[c-nsp] Sup720 CoPP, limits on CPU performance

Saku Ytti saku at ytti.fi
Tue Mar 23 09:57:57 EDT 2010


On (2010-03-23 09:20 -0400), Chris Griffin wrote:

> Because on the PFC3B, mls HWRL glean traffic is subject to the
> outbound ACL of the input interface.  If it didn't have this
> "feature" we would use the glean rate limiter.  Its far easier for
> us to track interface IPs than it is to re-write all of our outbound
> ACLs to account for inbound glean traffic.

That is nasty, 'luckily' for me egress ACL are no-no anyhow, as they'll
create aggregate labels and cause egress IP lookup, which would break
hub+spoke VRF config, which is fairly typical in my network.

-- 
  ++ytti


More information about the cisco-nsp mailing list