1202 BigIron RX Series Configuration Guide
53-1002253-01
Configuring an IPv6 ACL
47
For TCP
Syntax: [no] ipv6 access-list <acl name>
Syntax: permit | deny <tcp>
<ipv6-source-prefix/prefix-length> | any | host <source-ipv6_address> [tcp-udp-operator
[source-port-number]]
<ipv6-destination-prefix/prefix-length> | any | host <ipv6-destination-address>
[tcp-udp-operator [destination-port- number]]
[ipv6-operator [<value>]]
[match-all <tcp flags>] | [match-any <tcp flags>] |established
[802.1p-priority-matching <number>]
[dscp-marking <number> 802.1p-priority-marking <number> internal-priority-marking
<number>]
[dscp-marking <dscp-value> dscp-cos-mapping]
[dscp-cos-mapping]
For UDP
Syntax: [no] ipv6 access-list <acl name>
Syntax: permit | deny <udp>
<ipv6-source-prefix/prefix-length> | any | host <source-ipv6_address> [tcp-udp-operator
[source port number]]
<ipv6-destination-prefix/prefix-length> | any | host <ipv6-destination-address>
[tcp-udp-operator [destination port number]]
[ipv6-operator [<value>]]
[802.1p-priority-matching <number>]
[dscp-marking <number> 802.1p-priority-marking <number> internal-priority-marking
<number>]
[dscp-marking <dscp-value> dscp-cos-mapping]
[dscp-cos-mapping]
TABLE 210 Syntax descriptions
Arguments... Description...
ipv6 access-list <acl name> Enables the IPv6 configuration level and defines the name of the IPv6 ACL.
The <acl name> can contain up to 199 characters and numbers, but cannot
begin with a number and cannot contain any spaces or quotation marks.
permit The ACL will permit (forward) packets that match a policy in the access list.
deny The ACL will deny (drop) packets that match a policy in the access list.
icmp Indicates the you are filtering ICMP packets.
protocol The type of IPv6 packet you are filtering. You can specify a well-known name
for some protocols whose number is less than 255. For other protocols, you
must enter the number. Enter “?” instead of a protocol to list the well-known
names recognized by the CLI. IPv6 protocols include:
• AHP – Authentication Header
• ESP – Encapsulating Security Payload
• IPv6 – Internet Protocol version 6
• SCTP – Stream Control Transmission Protocol