Cisco Bug: CSCtc30797 - QOS: reject policies that contain an ACL with a DENY operation
May 30, 2018
- Cisco Carrier Routing System
Known Affected Releases
Symptom: Traffic that should be 'denied' is in fact matched and permitted. As per the MQC specification, 'actions' (permit or deny) defined within an ACL which is used for packet classification, are ignored when used within a QOS policy. All lines within the ACL are considered to be 'permit' lines even if the action has been defined as 'deny'. Conditions: A QOS policy which has a class-map using an ACL for packet matching, which in turn has ACL entries with 'deny' set as the 'action'.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases