EasyManuals Logo

HP 5900 Configuration Guide

HP 5900
108 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #13 background imageLoading...
Page #13 background image
7
Ste
p
Command Remarks
2. Create an IPv6 advanced ACL
and enter its view.
acl ipv6 number acl-number
[ name acl-name ] [ match-order
{ auto | config } ]
By default, no ACL exists.
IPv6 advanced ACLs are
numbered in the range of 3000 to
3999.
You can use the acl ipv6 name
acl-name command to enter the
view of a named ACL.
3. (Optional.) Configure a
description for the IPv6
advanced ACL.
description text
By default, an IPv6 advanced ACL
has no ACL description.
4. (Optional.) Set the rule
numbering step.
step step-value The default setting is 5.
5. Create or edit a rule.
rule [ rule-id ] { deny | permit }
protocol [ { { ack ack-value | fin
fin-value | psh psh-value | rst
rst-value | syn syn-value | urg
urg-value } * | established } |
counting | destination
{ dest-address dest-prefix |
dest-address/dest-prefix | any } |
destination-port operator port1
[ port2 ] | dscp dscp | flow-label
flow-label-value | fragment |
icmp6-type { icmp6-type
icmp6-code | icmp6-message } |
logging | routing [ type
routing-type ] | source
{ source-address source-prefix |
source-address/source-prefix |
any } | source-port operator port1
[ port2 ] | time
-range
time-range-name | vpn-instance
vpn-instance-name ] *
By default, IPv6 advanced ACL
does not contain any rule.
The logging keyword takes effect
only when the module (for
example, packet filtering) that uses
the ACL supports logging.
When an ACL is used for QoS
traffic classification or packet
filtering, the ACL does not support
the vpn-instance or fragment
keyword, and does not support the
operator neq. If an ACL is used for
QoS traffic classification or packet
filtering in the outbound direction,
the ACL also does not support the
flow-label keyword.
If an ACL is configured to match the
inner content of an IPv6 extended
header, the ACL cannot match the
packets which has an extended
header of more than two layers or
has the Encapsulating Security
Payload Header.
6. (Optional.) Add or edit a rule
comment.
rule rule-id comment text
By default, no rule comments are
configured.
Configuring an Ethernet frame header ACL
Ethernet frame header ACLs, also called "Layer 2 ACLs," match packets based on Layer 2 protocol
header fields, such as source MAC address, destination MAC address, 802.1p priority (VLAN priority),
and link layer protocol type.
To configure an Ethernet frame header ACL:
Ste
p
Command Remarks
1. Enter system view.
system-view N/A

Table of Contents

Other manuals for HP 5900

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HP 5900 and is the answer not in the manual?

HP 5900 Specifications

General IconGeneral
ModelHP 5900
Rack MountableYes
MAC Address Table Size128K
Jumbo Frame SupportYes
Routing ProtocolOSPF, BGP, RIP, IS-IS, IGMP
Remote Management ProtocolSNMP, CLI
FeaturesQuality of Service (QoS), Jumbo Frames support, IPv4 support, IPv6 support
Operating Temperature0 °C to 45 °C
Operating Humidity10% to 90% non-condensing
Power SupplyInternal power supply - hot-plug / redundant

Related product manuals