<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Using multiple WCCP service groups and redirect-lists on the 6500 (ingress for all). in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/2336266#M44759</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a query regarding using multiple WCCP redirect lists on the 6500 chassis (Sup720-10G) running IOS 12.2(33).&lt;/P&gt;&lt;P&gt; &lt;SPAN style="font-size: 10pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;The customer currently has WCCP 61 and 62 applied on ingress for WAN/LAN interfaces to redirect traffic to WAAS appliances.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;The WAN/LAN interfaces both have a redirect ACL applied denying certain traffic from redirection.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;There is a requirement to add another WCCP service group on the same interfaces in order to redirect a specific application to a different set of accellerators (specifically Citrix).&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;I have to use ingress for both otherwise it will be processed in software.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;The new WCCP service group also needs to have a redirect ACL applied.&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How does the 6500 handle the processing of the ACLs when both service groups are assigned to the same interface in the same direction?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Will both redirect ACL's be processed accordingly?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or will the 6500 dump traffic if it hits a "deny any any" statement in the first ACL before processing the second ACL where the permit statement will be?&lt;/P&gt;</description>
    <pubDate>Mon, 19 Aug 2013 23:51:32 GMT</pubDate>
    <dc:creator>eidumsigfrid</dc:creator>
    <dc:date>2013-08-19T23:51:32Z</dc:date>
    <item>
      <title>Using multiple WCCP service groups and redirect-lists on the 6500 (ingress for all).</title>
      <link>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/2336266#M44759</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a query regarding using multiple WCCP redirect lists on the 6500 chassis (Sup720-10G) running IOS 12.2(33).&lt;/P&gt;&lt;P&gt; &lt;SPAN style="font-size: 10pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;The customer currently has WCCP 61 and 62 applied on ingress for WAN/LAN interfaces to redirect traffic to WAAS appliances.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;The WAN/LAN interfaces both have a redirect ACL applied denying certain traffic from redirection.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;There is a requirement to add another WCCP service group on the same interfaces in order to redirect a specific application to a different set of accellerators (specifically Citrix).&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;I have to use ingress for both otherwise it will be processed in software.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 10pt;"&gt;The new WCCP service group also needs to have a redirect ACL applied.&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How does the 6500 handle the processing of the ACLs when both service groups are assigned to the same interface in the same direction?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Will both redirect ACL's be processed accordingly?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or will the 6500 dump traffic if it hits a "deny any any" statement in the first ACL before processing the second ACL where the permit statement will be?&lt;/P&gt;</description>
      <pubDate>Mon, 19 Aug 2013 23:51:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/2336266#M44759</guid>
      <dc:creator>eidumsigfrid</dc:creator>
      <dc:date>2013-08-19T23:51:32Z</dc:date>
    </item>
    <item>
      <title>Using multiple WCCP service groups and redirect-lists on the 650</title>
      <link>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/2336267#M44760</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Did you ever recieve a response on this? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind Regards, &lt;BR /&gt;MTR &lt;BR /&gt; &lt;BR /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Sep 2013 13:18:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/2336267#M44760</guid>
      <dc:creator>Matt Rudkowski</dc:creator>
      <dc:date>2013-09-23T13:18:19Z</dc:date>
    </item>
    <item>
      <title>Re: Using multiple WCCP service groups and redirect-lists on the</title>
      <link>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/2336268#M44761</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi MTR,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I raised a TAC case and the TAC engineer decided to lab it before giving an answer.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Based on some internal documentation and the lab, t&lt;SPAN style="font-size: 10pt;"&gt;he 6500 will process each WCCP service in numerical order &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;(lowest first, eg: 51 and will stop at first ACL match).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As long as the ACL's are in the right order and do not overlap it works without issues.&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;The TAC tested both L2 and GRE redirection with no issues.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Cheers,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Zig&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Sep 2013 23:14:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/2336268#M44761</guid>
      <dc:creator>eidumsigfrid</dc:creator>
      <dc:date>2013-09-25T23:14:59Z</dc:date>
    </item>
    <item>
      <title>Using multiple WCCP service groups and redirect-lists on the 650</title>
      <link>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/2336269#M44762</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The reason is unlike in ISRs there is a command "ip wccp check service all" which means that process all wccp service groups on the interfaces on the basis of priority until a match is found. However, with 6500/switching platforms, this command is not available but the behavior is enabled by default. 6500 does not consider the group priority but it looks at the group number instead... least numbered service group is considered first.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 12 Jan 2014 13:49:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/2336269#M44762</guid>
      <dc:creator>Gurpreet Kochar</dc:creator>
      <dc:date>2014-01-12T13:49:16Z</dc:date>
    </item>
    <item>
      <title>Re: Using multiple WCCP service groups and redirect-lists on the 6500 (ingress for all).</title>
      <link>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/4192700#M51252</link>
      <description>&lt;P&gt;A question is raised for both cases (ISR -&amp;gt; Priority or Cat6500 -&amp;gt; Group Number):&lt;/P&gt;&lt;P&gt;Even if we manipulate Priority/Group number in a way that we "reorder" the ACLs to be checked, won't the implicit "deny ip any any" of the first ACL in order, match ALL traffic? How will the checking continue to the other ACL?&lt;/P&gt;&lt;P&gt;Unless this implicit deny in WCCP config is not considered a "match". Or even better, no kind of "deny" line is taken as a "match".&lt;/P&gt;&lt;P&gt;Any thoughts please?&lt;/P&gt;</description>
      <pubDate>Thu, 03 Dec 2020 11:19:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/using-multiple-wccp-service-groups-and-redirect-lists-on-the/m-p/4192700#M51252</guid>
      <dc:creator>CSCO11598534</dc:creator>
      <dc:date>2020-12-03T11:19:06Z</dc:date>
    </item>
  </channel>
</rss>

