From: gladston@br.ibm.com
Date: Thu Jun 02 2005 - 14:52:29 GMT-3
Can you configure log-input with Unicast Reverse Path Forwarding?
If I configure it, it does not match.
r6#sh access-list 197
Extended IP access list 197
10 permit ip host 100.111.1.1 any (50 matches)
20 deny ip host 100.111.1.1 any
r6(config)#access-list 197 de ip h 100.113.1.1 any log-input
r6(config)#access-list 197 permit ip h 100.111.1.1 a log-i
r6#sh access-list 197
Extended IP access list 197
10 deny ip host 100.113.1.1 any log-input
20 permit ip host 100.111.1.1 any log-input
r6#
r6#sh access-list 197
Extended IP access list 197
10 deny ip host 100.113.1.1 any log-input
20 permit ip host 100.111.1.1 any log-input
Traffic are dropped instead of suppressed verification:
r6#sh ip int fa 0/1 | b verification
8 verification drops
0 suppressed verification drops
r6#
This archive was generated by hypermail 2.1.4 : Wed Jul 06 2005 - 14:43:40 GMT-3