15
rule [ rule-id ] { deny |
permit } [ fragment | logging
| source { sour-addr
sour-wildcard | any } |
time-range
time-range-name ] *
Required
By default, an IPv4 basic
ACL does not contain any
rule.
To create or edit multiple
rules, repeat this step.
The logging keyword takes
effect only when the
module that uses the ACL
supports logging.
Configure or edit a rule
description
rule rule-id comment text
Optional
By default, an IPv4 ACL rule
has no rule description.
Configuring an IPv6 basic ACL
Follow these steps to configure an IPv6 basic ACL:
Create an IPv6 basic ACL
view and enter its view
acl ipv6 number
acl6-number [ name
acl6-name ] [ match-order
{ auto | config } ]
Required
By default, no ACL exists.
IPv6 basic ACLs are
numbered in the range 2000
to 2999.
You can use the acl ipv6
name acl6-name command
to enter the view of an
existing named IPv6 ACL.
Configure a description for
the IPv6 basic ACL
Optional
By default, an IPv6 basic
ACL has no ACL description.
Set the rule numbering step