[c-nsp] 3560/3750 policy routing
Daniska, Tomas
tomas at soitron.com
Mon Nov 2 19:16:39 EST 2009
> -----Original Message-----
> From: cisco-nsp-bounces at puck.nether.net [mailto:cisco-nsp-
> bounces at puck.nether.net] On Behalf Of Peter Rathlev
> Sent: Tuesday, November 03, 2009 12:01 AM
> To: Ryan West
> Cc: cisco-nsp
> Subject: Re: [c-nsp] 3560/3750 policy routing
>
>
> It has been running IOS 12.2(50)SE1 IP Services "all its life" (some
> months).
>
> When we started using it I was a little nervous if it would cope (and
> posted on this list about it too) but it performs splendidly for us.
>
I second this, 12.2(50)SE3, doing some PBR-based VoIP spliting to
different SBCs, all done in HW.
Note that PBR on these platforms is very limited in supported route-map
match options, e.g. per cco:
********************
When configuring match criteria in a route map, follow these guidelines:
-Do not match ACLs that permit packets destined for a local address. PBR
would forward these packets, which could cause ping or Telnet failure or
route protocol flapping.
-Do not match ACLs with deny ACEs. Packets that match a deny ACE are
sent to the CPU, which could cause high CPU utilization.
********************
Did your matching ACLs meet the no-deny requirement?
--
deejay
__________ Informacia od ESET NOD32 Antivirus, verzia databazy 4565
(20091102) __________
Tuto spravu preveril ESET NOD32 Antivirus.
http://www.eset.sk
More information about the cisco-nsp
mailing list