Instructions
Example
Related
Commands
Purpose
Command Modes
Syntax
Syntax
Description
time-range
<timerange-name>
event <event-name>
�
When the time-range field is not configured, then this rule will
be effective permanently. The time range command must be
configured firstly before the use of the time-range field.
�
This command also has edit function, and the edit field includes
the action field, source IP field, etc.
�
ACL rule event list is only supported in T160G series switches.
This example describes how to configure/edit Ipv6 standard ACL
rule 1 and 10.
ZXR10(config)#ipv6 acl standard number 1
ZXR10(config-std-v6acl)#rule 1 permit 1030::C9B4:FF12:48AA:1A2B/60
ZXR10(config-std-v6acl)#rule 1 deny 1030::C9B4:FF12:48AA:1A2B/60
ZXR10(config-std-v6acl)#rule 10 permit 1030::1000/90 time-range test
show ipv6 acl
time-range
event-list
rule (IPv6 Extended Format)
Use this command to define an IPv6 extended ACL rule. Remove
the rule with the no form of this command.
IPv6 Extended ACL configuration
rule <1-maxRuleNo>{permit | deny}<protocol>{<source/prefi
x>| any}{<destination/prefix>| any}[{time-range <timerange
-name>| event <event-name>}]
no rule <1-maxRuleNo>
<1-maxRuleNo>
permit
deny
<protocol>
<source/prefix>
<destination/prefix>
any
Confidential and Proprietary Information of ZTE CORPORATION
Chapter 2 ACL Configuration
Time range name, not more than 16
characters
Event list name, not more than 16 characters
ACL rule number, range: 1~100 (switch
router), 1~1000 (router)
Permits the packet that matches this rule
Denies the packet that matches this rule
Protocol type to be matched, ICMP, IP, TCP
and UDP; an integer that stands for the IP
protocol number (0~ 254)
IP address/prefix length of the source to be
matched, in hexadecimal format
IP address/prefix length of the destination to
be matched, in hexadecimal format
Any IP address
33