Redundant or Shadow Rules: Identifying Utility

Which utility can you use to identify redundant or shadow rules?



The utility that can be used to identify redundant or shadow rules is the ACL analysis tool in Cisco APIC-EM, which is the correct answer.

Cisco APIC-EM is a software-defined networking (SDN) controller that provides centralized management and automation of network devices. The ACL analysis tool is a feature of APIC-EM that allows network administrators to analyze Access Control Lists (ACLs) configured on network devices to ensure that they are effective and efficient.

ACLs are used to filter traffic and control access to network resources. Redundant rules in an ACL are those that have the same criteria as another rule and are unnecessary. Shadow rules are rules that never match any traffic and are also unnecessary. Both types of rules can create additional processing overhead and increase the complexity of the ACL, which can impact network performance.

The ACL analysis tool in Cisco APIC-EM can help identify these types of rules by analyzing the ACL configuration and providing recommendations to optimize it. The tool can also identify other issues, such as overlapping rules and incomplete rule sets.

In conclusion, the correct answer to the question is A. the ACL analysis tool in Cisco APIC-EM, as it is specifically designed to identify redundant or shadow rules in ACLs.