[c-nsp] 6500/Sup720 3BXL and ACK/RST

Nemeth Laszlo csirek at cooler.hu
Wed Mar 4 11:41:05 EST 2009


Hi list,

I would like to set a limit in my 6500/Sup720 3BXL RP card to how many 
ACK/RST packets send back to source if this RP get lot of SYN packets 
(flood) to random ports. I think to a magic mls rate-limit command :)

The CoPP not a good idea, because if i use it the CPU make a 100% load 
every 4th minutes (may be it is an IOS bug, i tried it whit 12.2(18)SXF6 ).

Thanks
Laszlo


More information about the cisco-nsp mailing list