permit (IPv6-ACL configuration)
S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m
permit (IPv6-ACL configuration)
To configure permit conditions for an IPv6 access control list (ACL), use the permit command in
IPv6-ACL configuration submode. To remove the conditions, use the no form of the command.
Syntax Description
ipv6-protocol-number
ipv6
source-ipv6-prefix/
prefix-length
any
host
source-ipv6-address
dest-ipv6-prefix/prefix-
length
host dest-ipv6-address
log-deny
Cisco MDS 9000 Family Command Reference
18-6
permit {ipv6-protocol-number | ipv6}
{source-ipv6-prefix/prefix-length | any | host source-ipv6-address}
{dest-ipv6-prefix/prefix-length | any | host dest-ipv6-address}
[log-deny]
permit icmp
{source-ipv6-prefix/prefix-length | any | host source-ipv6-address}
{dest-ipv6-prefix/prefix-length | any | host dest-ipv6-address}
[icmp-type [icmp-code]]
[log-deny]
permit tcp
{source-ipv6-prefix/prefix-length | any | host source-ipv6-address}
[source-port-operator source-port-number |
range source-port-number source-port-number]
{dest-ipv6-prefix/prefix-length | any | host dest-ipv6-address}
[dest-port-operator dest-port-number |
range dest-port-number dest-port-number]
[established] [log-deny]
permit udp
{source-ipv6-prefix/prefix-length | any | host source-ipv6-address}
[source-port-operator source-port-number |
range source-port-number source-port-number]
{dest-ipv6-prefix/prefix-length | any | host dest-ipv6-address}
[dest-port-operator dest-port-number |
range dest-port-number dest-port-number]
[log-deny]
no permit {ipv6-protocol-number | ipv6 | icmp | tcp | udp}
Specifies an IPv6 protocol number. The range is 0 to 255.
Applies the ACL to any IPv6 packet.
Specifies a source IPv6 network or class of networks. The format is
X:X:X::X/n.
Applies the ACL to any source or destination prefix.
Applies the ACL to the specified source IPv6 host address. The format is
X:X:X::X.
Specifies a destination IPv6 network or class of networks. The format is
X:X:X::X/n.
Applies the ACL to the specified destination IPv6 host address. The format
is X:X:X::X.
For packets that are dropped, creates an informational log message about the
packet that matches the entry. The message includes the input interface.
Chapter 18
P Commands
OL-8413-07, Cisco MDS SAN-OS Release 3.x