On 01-Mar-15 12:14 PM, Mark Tinka wrote: > Having said all that, I have the explicit "allow-all" at the end of the > ACL. That should cover ND passing anyway, non?
> This is the ACL: > > ipv6 access-list filter-outgoing6 > deny ipv6 any 3FFE::/16 > deny ipv6 any 2001:DB8::/32 > deny ipv6 any FE00::/9 > deny ipv6 any FF00::/8 > sequence 65535 permit ipv6 any any Hmm, isn't ND on FF02::x ? deny ipv6 any FF00::/8 would cover that... Dumitru _______________________________________________ cisco-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/
