[c-nsp] Dropping traffic based on source address

Jeff Kell jeff-kell at utc.edu
Fri Jul 1 14:25:22 EDT 2005


Arie Vayner wrote:

> Another point is to try and aggregate the 500K hosts to larger
> prefixes instead of having 500K host routes (which is like holding >3
> times the Internet routing table just for blocking...)

Yeah.. is there an ACL optimizer/aggregator around and open?  I know there's a ci$cowork$ plugin that I can't afford :-)

Jeff



More information about the cisco-nsp mailing list