Chapter2ACLConguration
time-range
<timerange-name>
Timerangename,notmorethan16
characters
event<event-name>
Eventlistname,notmorethan16characters
Instructions�Whenthetime-rangeeldisnotcongured,thenthisrulewill
beeffectivepermanently.Thetimerangecommandmustbe
conguredrstlybeforetheuseofthetime-rangeeld.
�Thiscommandalsohaseditfunction,andtheediteldincludes
theactioneld,sourceIPeld,etc.
�ACLruleeventlistisonlysupportedinT160Gseriesswitches.
ExampleThisexampledescribeshowtocongure/editIpv6standardACL
rule1and10.
ZXR10(config)#ipv6aclstandardnumber1
ZXR10(config-std-v6acl)#rule1permit1030::C9B4:FF12:48AA:1A2B/60
ZXR10(config-std-v6acl)#rule1deny1030::C9B4:FF12:48AA:1A2B/60
ZXR10(config-std-v6acl)#rule10permit1030::1000/90time-rangetest
Related
Commands
showipv6acl
time-range
event-list
rule(IPv6ExtendedFormat)
PurposeUsethiscommandtodeneanIPv6extendedACLrule.Remove
therulewiththenoformofthiscommand.
CommandModesIPv6ExtendedACLconguration
Syntaxrule<1-maxRuleNo>{permit|deny}<protocol>{<source/prefi
x>|any}{<destination/prefix>|any}[{time-range<timerange
-name>|event<event-name>}]
norule<1-maxRuleNo>
Syntax
Description
<1-maxRuleNo>ACLrulenumber ,range:1~100(switch
router),1~1000(router)
permitPermitsthepacketthatmatchesthisrule
denyDeniesthepacketthatmatchesthisrule
<protocol>Protocoltypetobematched,ICMP ,IP ,TCP
andUDP;anintegerthatstandsfortheIP
protocolnumber(0~254)
<source/prefix>IPaddress/prexlengthofthesourcetobe
matched,inhexadecimalformat
<destination/prefix>IPaddress/prexlengthofthedestinationto
bematched,inhexadecimalformat
any
AnyIPaddress
CondentialandProprietaryInformationofZTECORPORATION33