enable egress-acl-on-cpu-traffic

Enables applying outbound access control lists (ACLs) to traffic generated by the central processing unit (CPU).
Syntax
enable egress-acl-on-cpu-traffic
no enable egress-acl-on-cpu-traffic
Command Default

CPU traffic is not subjected to outbound ACL filtering, with some exceptions.

Modes

Global configuration mode

Usage Guidelines

The no form of the command resets to the default; that is, outbound ACLs are not applied to traffic generated by the CPU.

CPU traffic on ICX 7550, and ICX 7850 stack members and standby controllers is, by default, subjected to outbound ACL filtering. In contrast, when ICX 7550and ICX 7850 devices are operating as standalone devices or as stack active controllers, they have the same default behavior as other platforms and do not apply outbound ACLs to CPU traffic.

Examples

The following example enables applying outbound ACLs to traffic generated by the CPU.

device# configure terminal
device(config)# enable egress-acl-on-cpu-traffic