684 IPv6 Access Control List Commands
list replaces the currently attached IPv6 access list using that sequence number. If
the sequence number is not specified for this command, a sequence number that
is one greater than the highest sequence number currently in use for this interface
and direction is used.
This command specified in Interface Config mode only affects a single interface,
whereas the Global Config mode setting is applied to all interfaces. The
vlan
keyword is only valid in the Global Config mode.
An optional control-plane is specified to apply the ACL on CPU port. The IPv6
control packets like IGMPv6 are also dropped because of the implicit deny all
rule added at the end of the list. To overcome this, permit rules must be added to
allow the IPv6 control packets.
The keyword control-plane is only available in Global Config mode.
The following shows an example of the command.
(CN1610)(Config)#ipv6 traffic-filter ip61 control-plane
no ipv6 traffic-filter This command removes an IPv6 ACL identified by name from the interface(s) in
a given direction.
The following shows an example of the command.
(CN1610) (Config)#no ipv6 traffic-filter ip61 control-plane
Format
ipv6 traffic-filter
name
{{control-plane |in|out}|vlan
vlan-id
{in|out}} [sequence
1-4294967295
]
Modes ◆ Global Config
◆ Interface Config
Format
no
ipv6 traffic-filter
<name{{control-plane | in |
out} | vlan <vlan-id> {in|out}}
Modes ◆ Global Config
◆ Interface Config