<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Firepower - Max ACL Limits in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/3902532#M1004723</link>
    <description>&lt;P&gt;Could you share the cisco documentation reference regarding this limit?&lt;/P&gt;&lt;P&gt;3M is ACL or ACE?&lt;/P&gt;</description>
    <pubDate>Sat, 03 Aug 2019 19:40:25 GMT</pubDate>
    <dc:creator>Asif Irfan</dc:creator>
    <dc:date>2019-08-03T19:40:25Z</dc:date>
    <item>
      <title>Firepower - Max ACL Limits</title>
      <link>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/3696290#M1004721</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What are the ACL limits on the Firepower family &lt;STRONG&gt;running ASA code&lt;/STRONG&gt;? I've found documentation regarding the ASA hardware family but nothing related to the new Firepower appliances. I suppose the limitations would be much higher because of the additional amount of RAM these devices are provisioned, but I would appreciate any official document&amp;nbsp;stating this.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 13:55:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/3696290#M1004721</guid>
      <dc:creator>Antonio Macia</dc:creator>
      <dc:date>2019-03-12T13:55:32Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower - Max ACL Limits</title>
      <link>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/3701192#M1004722</link>
      <description>&lt;P&gt;Managed to get the info from Cisco. For those interested here are the figures per family:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;TABLE width="0"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD width="152"&gt;
&lt;P&gt;Firepower 4110&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="175"&gt;
&lt;P&gt;3M&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="152"&gt;
&lt;P&gt;Firepower 4120&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="175"&gt;
&lt;P&gt;3M&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="152"&gt;
&lt;P&gt;Firepower 4140&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="175"&gt;
&lt;P&gt;3M&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD width="152"&gt;
&lt;P&gt;Firepower 4150&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="175"&gt;
&lt;P&gt;4M&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;</description>
      <pubDate>Wed, 05 Sep 2018 13:52:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/3701192#M1004722</guid>
      <dc:creator>Antonio Macia</dc:creator>
      <dc:date>2018-09-05T13:52:44Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower - Max ACL Limits</title>
      <link>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/3902532#M1004723</link>
      <description>&lt;P&gt;Could you share the cisco documentation reference regarding this limit?&lt;/P&gt;&lt;P&gt;3M is ACL or ACE?&lt;/P&gt;</description>
      <pubDate>Sat, 03 Aug 2019 19:40:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/3902532#M1004723</guid>
      <dc:creator>Asif Irfan</dc:creator>
      <dc:date>2019-08-03T19:40:25Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower - Max ACL Limits</title>
      <link>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/5024334#M1109439</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;
&lt;P&gt;Would it be possible for you to update this post with the max ACE for the newer platforms FP411x and FP93xx ?&lt;/P&gt;</description>
      <pubDate>Mon, 26 Feb 2024 10:13:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/5024334#M1109439</guid>
      <dc:creator>lukaszkhalil</dc:creator>
      <dc:date>2024-02-26T10:13:47Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower - Max ACL Limits</title>
      <link>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/5024474#M1109450</link>
      <description>&lt;P&gt;Hopefully I can help you. Above published limits are not correct. E.g. we run multiple context mode ASA on Firepower 4145 with 16M ACL elements total ("show access-list | i element"). Also, max number of elements doesn't depend on the memory volume. It actually depends on the size of the array which holds MP-counters, which is explained here:&lt;/P&gt;&lt;P&gt;CSCwf72434 Add meaningful logs when the maximums system limit rules are hit&lt;/P&gt;&lt;P&gt;This means that you can have plenty of free memory available, but hit the ACL limit and console error: "ERROR: Insufficient memory to install the rules". Max size of the array per platform is not known. On 4145 we hit the limit when the number of ACL elements exceeded 16,5M.&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Feb 2024 15:09:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-max-acl-limits/m-p/5024474#M1109450</guid>
      <dc:creator>tvotna</dc:creator>
      <dc:date>2024-02-26T15:09:56Z</dc:date>
    </item>
  </channel>
</rss>

