
The source-prefix argument specifies a prefix length in
the range of 1 to 128.
The any keyword represents any IPv6 source address.
The address-group-name argument specifies an object
group of destination IPv6 addresses.
The dest-address argument specifies a destination IPv6
address.
The dest-prefix argument specifies a prefix length in the
range of 1 to 128.
The any keyword represents any IPv6 destination
address.
The counting keyword enables match counting specific
to rules, and the hardware-count keyword in the
packet-filter ipv6 command enables match counting for
all rules in an ACL. If the counting keyword is not
specified, matches for the rule are not counted.
The dscp argument can be a number in the range of 0 to
63, or in words, af11 (10), af12 (12), af13 (14), af21 (18),
af22 (20), af23 (22), af31 (26), af32 (28), af33 (30), af41
(34), af42 (36), af43 (38), cs1 (8), cs2 (16), cs3 (24), cs4
(32), cs5 (40), cs6 (48), cs7 (56), default (0), or ef (46).
The flow-label-value argument is in the range of 0 to
1048575.
If you do not specify this keyword, the rule applies to all
fragments and non-fragments.
This feature requires that the module (for example,
packet filtering) that uses the ACL supports logging.
routing-type: Value of the IPv6 routing header type, in the
range of 0 to 255.
If you specify the type routing-type option, the rule
applies to the specified type of IPv6 routing header. If you
do not specify the type routing-type option, the rule
applies to all types of IPv6 routing header.
hop-type: Value of the IPv6 Hop-by-Hop Options header
type, in the range of 0 to 255.
If you specify the type hop-type option, the rule applies to
the specified type of IPv6 Hop-by-Hop Options header. If
you do not specify the type hop-type option, the rule
applies to all types of IPv6 Hop-by-Hop Options header.
27

Advertisement

Table of Contents
loading

Table of Contents