Operation Manual (For Soliton) – ACLH3C S3100 Series Ethernet Switches Chapter 1 ACL Configuration1-10 system-view[Sysname] acl number 4000[Sysname-acl-ethernetframe-4000] rule deny cos 3 source 000d-88f5-97edffff-ffff-ffff dest 0011-4301-991e ffff-ffff-ffff# Display the configuration information of ACL 4000.[Sysname-acl-ethernetframe-4000] display acl 4000Ethernet frame ACL 4000, 1 ruleAcl's step is 1rule 0 deny cos excellent-effort source 000d-88f5-97ed ffff-ffff-ffff dest0011-4301-991e ffff-ffff-ffff1.2.5 Configuring an IPv6 ACLYou can match IPv6 packets by IPv6 ACLs to process IPv6 data flows as required.S3100 Series Ethernet switches support matching the following fields:z dscp: Matches the traffic class field in IPv6 packets.z ip-protocol: Matches the next header field in IPv6 packets.z src-ip: Matches the source address field in IPv6 packets.z dest-ip: Matches the destination address field in IPv6 packets.z src-port: Matches the TCP/UDP source port field in IPv6 packets.z dest-port: Matches the TCP/UDP destination port field in IPv6 packets.z icmpv6-type: Matches the ICMPv6 type field in IPv6 packets.z icmpv6-code: Matches the ICMPv6 code field in IPv6 packets.Note:For information about the IPv6 packet format, refer to IPv6 Management Operation.Before applying an IPv6 ACL, be sure to configure an IPv6 ACL template to specify thefields to be matched. Also make sure that the contents of the IPv6 ACL are a subset ofthe contents of the template. Otherwise, you cannot apply the IPv6 ACL to thehardware.I. Configuration prerequisitesz To configure time range-based IPv6 ACL rules, you need to create thecorresponding time ranges first. For information about time range configuration,refer to section 1.2.1 Configuring Time Range.z The settings to be specified in the rule are determined.