Chapter4ServiceConguration
Guidelines
Anyrulecanmatchether-typeeld,coseld,VLANeld,source-speciedMAC,any
sourceMAC,destination-speciedMACandanydestinationMAC.
4.13.32ingress-aclhybridruletype-ipv6-ip-protocol
Purpose
ThiscommandsetstherulethatthehybridingressACLmatchesthepacketwith
IPv6-speciedeld.
CommandMode
HybridingressACLcongurationmode
Syntax
rule<1-500>{permit|deny}ipv6<ip-protocol>{<source-ipv6addr><sipv6-mask>|any}{<desti
nation-ipv6addr><dipv6-mask>|any}[<vlan-id>]
ParameterDescription
ParameterDescription
<1-500>Rulenumber.
permitIftheconditionmatches,accessispermitted.
denyIftheconditionmatches,accessisdenied.
ipv6
ThisruleonlymatchesIPv6message.Thenon-IPv6message
ignorethisrule.
<ip-protocol>
ThisruleisonlyvalidformessageswiththespeciedIPprotocol
eld.Ignorethisruleforothermessages.TherangeofIPprotocol
eldvalueis0to255.
<source-ipv6addr>
IPv6Sourcenetworkorhostofthetransmittedpackage.The
standardIPv6addressformatisused,suchasabcd:EF12::1234.
<sipv6-mask>
Sourcemaskandusedforsource.Itisexpressedbyaninteger.
Therangeis1to128.
any(rst)
MatchesallsourceIPv6addresses,sourceandsourcemaskare
all0s.
<destination-ipv6addr>
ThedestinationnetworkorhostaddressofthetransmittedIPv6
packet.ThestandardIPv6addressformatisused,suchas
abcd:EF12::1234
<dipv6-mask>
Destinationmask.Itisusedfordestinationandrepresentedby
oneinteger.Thevaluerangeis1to128.
4-243
SJ-20131111172707-003|2013-11-27(R1.0)ZTEProprietaryandCondential