Reflexive ACL support in hardware..

Hi,

I am implementing a reflexive acl inbound permit ip any any and an evaluate on the outbound (back into the network) on a 6509 with sup3.

Problem is as soon as I do this I hit 99% processor.... CEF is running I have ip route-cache same interface..

Question is.. is this not supported in hardware? Is there any way to limit the processor intensity?!

TIA!

Reply to
ratsut
Loading thread data ...

Have you checked your ACL TCAM memory?

Very useful commands:

show tcam counts show fm summary

I wonder if you are software switching. We ran into this when doing PBR.

Check out:

formatting link

-Dan

formatting link

Reply to
dman1973

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.