Preview Tool

Cisco Bug: CSCtc77088 - c10k: removing acl from ISG interface causes session forwarding failure

Last Modified

Jan 31, 2017

Products (14)

  • Cisco IOS
  • Cisco 7206 Router
  • Cisco 7301 Router
  • Cisco 7204 Router
  • Cisco 7206VXR Router
  • Cisco 10000 Performance Routing Engine 3 (PRE3)
  • Cisco 7202 Router
  • Cisco 7200 Series NPE-G2 Network Processing Engine
  • Cisco 7304 NSE-150 Network Services Engine
  • Cisco 10000 Performance Routing Engine 2 (PRE2)
View all products in Bug Search Tool Login Required

Known Affected Releases

12.2(31)SB16 12.2(33)SB7

Description (partial)

Symptoms: On a Cisco 10000 series router, removing an ACL from an ISG-facing
interface with the command <CmdBold>no ip access-group<noCmdBold>
<CmdArg>list<noCmdArg> <CmdBold>in<noCmdBold> may result in a forwarding
failure for all ISG subscriber sessions permitted in ACL.

Conditions: The symptom is observed on a Cisco 10000 series router running a
PRE-3 and Cisco IOS Release 12.2(33)SB7 where <CmdBold>no ip
access-group<noCmdBold> <CmdArg>list<noCmdArg> <CmdBold>in<noCmdBold> and ISG
exist on same interface.
Bug details contain sensitive information and therefore require a account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.