Users Guide

Total Ports: 4001
Example
An ACL rule with TCP port lt 1023 takes only one entry in the CAM:
Rule# Data Mask From To #Covered
1 0000000000000000 1111110000000000 0 1023 1024
Total Ports: 1024
Related Commands
deny – assigns a lter to deny IP trac.
deny udp – assigns a lter to deny UDP trac.
deny udp
Congure a lter to drop user datagram protocol (UDP) packets meeting the lter criteria.
Syntax
deny udp {source address mask | any | host ipv6-address} [operator port [port]]
{destination address | any | host ipv6-address} [operator port [port]] [count
[byte]] | [log] [monitor]
To remove this lter, you have two choices:
Use the no seq sequence-number command syntax if you know the lter’s sequence number
Use the no deny udp {source address mask | any | host ipv6-address}
{destination address | any | host ipv6-address} command
Parameters
source address Enter the IPv6 address of the network or host from which the packets were sent in the
x:x:x:x::x format followed by the prex length in the /x format. The range is /0 to /128.
The :: notation species successive hexadecimal elds of zero.
mask Enter a network mask in /prex format (/x).
any Enter the keyword any to specify that all routes are subject to the lter.
host ipv6-address Enter the keyword host followed by the IPv6 address of the host in the x:x:x:x::x format.
The :: notation species successive hexadecimal elds of zero.
operator (OPTIONAL) Enter one of the following logical operand:
eq = equal to
neq = not equal to
gt = greater than
lt = less than
range = inclusive range of ports (you must specify two ports for the port command
parameter).
228 Access Control Lists (ACL)