Displaying and maintaining ipv6 pbr configuration, Ipv6 pbr configuration examples, Configuring ipv6 local pbr based on packet type – H3C Technologies H3C SecPath F1000-E User Manual
Page 860: Network requirements
835
Displaying and maintaining IPv6 PBR configuration
Task Command
Remarks
Display the specified IPv6 PBR routing
information.
display ipv6 policy-based-route setup
{ policy-name | interface interface-type
interface-number | local } [ | { begin | exclude
| include } regular-expression ]
Available in any
view
Display IPv6 PBR statistics.
display ipv6 policy-based-route statistics
{ interface interface-type interface-number |
local } [ | { begin | exclude | include }
regular-expression ]
Available in any
view
Display IPv6 PBR policy information.
display ipv6 config policy-based-route
[ policy-name ] [ | { begin | exclude | include }
regular-expression ]
Available in any
view
Clear IPv6 PBR statistics.
reset ipv6 policy-based-route statistics
Available in user
view
NOTE:
•
If a policy has a node with no if-match or apply clause configured, all packets can pass the policy and
will not go to the next policy node for a match. The statistics of IPv6 PBR will be changed.
•
If a policy node has if-match clauses but no apply clauses configured, packets will match against these
if-match clauses. However, no apply clauses are applicable to the permitted packets, and the packets
will not go to the next node for a match. The statistics of IPv6 PBR will be changed.
•
If a policy node has no if-match clause but apply clauses configured, all packets can pass the policy,
and then are forwarded according to the apply clauses if the permit keyword is specified for the node,
or are denied if the deny keyword is specified. The packets will not go to the next policy node for a
match. The statistics of IPv6 PBR will be changed.
•
If the match mode of a policy node is deny, no apply clauses will be executed for packets satisfying all
the if-match clauses, and the packets will not go to the next policy node for a match. They will be
forwarded according to the routing table instead. Neither debugging information nor statistics for the
deny match mode can be displayed.
IPv6 PBR configuration examples
Configuring IPv6 local PBR based on packet type
Network requirements
As shown in
, configure PBR on SecPath A, so that all TCP packets are forwarded via
GigabitEthernet 0/1 and other IPv6 packets are forwarded according to the routing table.
SecPath A is directly connected to SecPath B and SecPath C. SecPath B and SecPath C are unreachable
to each other.
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS H3C SecBlade LB Cards H3C SecPath L1000-A Load Balancer