Command
Modes
ACCESS-LIST
Command
History
Version 9.4(0.0)
Added support for logging of ACLs on the MXL 10/40GbE
Switch IO Module.
Version 9.3(0.0)
Added support for logging of ACLs on the MXL 10/40GbE
Switch IO Module.
Version 9.2(0.0)
Introduced on the MXL 10/40GbE Switch IO Module.
permit icmp
To allow all or specific internet control message protocol (ICMP) messages, configure a filter.
Syntax
permit icmp {
source address mask
| any | host
ipv6-address
}
{
destination address
| any | host
ipv6-address
} [
message-type
]
[count [byte]] | [log] [interval minutes] [threshold-in-msgs
[
count
]][monitor]
To remove this filter, you have two choices:
• Use the
no seq sequence-number
command if you know the filter’s
sequence number.
• Use the
no permit icmp {
source address mask
| any | host
ipv6-
address
} {
destination address
| any | host
ipv6-address
}
command.
Parameters
source address
Enter the IPv6 address of the network or host from which the
packets were sent in the x:x:x:x::x format then the prefix
length in the /x format. The range is from /0 to /128. The ::
notation specifies successive hexadecimal fields of zero.
mask
Enter a network mask in /prefix format (/x).
any
Enter the keyword
any
to specify that all routes are subject
to the filter.
host
ipv6-
address
Enter the keyword
host
then the IPv6 address of the host in
the x:x:x:x::x format. The :: notation specifies successive
hexadecimal fields of zero.
destination
address
Enter the IPv6 address of the network or host to which the
packets are sent in the x:x:x:x::x format then the prefix length
in the /x format. The range is from /0 to /128. The :: notation
specifies successive hexadecimal fields of zero.
message-type
(OPTIONAL) Enter an ICMP message type, either with the
type (and code, if necessary) numbers or with the name of
the message type. The range is from 0 to 255 for ICMP type
and from 0 to 255 for ICMP code.
IPv6 Access Control Lists (IPv6 ACLs)
669