[c-nsp] matched ACL - counters not updating

Aaron Riemer ariemer at wesenergy.com.au
Thu Jul 2 22:38:35 EDT 2009


It is a 6500 with a SUP2 however other extended ACL's are showing
matches with each ACE.

The traffic must be traversing this interface as it is the only way to
route out the subnet.

Cheers, 


Aaron.

-----Original Message-----
From: cisco-nsp-bounces at puck.nether.net
[mailto:cisco-nsp-bounces at puck.nether.net] On Behalf Of Roland Dobbins
Sent: Friday, 3 July 2009 10:04 AM
To: Cisco-nsp
Subject: Re: [c-nsp] matched ACL - counters not updating


On Jul 3, 2009, at 8:48 AM, Aaron Riemer wrote:

> The permit ip any any shows matches as normal. What am I missing here?

If this is a 6500 with an older Sup2, note that ACL counters aren't  
supported.

How do you *know* that traffic matching the ACL stanza in question is  
actually traversing the relevant interface(s)?

-----------------------------------------------------------------------
Roland Dobbins <rdobbins at arbor.net> // <http://www.arbornetworks.com>

         Unfortunately, inefficiency scales really well.

		   -- Kevin Lawton

_______________________________________________
cisco-nsp mailing list  cisco-nsp at puck.nether.net
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

LEGAL DISCLAIMER: This message contains confidential information and is intended only for the individual named. If you are not the named addressee you should not disseminate, distribute or copy this e-mail. Please notify the sender immediately by e-mail if you have received this e-mail by mistake and delete this e-mail from your system. If you are not the intended recipient you are notified that disclosing, copying, distributing or taking any action in reliance on the contents of this information is strictly prohibited.


More information about the cisco-nsp mailing list