UMN:CLI User ManualV8102286no deny ipv6 {host X:X::X:X |X:X::X:X/M | any} mac patternWORD offset <0-5>host: sender hostMACADDR: sender MAC addressX:X::X:X: start/end IPv6 address of senderX:X::X:X/M: sender IPv6 network addressno deny ipv6 range X:X::X:XX:X::X:X mac anyBy the following command, the ND access list also refers to a DHCP snooping bindingtable to permit the ND packets for DHCP users. This feature enables the system to permitND packets only for the IPv6 addresses on the DHCP snooping binding table. The NDaccess list with the DHCP snooping allows IP communications to users authorized by theDHCP snooping. The source IP address and MAC address of each packet are checkedagainst the table, and if a valid match is not found, the packet is dropped.To permit/discard ND packets for the users authorized by the DHCPv6 snooping, use thefollowing command.Command Mode Descriptionpermit dhcpv6-snoop-inspectionND-ACLPermits ND packets of users authorized by theDHCPv6 snooping.no permit dhcpv6-snoop-inspectionDiscards the configured ND packets of users author-ized by the DHCPv6 snooping.To display the configured ND access lists, use the following command.Command Mode Descriptionshow ipv6 nd access-list[NAME] Global Displays the existing ND access lists.8.2.10.2 Enabling ND Inspection FilteringTo enable/disable the ND inspection filtering of a certain range of IPv6 addresses fromthe ND access list, use the following command.Command Mode Descriptionipv6 nd inspection filter NAMEvlan VLANS GlobalEnables ND inspection filtering with the configured NDaccess list on the VLAN.NAME: ND access list nameno ipv6 nd inspection filterNAME vlan VLANSDisables ND inspection filtering with a configured NDaccess list on specified VLAN.ND inspection actually runs in the system after the configured ND access list applies tospecific VLAN ID using the ip nd inspection filter command.i