H3C S6812 Series Command Reference Manual page 1541

Hide thumbs Also See for S6812 Series:
Table of Contents

Advertisement

Parameters
Function
source-address/s
ource-prefix |
any }
destination
{ dest-address
Specifies a destination
dest-prefix |
IPv6 address.
dest-address/dest
-prefix | any }
Counts the times that the
counting
rule is matched.
Specifies a DSCP
dscp dscp
preference.
flow-label
Specifies a flow label value
flow-label-value
in an IPv6 packet header.
Applies the rule only to
fragment
non-first fragments.
logging
Logs matching packets.
routing [ type
Specifies an IPv6 routing
routing-type ]
header type.
Specifies an IPv6
hop-by-hop
Hop-by-Hop Options
[ type hop-type ]
header type.
time-range
Specifies a time range for
time-range-name
the rule.
If the protocol argument is tcp (6) or udp (17), set the parameters shown in
Table 12 TCP/UDP-specific parameters for IPv6 advanced ACL rules
Parameters
Function
source-port
Specifies one or
Description
the range of 1 to 128.
The any keyword represents any IPv6 source address.
The dest-address argument specifies a destination IPv6
address.
The dest-prefix argument specifies a prefix length in the
range of 1 to 128.
The any keyword represents any IPv6 destination
address.
The counting keyword enables match counting specific
to rules, and the hardware-count keyword in the
packet-filter ipv6 command enables match counting for
all rules in an ACL. If the counting keyword is not
specified, matches for the rule are not counted.
The dscp argument can be a number in the range of 0 to
63, or in words, af11 (10), af12 (12), af13 (14), af21 (18),
af22 (20), af23 (22), af31 (26), af32 (28), af33 (30), af41
(34), af42 (36), af43 (38), cs1 (8), cs2 (16), cs3 (24), cs4
(32), cs5 (40), cs6 (48), cs7 (56), default (0), or ef (46).
The flow-label-value argument is in the range of 0 to
1048575.
If you do not specify this keyword, the rule applies to all
fragments and non-fragments.
If an ACL is applied for packet filtering, do not specify this
keyword.
This feature requires that the module (for example,
packet filtering) that uses the ACL supports logging.
routing-type: Value of the IPv6 routing header type, in the
range of 0 to 255.
If you specify the type routing-type option, the rule
applies to the specified type of IPv6 routing header. If you
do not specify the type routing-type option, the rule
applies to all types of IPv6 routing headers.
hop-type: Value of the IPv6 Hop-by-Hop Options header
type, in the range of 0 to 255.
If you specify the type hop-type option, the rule applies to
the specified type of IPv6 Hop-by-Hop Options header. If
you do not specify the type hop-type option, the rule
applies to all types of IPv6 Hop-by-Hop Options header.
The time-range-name argument is a case-insensitive
string of 1 to 32 characters. It must start with an English
letter. If the time range is not configured, the system
creates the rule. However, the rule using the time range
can take effect only after you configure the time range.
For more information about time range, see ACL and
QoS Configuration Guide.
Description
The operator argument can be lt (lower than), gt (greater than),
26
Table
12.

Advertisement

Table of Contents
loading

This manual is also suitable for:

S6813 seriesS5150-ei

Table of Contents