Hi all,
Hope to find everyone well.
I'm configuring in a Cisco Catalyst 9300 with 17.12.6, several ACLs that are being applied in the a VLAN SVI in the input.
I've configured several network objects, but found that initially with the multicast it works well and the ACL allows the traffic through, but after some days the multicast stops working and I see that the ACL starts blocking the multicast stream.
I've seen that theres some bugs in the IOS that don't handle well the network objects with the TCAM and can start blocking stuff that it shouldn't but I believed this had been fixed in the version I had.
The only way for me to bypass and correct this is to create entries manualy and not use the network objects. The only issue with this is, my ACLs grow immensively by doing this and become more confusing.
please is anyone aware of this or know how to correct it?
Thank you