Re: Question on access list maintenance

From: Ben (ccieben@cox.net)
Date: Tue Mar 20 2007 - 15:37:19 ART


Hi,

Check this out:
http://www.cisco.com/en/US/products/hw/switches/ps646/products_configuration_guide_chapter09186a00801cdf53.html#1031202
"After the ACL configuration is stable for a specified interval, the
system loads the configuration into hardware. Forwarding is blocked on
any affected interfaces while the hardware is being updated. To change
this behavior, you can use the mls aclmerge delay and the access-list
hardware program nonblocking global configuration commands. Refer to the
command reference for this release for descriptions of these commands."

Rack5SW4(config)#access-list hardware program nonblocking
Rack5SW4(config)#mls aclmerge delay 0

HTH
Ben

Filyurin, Yan wrote:
> I ran into a task in one of the vendor workbooks and could not find a
> solution anywhere on the DocCD. Is it true that when changes are made
> on switch port ACLs, traffic would be blocked, while the list is
> modified and is there any way to prevent it?
>
> Thank you.
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Sun Apr 01 2007 - 06:35:52 ART