Reference Guide

any — (Optional) Enter for all routes to be subject to the lter:
capture — (Optional) Capture packets the lter processes.
count — (Optional) Count packets the lter processes.
byte — (Optional) Count bytes the lter processes.
dscp value — (Optional) Deny a packet based on the DSCP values, from 0 to 63.
fragment — (Optional) Use ACLs to control packet fragments.
eq — (Optional) Deny packets which are equal to.
ack — (Optional) Set the bit as acknowledgement.
fin — (Optional) Set the bit as nish—no more data from sende).
psh — (Optional) Set the bit as push.
rst — (Optional) Set the bit as reset.
syn — (Optional) Set the bit as synchronize.
urg — (Optional) Set the bit set as urgent.
host ipv6-address — (Optional) Enter the keyword and the IPv6 address to use a host address only.
Default Not congured
Command Mode IPV6-ACL
Usage Information OS10 cannot count both packets and bytes; when you use the count byte options, only bytes increment. The
no version of this command removes the lter.
Example
OS10(config)# ipv6 access-list ipv6test
OS10(conf-ipv6-acl)# deny udp any any capture session 1 count
Supported Releases 10.2.0E or later
description
Congures an ACL description.
Syntax
description text
Parameters text — Enter the description text string. A maximum of 80 characters.
Default Disabled
Command Modes IPV4-ACL, IPV6-ACL, MAC-ACL
Usage Information The no version of this command deletes the ACL description.
Example
OS10(conf-ipv4-acl)# description ipacltest
Supported Releases 10.2.0E or later
ip access-group
Assigns an IP access group to an interface.
Syntax
ip access-group access-list-name {in | out}
Parameters
access-list-name — Enter the name of an IPv4 access list. A maximum of 140 characters.
424 Access Control Lists