I don't seem to be able to drop protocol 58 (ICMPv6) without declaring an ICMPv6 type, which we don't want.
Our existing ACL looks like this:
ip access-list extended ICMPv6-Specific
ipv6 permit icmpv6 any any no-route-to-dest
ipv6 permit icmpv6 any any packet-too-big
ipv6 permit icmpv6 any any hop-limit-exceeded
ipv6 permit icmpv6 any any header-field-error
ipv6 permit icmpv6 any any rtr-solicitation
ipv6 permit icmpv6 any any rtr-adv
ipv6 permit icmpv6 any any nb-solicitation
ipv6 permit icmpv6 any any nb-adv
ipv6 permit icmpv6 any any echo-request
!
I tried "ipv6 deny icmpv6 any any", but I get an error of incomplete command - it seems to want a specific type, but I want to drop all types at this stage in the ACL. I also tried "ipv6 deny 58 any any" and I get another error message Invalid ICMPv6 message (null).