beautypg.com

For udp – Brocade FastIron Ethernet Switch Security Configuration Guide User Manual

Page 160

background image

[ 802.1p-priority-matching number ]

[ dscp-marking number 802.1p-priority-markingnumber internal-priority-marking number ]

[dscp-marking dscp-value dscp-cos-mapping ]

[dscp-cos-mapping ]

For UDP

Syntax: [no] ipv6 access-list ACL-name

{ permit | deny } udp

{ipv6-source-prefix/prefix-length | any | host source-ipv6_address [ tcp-udp-operator

[ source-port-number ]] ipv6-destination-prefix/prefix-length | any | host ipv6-destination-address }

[ tcp-udp-operator [ destination-port-number ]]

[ ipv6-operator [ value ]]

[ 802.1p-priority-matching number ]

[ dscp-marking number 802.1p-priority-markingnumber internal-priority-marking number ]

[dscp-marking dscp-value dscp-cos-mapping ]

[dscp-cos-mapping ]

Syntax descriptions

TABLE 13

IPv6 ACL
arguments

Description

ipv6 access-list
ACL name

Enables the IPv6 configuration level and defines the name of the IPv6 ACL. The ACL name
can contain up to 199 characters and numbers, but cannot begin with a number and cannot
contain any spaces or quotation marks.

permit

The ACL will permit (forward) packets that match a policy in the access list.

deny

The ACL will deny (drop) packets that match a policy in the access list.

icmp

Indicates the you are filtering ICMP packets.

protocol

The type of IPv6 packet you are filtering. You can specify a well-known name for some
protocols whose number is less than 255. For other protocols, you must enter the number.
Enter "?" instead of a protocol to list the well-known names recognized by the CLI. IPv6
protocols include

AHP - Authentication Header

ESP - Encapsulating Security Payload

IPv6 - Internet Protocol version 6

SCTP - Stream Control Transmission Protocol

For UDP

160

FastIron Ethernet Switch Security Configuration Guide

53-1003088-03