[c-nsp] sup720 protection on the 6500/7600

vince anton mvanton at gmail.com
Sat Feb 17 12:27:45 EST 2007


Hi All

Im running a 7600 with SUP720-3BXL - 12.2(18)SXF7, and looking at options
for protecting the box - hoping people out there that have been using these
boxes in production for some time can share some experiences.

Looks like the tools available are CoPP and 'mls ip cef rate-limit' to limit
traffic punted the MSFC, and the 'mls rate-limit' options, some of which are
enabled by default.

Is there anything on the 6500/7600 like 'receive ACLs' on the 12k, or CoPP
with a drop in the policy map for unwanted traffic is the best best to do
this ?

Also, is there a way to view the rate and therefore basline legit traffic
punted to the MSFC in order to come up with a meaningful value for 'mls ip
cef rate-limit' for a given network  ?



Thanks,

anton


More information about the cisco-nsp mailing list