R0106-HP MSR Router Series ACL and QoS Command Reference(V7)

28
permit: Allows matching packets to pass.
protocol: Specifies one of the following values:
A protocol number in the range of 0 to 255.
A protocol by its name: gre (47), icmpv6 (58), ipv6, ipv6-ah (51), ipv6-esp (50), ospf (89), tcp (6),
or udp (17) . The ipv6 keyword specifies all protocols.
Table 10 de
scribes the parameters that you can specify regardless of the value for the protocol argument.
Table 10 Match criteria and other rule information for IPv6 advanced ACL rules
Parameters Function Descri
p
tion
source
{ source-address
source-prefix |
source-address/so
urce-prefix | any }
Specifies a source IPv6
address.
The source-address argument specifies an IPv6 source
address.
The source-prefix argument specifies a prefix length in the
range of 1 to 128.
The any keyword represents any IPv6 source address.
destination
{ dest-address
dest-prefix |
dest-address/dest-
prefix | any }
Specifies a destination IPv6
address.
The dest-address argument specifies a destination IPv6
address.
The dest-prefix argument specifies a prefix length in the
range of 1 to 128.
The any keyword represents any IPv6 destination address.
counting
Counts the number of times
the IPv6 advanced ACL rule
has been matched.
The counting keyword enables match counting specific to
rules. If the counting keyword is not specified, matches for
the rule are not counted.
dscp dscp
Specifies a DSCP
preference.
The dscp argument can be a number in the range of 0 to
63, or in words, af11 (10), af12 (12), af13 (14), af21
(18), af22 (20), af23 (22), af31 (26), af32 (28), af33
(30), af41 (34), af42 (36), af43 (38), cs1 (8), cs2 (16), cs3
(24), cs4 (32), cs5 (40), cs6 (48), cs7 (56), default (0), or
ef (46).
flow-label
flow-label-value
Specifies a flow label value
in an IPv6 packet header.
The flow-label-value argument is in the range of 0 to
1048575.
fragment
Applies the rule to only
non-first fragments.
If you do not specify this keyword, the rule applies to all
fragments and non-fragments.
logging Logs matching packets.
This function requires that the module (for example, packet
filtering) that uses the ACL supports logging.
routing [ type
routing-type ]
Specifies routing header
types.
routing-type: Value of the routing header type, in the range
of 0 to 255.
If you specify the type routing-type option, the rule applies
to the specified type of routing header. Otherwise, the rule
applies to any type of routing header.
hop-by-hop [ type
hop-type ]
Specifies a Hop-by-Hop
Options header type.
hop-type: Value of the Hop-by-Hop Options header type,
in the range of 0 to 255.
If you specify the type hop-type option, the rule applies to
the specified type of Hop-by-Hop Options header.
Otherwise, the rule applies to any type of Hop-by-Hop
Options header.