beautypg.com

Configuring a standard ipv6 acl – Brocade 6910 Ethernet Access Switch Configuration Guide (Supporting R2.2.0.0) User Manual

Page 947

background image

Brocade 6910 Ethernet Access Switch Configuration Guide

891

53-1002651-02

42

Access Control Lists

Configuring a Standard IPv6 ACL

Use the Security > ACL (Configure ACL - Add Rule - IPv6 Standard) page to configure a Standard
IPv6ACL.

CLI References

“permit, deny (Standard IPv6 ACL)”

on page 241

“show ipv6 access-list”

on page 243

“Time Range”

on page 101

Parameters
These parameters are displayed in the web interface:

Type – Selects the type of ACLs to show in the Name list.

Name – Shows the names of ACLs matching the selected type.

Action – An ACL can contain any combination of permit or deny rules.

Source Address Type – Specifies the source IP address. Use “Any” to include all possible
addresses, “Host” to specify a specific host address in the Address field, or “IPv6-Prefix” to
specify a range of addresses. (Options: Any, Host, IPv6-Prefix; Default: Any)

Source IPv6 Address – An IPv6 source address or network class. The address must be
formatted according to RFC 2373 “IPv6 Addressing Architecture,” using 8 colon-separated
16-bit hexadecimal values. One double colon may be used in the address to indicate the
appropriate number of zeros required to fill the undefined fields.

Source Prefix-Length – A decimal value indicating how many contiguous bits (from the left) of
the address comprise the prefix (i.e., the network portion of the address). (Range: 0-128 bits)

Time Range – Name of a time range.

Interface
To add rules to a Standard IPv6 ACL:

1. Click Security, ACL.

2. Select Configure ACL from the Step list.

3. Select Add Rule from the Action list.

4. Select IPv6 Standard from the Type list.

5. Select the name of an ACL from the Name list.

6. Specify the action (i.e., Permit or Deny).

7. Select the source address type (Any, Host, or IPv6-prefix).

8. If you select “Host,” enter a specific address. If you select “IPv6-prefix,” enter a subnet address

and the prefix length.

9. Click Apply.