|
ahp , esp , icmp , ipv6 , pcp , stcp , TCP , or UDP , or an integer in the range 0 to 255 representing an IPv6 protocol number.
|
Provide any supported IPv6 protocols.
|
|
source-ipv6-prefix/prefix-length or destination-ipv6-prefix/ prefix-length
|
Provide the source or destination IPv6 network or class of networks for which to set deny or permit conditions, specified
in hexadecimal and using 16-bit values between colons (see RFC 2373)
|
|
any
|
Provide an abbreviation for the IPv6 prefix ::/0
|
|
host
source-ipv6-address or destination-ipv6-address
|
Specify the source or destination IPv6 host address for which to set deny or permit conditions.
Specify the values in hexadecimal using 16-bit values between colons.
|
|
lt (less than), gt (greater than), eq (equal), neq (not equal), and range
|
These are the supported operators. Specify an operand that compares the source or destination ports of the specified protocol.
These are optional parameters.
|
|
source-ipv6-prefix/prefix-length destination-ipv6- prefix/prefix-length
|
Provide the port. If the operator follows the source-ipv6-prefix/prefix-length argument, it must match the source port. If the operator follows the destination-ipv6- prefix/prefix-length argument, it must match the destination port.
|
|
port-number
|
Provide any decimal number from 0 to 65535 or the name of a TCP or UDP port. You can use TCP port names only when filtering
TCP. You can use UDP port names only when filtering UDP.
It is an optional parameter.
|
|
dscp
|
Specify a value to match a differentiated services code point value against the traffic class value in the Traffic Class field
of each IPv6 packet header. The acceptable range is from 0 to 63.
It is an optiional parameter.
|
|
fragments
|
Specify to check noninitial fragments. This keyword is visible only if the protocol is ipv6.
It is an optiional parameter.
|
|
log log-input
|
Specify to cause a logging message to be sent to the console about the packet that matches the entry. Enter log-input to include the input interface in the log entry. Logging is supported only for router ACLs.
It is an optiional parameter.
|
|
sequence
value
|
Specify the sequence number for the access list statement. The acceptable range is from 1 to 4,294,967,295.
It is an optiional parameter.
|
|
time-range
|
Specify a name to enter the time range that applies to the deny or permit statement.
It is an optiional parameter.
|