[c-nsp] ACL tuning

Justin M. Streiner streiner at cluebyfour.org
Wed Mar 5 10:21:54 EST 2008


On Wed, 5 Mar 2008, Church, Charles wrote:

>    Is there any advantage to moving your more heavily-used ACL entries
> to the top of the ACL anymore, or is that a thing of the past?  I
> thought CEF and compiled ACLs replaced that long ago, but figured I'd
> ask.  It's on a CPU based router, running 12.4.  Lots of ACLs for
> inbound and outbound traffic, as well as for QoS as part of policies.

I don't know if it's an absolute requirement anymore, but I still do it 
because it's a good idea.  I'd think if the router is doing forwarding 
and ACL processing in software, tuning your ACLs is still a very good 
idea.

jms


More information about the cisco-nsp mailing list