[c-nsp] Filtering on sender IP#

Oliver Boehmer (oboehmer) oboehmer at cisco.com
Tue Apr 12 10:10:40 EDT 2005


Mikael Carlander <> wrote on Tuesday, April 12, 2005 4:06 PM:

> Is there any way of filtering on sender IP#?
> For example: If I want to minimise the impact on the router from
> illicit admin-connections (TCP-syn-flood) by blocking certain IP#, on
> line card level, from connecting to the router.

which router platform? IP Receive ACLs (7500+GSR in 12.0S) and
Control-Plane Policing (many other platforms and releases) do what you
want.

	oli



More information about the cisco-nsp mailing list