enable egress-acl-on-cpu-traffic

Enables applying outbound access control lists (ACLs) to traffic generated by the central processing unit (CPU).
Syntax
enable egress-acl-on-cpu-traffic
no enable egress-acl-on-cpu-traffic
Command Default

CPU traffic is not subjected to outbound ACL filtering, with some exceptions.

Modes

Global configuration mode

Usage Guidelines

The no form of the command resets to the default; that is, outbound ACLs are not applied to traffic generated by the CPU.

CPU traffic on ICX 7150, ICX 7550, and ICX 7850 stack members and standby controllers is, by default, subjected to outbound ACL filtering. In contrast, when these devices, ICX 7150, ICX 7550, and ICX 7850, are operating as standalone devices or as stack active controllers, they have the same default behavior as other platforms and do not apply outbound ACLs to CPU traffic. On ICX 7150 devices, this command can be configured so that outbound ACLs are applied to CPU traffic.

Examples

The following example enables applying outbound ACLs to traffic generated by the CPU.

device# configure terminal
device(config)# enable egress-acl-on-cpu-traffic