[c-nsp] Modern BGP peering border router and DDoS attack defense recommendations?

Gert Doering gert at greenie.muc.de
Sat Jun 11 09:11:11 EDT 2005


Hi,

On Sat, Jun 11, 2005 at 12:33:12PM +1000, David J. Hughes wrote:
> before it made it to the 7200.  They did the job very well.  We have 
> since upgraded them to 3550s for the more flexible L3 ACLs and they 
> give us everything we need - hardware based layer 3 ACL's in front of a 
> "real" router.

Can the 3550 do L3 filtering on switched traffic?

(I know the 2950 can, which is really cool - no need to carry all the
BGP routes on the "switch" device, but still be able to put filters on
it).

gert
-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             gert at greenie.muc.de
fax: +49-89-35655025                        gert at net.informatik.tu-muenchen.de


More information about the cisco-nsp mailing list