H3C S6550X-HI Series Command Reference Manual page 2139

Table of Contents

Advertisement

dscp dscp
flow-label
flow-label-value
fragment
routing
type
[
routing-type
]
hop-by-hop
type
[
hop-type
]
time-range
time-range-name
vpn-instance
vpn-instance-name
If the
argument is tcp (6) or udp (17), set the parameters shown in
protocol
Table 7 TCP/UDP-specific parameters for IPv6 advanced ACL rules
Parameters
source-portoperator
port1 [ port2 ]
Specifies a DSCP
preference.
Specifies a flow label
value in an IPv6 packet
header.
Applies the rule only to
non-first fragments.
Specifies an IPv6 routing
header type.
Specifies an IPv6
Hop-by-Hop Options
header type.
Specifies a time range for
the rule.
Applies the rule to an
MPLS L3VPN instance.
Function
Specifies one or
more UDP or
TCP source
15
counting in hardware for all rules in an ACL. If the
counting
keyword is not specified, matches
for the rule are not counted in software. For more
packet-filter
information about the
command , see packet filter commands in
Security Command Reference.
The dscp argument can be a number in the
range of 0 to 63, or in words, af11 (10), af12 (12),
af13 (14), af21 (18), af22 (20), af23 (22), af31
(26), af32 (28), af33 (30), af41 (34), af42 (36),
af43 (38), cs1 (8), cs2 (16), cs3 (24), cs4 (32),
cs5 (40), cs6 (48), cs7 (56), default (0), or ef
(46).
flow-label-value
The
range of 0 to 1048575.
If you do not specify this keyword, the rule
applies to all fragments and non-fragments.
routing-type
: Value of the IPv6 routing
header type, in the range of 0 to 255.
type routing-type
If you specify the
option, the rule applies to the specified type of
IPv6 routing header. If you do not specify the
type routing-type
applies to all types of IPv6 routing headers.
hop-type
: Value of the IPv6 Hop-by-Hop
Options header type, in the range of 0 to 255.
type hop-type
If you specify the
rule applies to the specified type of IPv6
Hop-by-Hop Options header. If you do not
type hop-type
specify the
applies to all types of IPv6 Hop-by-Hop Options
header.
time-range-name
The
case-insensitive string of 1 to 32 characters. It
must start with an English letter. If the time range
is not configured, the system creates the rule.
However, the rule using the time range can take
effect only after you configure the time range. For
more information about time range, see ACL and
QoS Configuration Guide.
vpn-instance-name
The
case-sensitive string of 1 to 31 characters.
If you do not specify a VPN instance, whether the
rule applies to VPN packets varies by feature.
See the description for the feature that uses
ACLs.
Description
The operator argument can be lt (lower than),
gt (greater than), eq (equal to), neq (not equal
argument is in the
option, the rule
option, the
option, the rule
argument is a
argument is a
Table
7.

Advertisement

Table of Contents
loading

Table of Contents