Firewall Wizards mailing list archives

RE: Comparisons between Router ACLs and Firewalls


From: "Marcus J. Ranum" <mjr () ranum com>
Date: Sat, 03 Jan 2004 17:42:24 -0500

Bill James wrote:
The problem with using ACL's is the load they can add to a router. Most
of Cisco's newer IOS' have IP Inspection and do OK but can add a
tremendous load on the router. 

I've never found any good studies of ACL performance. Do you have any
references you can point us to?

mjr.


_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: