UMN:CLI
User Manual
V8102
258
actual value for ToS)
pkt-size: Identifies packet size.
gt: packet size less than or greater than specified val-
ue.
lt: packet size less than or greater than specified value.
(0-65535: packet size)
fragments: An ACL applies to the non-initial fragment of
packet.
log: logs the results.
interface: the name of the input or output interface.
To delete an existing ipv6 access-list (ACL) to filter packets, use the following command.
Command
Mode
Description
no ipv6 access-list zebos WORD
{
deny
|
per-
mit
}
Global
Deletes an entry of the ZeBos extend-
ed ACL.
no ipv6 access-list zebos WORD
{
deny
|
per-
mit
} {
ip
|
gre
|
igmp
|
pim
|
rsvp
|
ospf
|
vrrp
|
ipcomp
|
any
| <0-255>}
{
SOUR_ADDR
|
SOUR_ADDR_RANGE |
any
}
{
DES_ADDR
|
DES_ADDR_RANGE |
any
} {
label
<1-65535>
|
precedence
<0-7> |
tos
{<0-255> |
range
<0-
255> <0-255>}
|
pkt-size
{
lt
<0-65535>
| gt
<0-
65535>
|
range
<0-65535> <0-65535>}
|
frag-
ments | log
|
interface
{
in
|
out
}
[{
tengiga-
bitethernet IFPORT | gpon IFPORT
|
chan-
nelgroup
}
IFPORT
|
vlan VLANID
}]
7.18.10.1
IPv6 Access List ZeBos for ICMP
To create an access-list (ACL) to filter packets specific to the ICMP protocol, use the fol-
lowing command.
Command
Mode
Description
ipv6 access-list zebos WORD
{
deny
|
permit
}
icmp
{
SOUR_ADDR
|
SOUR_ADDR_RANGE
|
any
}
{
DES_ADDR
|
DES_ADDR_RANGE
|
any
}
Global
Specifies a deny or permit statement of the Zebos ex-
tanded ACL to filter packets specific to the ICMP proto-
col.
WORD: access-list name
deny: specifies route to deny.
permit: Specified route to permit.
SOUR_ADDR: source IPv6 address to match
(X:X::X:X/M)
SOUR_ADDR_RANGE: source IPv6 address range to
match (X:X::X:X X:X::X:X)
DES_ADDR: destination IPv6 address to match
(X:X::X:X/M)
DES_ADDR_RANGE: destination IPv6 address range
to match (X:X::X:X X:X::X:X)
ipv6 access-list zebos WORD
{
deny
|
permit
}
icmp
{
SOUR_ADDR
|
SOUR_ADDR_RANGE
|
any
}
{
DES_ADDR
|
DES_ADDR_RANGE
|
any
}
[{
icmp-type ICMP-TYPE | label
<1-65535>
| precedence
<0-7>
|