Deleting A Comment From An Ipv6 Acl Entry; Support For Acl Logging; Displaying Ipv6 Acls - Brocade Communications Systems ICX 6650 Security Configuration Manual

Hide thumbs Also See for ICX 6650:
Table of Contents

Advertisement

The comment-text can be up to 256 characters in length.
The following shows the comment text for the ACL named "rtr" in a show running-config display.
Brocade# show running-config
ipv6 access-list rtr
remark This entry permits ipv6 packets from 2001:db8::2 to any destination
permit ipv6 host 2001:db8:1::2 any
remark This entry denies udp packets from any source to any destination
deny udp any any
remark This entry denies IPv6 packets from any source to any destination
deny ipv6 any any
Syntax: show running-config

Deleting a comment from an IPv6 ACL entry

To delete a comment from an IPv6 ACL entry, enter commands such as the following.
Brocade(config)# ipv6 access-list rtr
Brocade(config-ipv6-access-list rtr)# no remark This entry permits ipv6 packets
from 2001:db8:1::2 to any destination
Syntax: no remark comment-text
For comment-text, enter the text exactly as you did when you created the comment.

Support for ACL logging

Brocade devices support ACL logging of inbound packets that are sent to the CPU for processing
(denied packets). ACL logging is not supported for any packets that are processed in hardware
(permitted packets).
You may want the software to log entries in the syslog for packets that are denied by ACL filters. ACL
logging is disabled by default; it must be explicitly enabled on a port. Refer to
page 105.

Displaying IPv6 ACLs

To display the IPv6 ACLs configured on a device, enter the show ipv6 access-list command. Here is
an example.
Brocade ICX 6650 Security Configuration Guide
53-1002601-01
Deleting a comment from an IPv6 ACL entry
"ACL logging"
on
139

Advertisement

Table of Contents
loading

Table of Contents