Send comments to nx5000-docfeedback@cisco.com
6-25
Cisco Nexus 5000 Series Command Reference
OL-16599-01
Chapter 6 Security Commands
deny (IPv6)
deny (IPv6)
To create an IPv6 ACL rule that denies traffic matching its conditions, use the deny command. To
remove a rule, use the no form of this command.To create an IPv6 ACL rule that denies traffic matching
its conditions, use the deny command. To remove a rule, use the no form of this command.
General Syntax
[sequence-number] deny protocol source destination [dscp dscp] [flow-label flow-label-value]
[fragments] [log] [time-range time-range-name]
no deny protocol source destination [dscp dscp] [flow-label flow-label-value] [fragments] [log]
[time-range time-range-name]
no sequence-number
Internet Control Message Protocol
[sequence-number | no] deny icmp source destination [icmp-message] [dscp dscp]
[flow-label flow-label-value] [fragments] [log] [time-range time-range-name]
Internet Protocol v6
[sequence-number] deny ipv6 source destination [dscp dscp] [flow-label flow-label-value]
[fragments] [log] [time-range time-range-name]
Stream Control Transmission Protocol
[sequence-number | no] deny sctp source [operator port [port] | portgroup portgroup] destination
[operator port [port] | portgroup portgroup] [dscp dscp] [flow-label flow-label-value]
[fragments] [log] [time-range time-range-name]
Transmission Control Protocol
[sequence-number] deny tcp source [operator port [port] | portgroup portgroup] destination
[operator port [port] | portgroup portgroup] [dscp dscp] [flow-label flow-label-value]
[fragments] [log] [time-range time-range-name] [flags] [established]
User Datagram Protocol
[sequence-number | no] deny udp source [operator port [port] | portgroup portgroup] destination
[operator port [port] | portgroup portgroup] [dscp dscp] [flow-label flow-label-value]
[fragments] [log] [time-range time-range-name]