[c-nsp] More 6500 questions... Optimized ACL Logging

Ian MacKinnon ian.mackinnon at lumison.net
Tue May 8 10:51:03 EDT 2007


Hi All,

More stupid questions to keep you busy.

Cisco Optimized ACL logging, what is it good for?

I have 6500s with Sup32, so PFC3B as required according to
http://www.cisco.com/univercd/cc/td/doc/product/metro/me6500/122zu/sg/acl.htm#wp1035490

I have a simple access list
ip access-list extended testlogging
 permit ip any any


and have then applied the following :-

interface Vlan1138
 ip address x.x.x.x 255.255.255.248
 ip access-group testlogging in
 ip access-group testlogging out
 logging ip access-list cache in
 logging ip access-list cache out



But when I try to see what is being logged I get nothing :-
sh logging ip access-list cache
Matched flows:
  id  prot    src_ip        dst_ip        sport dport status count
 total lastlog
--------------------------------------------------------------------------------------

 Number of entries: 0
 Number of messages logged: 0
 Number of packets logged: 0
 Number of packets received for logging: 0



What have I missed?


Thanks
-- 

This email and any files transmitted with it are confidential and intended 
solely for the use of the individual or entity to whom they are addressed.  
If you have received this email in error please notify the sender. Any 
offers or quotation of service are subject to formal specification.  
Errors and omissions excepted.  Please note that any views or opinions 
presented in this email are solely those of the author and do not 
necessarily represent those of Lumison, nplusone or lightershade ltd.  
Finally, the recipient should check this email and any attachments for the 
presence of viruses.  Lumison, nplusone and lightershade ltd accepts no 
liability for any damage caused by any virus transmitted by this email.

-- 
-- 
Virus scanned by Lumison.


More information about the cisco-nsp mailing list