nanog mailing list archives

CoPP on NXOS


From: Drew Weaver <drew.weaver () thenap com>
Date: Wed, 17 Feb 2021 14:11:44 +0000

Hi,

This might be a little too platform/vendor specific for this group so I apologize in advance if that is the case.

Does anyone have a working example of CoPP on NXOS which limits things like BGP, SSH, and the NXAPI HTTPS interface to 
a specific remote /32 and blocks everything else that is not specifically allowed in the ACLs attached to the classes?

I've had a ticket open /w TAC for a month and I'm actually getting nowhere.

Thank you so much,
-Drew


Current thread: