12.07.2015 Views

Brocade MLX Series and Brocade NetIron XMR Diagnostic Guide ...

Brocade MLX Series and Brocade NetIron XMR Diagnostic Guide ...

Brocade MLX Series and Brocade NetIron XMR Diagnostic Guide ...

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

ACLs 7<strong>Brocade</strong># debug ipv6 access-list stats<strong>Brocade</strong># show ipv6 access-list accouting ethernet 4/2IPv6 ACL accounting: interface 122, port id 121IPv6 ACL accounting: retrieve for port 4/2, acl abc10, outbound 0IPv6 inbound ACL accounting: abc10 filter from 0, num 1Collecting IPv6 ACL accounting for 4/2 ... Completed successfully.IPv6 ACL Accounting Information:Inbound: IPv6 ACL abc1010: permit tcp any anyHit count: (1 sec) 99 (1 min) 1515(5 min) 0 (accum) 1515<strong>Brocade</strong># show ipv6 access-list accounting briefIPv6 in/out ACL accounting: retrieve brief information: Max IPv6 interfaces 1193Collecting IPv6 ACL accounting summary for 4/2 ... Completed successfully.IPv6 ACL Accounting Summary: (ac = accumulated since accounting started)Int In ACL Total In Hit Out ACL Total Out Hit4/2 abc10 99(1s)1515(1m)0(5m)1515(ac)Configuration notesDo not apply an empty ACL (an ACL ID without any corresponding entries) to an interface. If youaccidentally do this, the software applies the default ACL action (deny all) to the interface <strong>and</strong>denies all traffic.Considerations when implementing ACL CAM sharingThe following considerations apply when implementing the ACL CAM sharing feature:• If you enable ACL CAM sharing, ACL statistics will be generated per-packet processor (PPCR)instead of per-port. If you require per-port granularity statistics for your application, you cannotuse this feature.• This feature is only applicable for inbound IPv4 ACLs, IPv6 ACLs, VPNv4 ACLs, Layer 2 ACLs,<strong>and</strong> global Policy Based Routing (PBR) policies.• This feature is not applicable for ACL-based rate limiting <strong>and</strong> interface-level PBR policies.• This feature cannot be applied to a virtual interface.• CAM entry matching within this feature is based on the ACL group ID.ACL deny loggingCarefully consider the following guidelines before configuring the ACL deny logging feature on yourrouter:• The ACL deny logging feature cannot be used in conjunction with the deny traffic redirectionfeature (the ip access-group redirect-deny-to-interf comm<strong>and</strong>). If you configure both featureson the same interface, the ACL deny logging feature will take precedence <strong>and</strong> the deny trafficredirection will be disabled. Although disabled, deny traffic redirection will still be shown in therunning configuration.<strong>Brocade</strong> <strong>MLX</strong> <strong>Series</strong> <strong>and</strong> <strong>Brocade</strong> <strong>NetIron</strong> <strong>XMR</strong> <strong>Diagnostic</strong> <strong>Guide</strong> 25553-1002426-02

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!