Professional Documents
Culture Documents
Foundation Protection
Collection of processes
Run at the process level
Control Plane
Central Switch
Engine
All IP packets that are destined for the control
plane should pass through the central switch
engine before they are forwarded to the process Route
level. Processor
Distributed Distributed
Switch Switch
Engine Engine
A framework
Provides for all policing and protection
Extends the CoPP functionality
Finer granularity
Traffic classifier
Port filtering
Queue threshold
Queue Shareholding
Control Plane
Control BGP PF QT CoPP Host Subinterface
Feature HTTP Control Plane
Path CoPP
SNMP Transit Subinterface
OSPF
CoPP Control Plane Cisco Express
Forwarding Subinterface
Aggregate CoPP Cisco Express Forwarding
Input Feature
Classify
Packet
Buffer
Configure CoPP.
(Optional) Configure port-filter policy.
(Optional) Configure queue-threshold policy.
Administrator
10.10.10.2
© 2007 Cisco Systems, Inc. All rights reserved. SNRS v2.0—3-7
Configuring Port Filter Policies
Administrator
10.10.10.2
Administrator
10.10.10.2
drop
Control Plane Host
queue-limit 100
queue-count 0 packets allowed/dropped 0/0
Control Plane Host