F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices Access Control Command Reference-6PW100

4
dest-acl-number: Assigns a unique number to the ACL you are creating. This number must be from the
same ACL category as the source ACL. Available value ranges include:
2000 to 2999 for IPv4 basic ACLs
3000 to 3999 for IPv4 advanced ACLs
4000 to 4999 for Ethernet frame header ACLs
name dest-acl-name: Assigns a unique name to the ACL you are creating. The dest-acl-name takes a
case-insensitive string of 1 to 63 characters. It must start with an English letter, and to avoid confusion, it
cannot be all. For this ACL, the system automatically picks the smallest number from all available
numbers in the same ACL category as the source ACL.
Usage guidelines
You can assign a name to an ACL only when you create it. After an ACL is created with a name, you
cannot rename it or remove its name.
Examples
# Create IPv4 basic ACL 2002 by copying IPv4 basic ACL 2001.
<Sysname> system-view
[Sysname] acl copy 2001 to 2002
acl ipv6
Use acl ipv6 to create an IPv6 basic or IPv6 advanced ACL, and enter its ACL view. If the ACL has been
created, you directly enter its view.
Use undo acl ipv6 to delete the specified ACLs.
Syntax
acl ipv6 number acl6-number [ name acl6-name ] [ match-order { auto | config } ]
undo acl ipv6 { all | name acl6-name | number acl6-number }
Default
No ACL exists.
Views
System view
Default command level
2: System level
Parameters
number acl6-number: Specifies the number of an ACL:
2000 to 2999 for IPv6 basic ACLs
3000 to 3999 for IPv6 advanced ACLs
name acl6-name: Assigns a name to the ACL for easy identification. The acl6-name argument takes a
case-insensitive string of 1 to 63 characters. It must start with an English letter and to avoid confusion, it
cannot be all.
match-order: Sets the order in which ACL rules are compared against packets:
auto: Compares ACL rules in depth-first order. The depth-first order differs with ACL categories. For
more information, see Access Control Configuration Guide.