Demonstrates how to verify implicit ACL configurations on loopback interfaces using the show platform hardware qfp active statistics drop command and interpret drop statistics to identify implicit ACL activity.
Use the show platform hardware qfp active statistics drop command to verify implicit ACL configuration on loopback interfaces. The show platform hardware qfp active statistics drop command displays drop statistics that help identify implicit ACL activity on loopback interfaces.
The following is a sample output from the show platform hardware qfp active statistics drop command:
Device# show platform hardware qfp active statistics drop
Last clearing of QFP drops statistics : never
-------------------------------------------------------------------------
Global Drop Stats Packets Octets
-------------------------------------------------------------------------
Disabled 4 266
Ipv4EgressIntfEnforce 15 10968
Ipv6NoRoute 6 336
Nat64v6tov4 6 480
SVIInputInvalidMac 244 15886
SdwanImplicitAclDrop 160 27163
UnconfiguredIpv4Fia 942525 58524580
UnconfiguredIpv6Fia 77521 9587636