beautypg.com

Displaying ipv6 acl definitions – Brocade Multi-Service IronWare Security Configuration Guide (Supporting R05.6.00) User Manual

Page 223

background image

Multi-Service IronWare Security Configuration Guide

205

53-1003035-02

Displaying IPv6 ACL definitions

4

NOTE

This example has accounting enabled, which is not required for Brocade NetIron XMR and Brocade
MLX series devices.

access-list 418 deny enable-accounting 2001.1000.1011 ffff.ffff.ffff

2002.1000.1011 ffff.ffff.ffff any etype ipv6

access-list 418 deny enable-accounting 2001.1000.1012 ffff.ffff.ffff

2002.1000.1012 ffff.ffff.ffff any etype ipv6

access-list 418 deny enable-accounting 2001.1000.1013 ffff.ffff.ffff

2002.1000.1023 ffff.ffff.ffff any etype ipv6 log

access-list 418 deny 2001.1000.1031 ffff.ffff.ffff 2002.1000.1031 ffff.ffff.ffff

any etype ipv6 log

access-list 418 permit any any any etype ipv6 drop-precedence 2

!

!

access-list 498 permit 0000.0030.0310 ffff.ffff.ffff 0000.0030.0010

ffff.ffff.ffff 1010 etype ipv6 drop-precedence-force 1

access-list 498 permit 0000.0030.0311 ffff.ffff.ffff 0000.0030.0111

ffff.ffff.ffff 1011 etype ipv6 priority 3

access-list 498 permit 0000.0030.0312 ffff.ffff.ffff 0000.0030.0212

ffff.ffff.ffff any etype ipv6 priority-force 5

access-list 498 permit 0000.0030.0313 ffff.ffff.ffff 0000.0030.0213

ffff.ffff.ffff any etype ipv6 priority-mapping 6

access-list 498 deny any any any etype ipv6 log

!

mac access-list L2-498-sample4

permit 0000.0030.0310 ffff.ffff.ffff 0000.0030.0010 ffff.ffff.ffff 1010 etype

ipv6 drop-precedence-force 1

permit 0000.0030.0311 ffff.ffff.ffff 0000.0030.0111 ffff.ffff.ffff 1011 etype

ipv6 priority 3

permit 0000.0030.0312 ffff.ffff.ffff 0000.0030.0212 ffff.ffff.ffff any etype ipv6

priority-force 5

permit 0000.0030.0313 ffff.ffff.ffff 0000.0030.0213 ffff.ffff.ffff any etype ipv6

priority-mapping 6

deny any any any etype ipv6 log

Displaying IPv6 ACL definitions

To display the IPv6 ACLs configured on a Brocade device, use the show ipv6 access-list command.

To display the total number of IPv6 access lists and the number of filters configured for each list,
use the show ipv6 access-list count command.

Brocade(config)# show ipv6 access-list count

Total 4 IPv6 ACLs exist.

IPv6 ACL cust1, total 10 clauses

IPv6 ACL cust2, total 15 clauses

IPv6 ACL cust3, total 12 clauses

IPv6 ACL cust4, total 3 clauses

To display information about a specific IPv6 ACL table, you can enter a command such as the
following.

Brocade# show ipv6 access-list rtr