HP Moonshot-45XGc Betriebsanweisung Seite 31

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 124
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 30
26
Syntax
rule [ rule-id ] { deny | permit } protocol [ { { ack ack-value | fin fin-value | psh psh-value | rst rst-value
| syn syn-value | urg urg-value } * | established } | counting | destination { dest-address dest-prefix |
dest-address/dest-prefix | any } | destination-port operator port1 [ port2 ] | dscp dscp | flow-label
flow-label-value | fragment | icmp6-type { icmp6-type icmp6-code | icmp6-message } | logging |
routing [ type routing-type ] | hop-by-hop [ type hop-type ] | source { source-address source-prefix |
source-address/source-prefix | any } | so
urce-port operator port1 [ port2 ] | time-range
time-range-name | vpn-instance vpn-instance-name ] *
undo rule rule-id [ { { ack | fin | psh | rst | syn | urg } * | established } | counting | destination |
destination-port | dscp | flow-label | fragment | icmp6-type | logging | routing | hop-by-hop |
source | source-port | time-range | vpn-instance ] *
Default
An IPv6 advanced ACL does not contain any rule.
Views
IPv6 advanced ACL view
Predefined user roles
network-admin
Parameters
rule-id: Specifies a rule ID in the range of 0 to 65534. If you do not specify a rule ID when creating an
ACL rule, the system automatically assigns it a rule ID. This rule ID is the nearest higher multiple of the
numbering step to the current highest rule ID, starting from 0. For example, if the rule numbering step is
5 and the current highest rule ID is 28, the rule is numbered 30.
deny: Denies matching packets.
permit: Allows matching packets to pass.
protocol: Specifies a protocol number in the range of 0 to 255, or specifies a protocol by its name, gre
(47), icmpv6 (58), ipv6, ipv6-ah (51), ipv6-esp (50), ospf (89), tcp (6), or udp (17). The ipv6 keyword
specifies all protocols.
You can set the protocol argument to one of the values in Table 11 to
match packets with the
corresponding IPv6 extended header.
Table 11 Protocol values of IPv6 extended headers
Value of the
p
rotoco
l
ar
g
ument IPv6
extended header
0 Hop-by-Hop Options Header.
43 Routing Header.
44 Fragment Header.
50 Encapsulating Security Payload Header.
51 Authentication Header.
60 Destination Options Header.
Table 12 describes the parameters that you can specify regardless of the value for the protocol argument.
Seitenansicht 30
1 2 ... 26 27 28 29 30 31 32 33 34 35 36 ... 123 124

Kommentare zu diesen Handbüchern

Keine Kommentare