cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
431
Views
0
Helpful
2
Replies

Is there a way to reference all local interface IPs with an ACL ?

junos2ios
Level 1
Level 1

looking for something similar to junipers

 

set policy-options prefix-list local-router-ipv4 apply-path "interfaces <*> unit <*> family inet address <*>"

 

that way i don't have to actually specify local IPs. Is there something similar in cisco ios/xe/xr/nxos etc?
TIA

2 Replies 2

On IOS devices there is ControlPlane Protection:

https://www.cisco.com/c/en/us/td/docs/ios/12_4t/12_4t4/htcpp.html?dtid=osscdc000283

This kicks in when the CPU of the router is addressed. This is always the case when a local IP is the destination.

Thanks. Im looking to reference all local IPs in ACL of sorts so i can place network control traffic (bgp,bfd) etc in a custom qos queue

Review Cisco Networking products for a $25 gift card