Cisco ACL and HIGH CPU due to IP INPUT
High CPU – IP Input on Cisco Router [PART II]
As written in Part I Cisco High CPU due to IP Input :
PID Runtime(ms) Invoked uSecs 5Sec 1Min 5Min TTY Process
47 22949526882139777808 1072 21.11% 26.99% 29.53% 0 IP Input
And everything has been checked on the list detail explained.
One more thing today I found : ACL rows + log.
The more rows more CPU resources.
It’s going to raise more if you have log applied at the end of acl row.
I’ve been minimizing and simplifizing my ACL.
It’s getting more and more space on CPU resources available that would give a more stable performance of your gear.
My suggestions :
- Remove the log sufix if it’s not realy needed.
- Replace deny ip host/network with null route (static).
That’s all
rgs.
a. rahman isnaini r.sutan


