lagapidis
(Lazarus Agapidis)
August 3, 2021, 10:42am
58
Hello Ajit
Locally generated traffic will never be checked by an outbound access list on the interface. Locally generated traffic is traffic that is generated from the same router that has the access list applied.
Take a look at this post for more details.
Locally generated traffic will never be checked by outbound access-lists on your interfaces.
You might be able to filter some outbound locally originated traffic with CoPP policing. I haven’t tested this but feel free to try it
R1(config) control-plane
R1(config-cp) service-policy output MY_POLICY_MAP
Or maybe with some crazy tricks where you redirect traffic like I did in my NAT on a stick example:
https://networklessons.com/cisco/ccie-routing-switching/cisco-ios-nat-stick-c…
I hope this has been helpful!
Laz