[c-nsp] Sup720 CoPP, limits on CPU performance

Gert Doering gert at greenie.muc.de
Wed Mar 24 10:13:00 EDT 2010


Hi,

On Wed, Mar 24, 2010 at 01:18:47PM +0000, Dobbins, Roland wrote:
> Note that the default gateway will be drawn from the access netblockss, not the infrastructure netblocks covered by  the iACL.

Now we're talking.  I assumed that you wanted to include *all* IP addresses
configured on routers in the iACL - and that's quite impractical.

... and this is why I want "properly-implemented" rACLs and/or CoPP, to
protect those IP addresses that can't be put in iACLs.

gert
-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             gert at greenie.muc.de
fax: +49-89-35655025                        gert at net.informatik.tu-muenchen.de
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 305 bytes
Desc: not available
URL: <https://puck.nether.net/pipermail/cisco-nsp/attachments/20100324/4070e35c/attachment.bin>


More information about the cisco-nsp mailing list