cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1024
Views
0
Helpful
4
Replies

IP blocking using route to Null0

Eivinas
Level 1
Level 1

As for security reasons we are blocking IP addresses by giving them IP route to Null on our main router WS-C6506-E.

As static route list is expanding on router I am wondering how many of static routes to Null can handle WS-C6506-E router and how strongly those routes effecting routing process? 

 

1 Accepted Solution

Accepted Solutions

Hello,

 

I think you can use use the command:

 

show mls cef maximum-routes

 

to display the maximum IPv4 routes...

 

That said, how exactly are you using the null routes ? Would an access list not be a better alternative ?

View solution in original post

4 Replies 4

Deepak Kumar
VIP Alumni
VIP Alumni
Hi,
Which is your SUP?

Regards,
Deepak Kumar
Regards,
Deepak Kumar,
Don't forget to vote and accept the solution if this comment will help you!

Supervisor Engine 720 10GE (Active) VS-S720-10G .
And Georg is right show mls cef maximum-routes displays maximum routes.

Hello,

 

I think you can use use the command:

 

show mls cef maximum-routes

 

to display the maximum IPv4 routes...

 

That said, how exactly are you using the null routes ? Would an access list not be a better alternative ?

Thank you that command gives what I need. Well yes we are using access-list, but it were implemented long time ago, and I am about to rewrite it to make it more efficient.
Well we have honey pots, that are detecting ip addresses that scans our network, or acting suspicious. And those IP as directed to Null0.
Review Cisco Networking products for a $25 gift card