Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

Bronze

ACL matched packets and NAT matched packets are switched by CEF ?

Hi everyone,

I have the question about how the packets that match the access-list and match NAT statement are switched on CEF enabled IOS router. Router is Cisco 7301, Cisco 3825 and Cisco 2811 and all of interfaces are CEF enabled.

The access-list does not use"log" keyword, so I personally think packets that match the access-list are always CEF switched that means all packets that match the access-list never punt to CPU (process switching).

I also think the packets that match the NAT statement also always CEF switched and not punt to CPU (process switching) as long as existing entries of those packets in CEF table which means if there are no entry for the packets that match NAT statement in CEF table, such as first incoming/outgoing packet, those packets punt to CPU (process switching) to resolve adjacency.

My understanding correct ?

Or first incoming/outgoing packet that match the access-list and NAT statement always punts to CPU (process switching) ?

Or all packets that match the access-list and NAT statement always punts to CPU (process switching) ?

Your information would be appreciated.

Regards,

Shinichi

1 REPLY

Re: ACL matched packets and NAT matched packets are switched by

644
Views
0
Helpful
1
Replies
CreatePlease login to create content