[[nsp] ACLs]

Florian Weimer Weimer at CERT.Uni-Stuttgart.DE
Fri Feb 28 20:18:33 EST 2003


"Shalosky, Brian K Mr CONT USAREC" <Brian.Shalosky at usarec.army.mil> writes:

>  Note   The first command of an edited access list file should delete the
> previous access list (for example, type a no access-list command at the
> beginning of the file).

If you do this, there is a time window during which the router
forwards more packets than it should.

Has anybody found an approach which avoids this effect?

-- 
Florian Weimer 	                  Weimer at CERT.Uni-Stuttgart.DE
University of Stuttgart           http://CERT.Uni-Stuttgart.DE/people/fw/
RUS-CERT                          fax +49-711-685-5898


More information about the cisco-nsp mailing list