<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco ASA5550 ACL migration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa5550-acl-migration/m-p/1549520#M616021</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry for the basic question, but does anyone know how many ACL's is supported on a ASA5550?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a client that is looking to move 7.200 ACL's from a Cisco 2800 router to a Cisco ASA5550 and would like to understand the below:-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;How many ACL's is supported on a ASA5550&lt;/LI&gt;&lt;LI&gt;I understand the management overhead will be great, but need to understand load of processing the ACL's on the ASA5550&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just a quick quesion as the client is not looking to rationalise the rules, just move them and deal with once migrated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any questions please let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Steven&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 19:11:43 GMT</pubDate>
    <dc:creator>sadcock123</dc:creator>
    <dc:date>2019-03-11T19:11:43Z</dc:date>
    <item>
      <title>Cisco ASA5550 ACL migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5550-acl-migration/m-p/1549520#M616021</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry for the basic question, but does anyone know how many ACL's is supported on a ASA5550?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a client that is looking to move 7.200 ACL's from a Cisco 2800 router to a Cisco ASA5550 and would like to understand the below:-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;How many ACL's is supported on a ASA5550&lt;/LI&gt;&lt;LI&gt;I understand the management overhead will be great, but need to understand load of processing the ACL's on the ASA5550&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just a quick quesion as the client is not looking to rationalise the rules, just move them and deal with once migrated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any questions please let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Steven&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:11:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5550-acl-migration/m-p/1549520#M616021</guid>
      <dc:creator>sadcock123</dc:creator>
      <dc:date>2019-03-11T19:11:43Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA5550 ACL migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5550-acl-migration/m-p/1549521#M616022</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't think there's a hard number... but it's well over thousands (lot more than 10,000)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also the object-group feature on the ASA can reduce the size of the ACL.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Nov 2010 16:04:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5550-acl-migration/m-p/1549521#M616022</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-11-19T16:04:24Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA5550 ACL migration</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5550-acl-migration/m-p/1549522#M616023</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;sadcock123 wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry for the basic question, but does anyone know how many ACL's is supported on a ASA5550?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a client that is looking to move 7.200 ACL's from a Cisco 2800 router to a Cisco ASA5550 and would like to understand the below:-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;How many ACL's is supported on a ASA5550&lt;/LI&gt;&lt;LI&gt;I understand the management overhead will be great, but need to understand load of processing the ACL's on the ASA5550&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just a quick quesion as the client is not looking to rationalise the rules, just move them and deal with once migrated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any questions please let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Steven&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Steven&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you mean ACL ie. 7200 access-lists or ACE's ie. individual entries within an access-list ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As Federico says, there is no hard limit, it is entirely dependant on memory. I have found reference on these forums to an ACE using 20KB of memory so with a quick bit of maths and assuming you mean ACE -&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;7200 * 20Kb = 144000Kb / 1024 = approx 140Mb&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the ASA5550 comes with 4Gbps of memory so i would think you would be fine but that does depend on an ACE using 20Kb of memory. Even so i would still think you should be fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Edit - of course it also depends on what else you are running on your firewall which uses memory.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Nov 2010 16:16:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5550-acl-migration/m-p/1549522#M616023</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2010-11-19T16:16:43Z</dc:date>
    </item>
  </channel>
</rss>

