[c-nsp] ACL limitations on Sup720/PFC3BXL

2010-12-17 Thread Robert Hass
Hi I would like to implement uRPF together with Inbound ACL on Customer connected SVIs. Will Sup720/PFC3BXL hardware support this without problems ? My 6500 configuration looks like this: 1) Around ~200 SVIs with customers. On all SVIs uRPF is enabled to prevent spoofing: int VlanXXX

Re: [c-nsp] ACL limitations on Sup720/PFC3BXL

2010-12-17 Thread Phil Mayers
On 17/12/10 10:18, Robert Hass wrote: Hi I would like to implement uRPF together with Inbound ACL on Customer connected SVIs. Will Sup720/PFC3BXL hardware support this without problems ? Yes. ___ cisco-nsp mailing list cisco-nsp@puck.nether.net

Re: [c-nsp] ACL limitations on Sup720/PFC3BXL

2010-12-17 Thread Dobbins, Roland
On Dec 17, 2010, at 5:18 PM, Robert Hass wrote: Will Sup720/PFC3BXL hardware support this without problems ? It should, but you need to test it, first, of course, as well as being aware of the general constraints around ACLs of the EARL7-based 6500/7600:

Re: [c-nsp] ACL limitations on Sup720/PFC3BXL

2010-12-17 Thread Nick Hilliard
On 17/12/2010 10:46, Dobbins, Roland wrote: On Dec 17, 2010, at 5:18 PM, Robert Hass wrote: Will Sup720/PFC3BXL hardware support this without problems ? It should, but you need to test it, first, of course, as well as being aware of the general constraints around ACLs of the EARL7-based

Re: [c-nsp] ACL limitations on Sup720/PFC3BXL

2010-12-17 Thread Devon True
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Isn't this about the third time in the past couple of weeks that I've posted this? We need a FAQ. What about updating http://cisco.cluepon.net/? I did a quick for rpf and earl7 but did not see any hits. - -- Devon -BEGIN PGP SIGNATURE-