Drop Incoming Traffic

About this task

Perform the following procedure to drop incoming traffic using MAC, IPv4, or IPv6 ACL.

Procedure

  1. Configure the ingress group with the required ingress ports.
  2. Configure L2 (MAC) or L3 ACL (IPv4 or IPv6) in the access list with Deny option.
  3. Set L2 or L3 ACL in the route-map.
  4. Apply route-map policy to the ingress group.
  5. Send traffic flows to the DUT.
    The traffic flows or packets are dropped based on L2 or L3 ACL configured in the route-map.
  6. Verify the CLI statistics of ingress group and L2 or L3 ACL counters to determine the number of packets or flows dropped.
  7. Verify the CLI statistics of egress port or egress group.
  8. Verify that the packets matching the L2 or L3 ACL are not getting forwarded in egress port by validating or capturing the wired PCAP collected in the analytical tools.