I heard an interesting comment today, from a network engineer, who said
that Cisco had told him that using input and output acl's on the same
interface would produce unpredictable results and to rewrite the filters
to be "all output" or "all input" for a given interface (apparently they
tried, but things didn't happen as expected and that was Cisco's advice).
Is anyone actually using filters for both input and outut on an interface,
if so, what IOS rev., and is there any substance to this (ie buggy revcs of
the IOS) or does it just require things to be done "right" ?
thanks,
darren
|
|