Has anyone had any issues/need to filter egress traffic via a vpc router tier?  
I've noticed all traffic egressing a vpc router is controlled by the OUTPUT 
chain which doesn't appear to be able to be modified and allows all egress 
traffic by default.  The tier ACL's all appear to operate in the ingress 
direction only.  When entering an acl entry to a tier acl and selecting the 
egress direction, the rule doesn't seem to get applied to the router's iptables 
rules.

Also, the iptables on the router has a destination field which doesn't appear 
as an option to configure in CS mgmt.  Any ideas when that field will be able 
to be used in CS?

Thanks

Brandon Arms
DSS

Reply via email to