<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FWSM 3.2(2) in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432690#M667898</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can do "show resource usage".&lt;/P&gt;&lt;P&gt;Or "sh access-list | i element".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You are probably close to the 3.2 ACL limit (75K).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 13 Jul 2010 13:26:40 GMT</pubDate>
    <dc:creator>Panos Kampanakis</dc:creator>
    <dc:date>2010-07-13T13:26:40Z</dc:date>
    <item>
      <title>FWSM 3.2(2)</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432689#M667885</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; i have FWSM with s/w 3.2(2). while i creating access list an error message appeared to me :&lt;/P&gt;&lt;P&gt;error message: "ERROR: Unable to add, access-list config limit reached"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this fwsm is single not multiple , i can't find the "&lt;STRONG&gt;resource acl-partition " command although it is found in the guide.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;i want to know if this command applied only for multiple context? if yes , what the method that can i solve this problem in single fw.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Thanks&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 18:10:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432689#M667885</guid>
      <dc:creator>ibrahim_hassan</dc:creator>
      <dc:date>2019-03-11T18:10:48Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM 3.2(2)</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432690#M667898</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can do "show resource usage".&lt;/P&gt;&lt;P&gt;Or "sh access-list | i element".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You are probably close to the 3.2 ACL limit (75K).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Jul 2010 13:26:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432690#M667898</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-07-13T13:26:40Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM 3.2(2)</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432691#M667906</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ibrahim,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes - the 'resource acl-partition' is supported only in multi-context mode. When you look at the Command Reference Guide, you will see that there is a dot only under the 'System' context in the Multiple Context mode.&amp;nbsp; This implies that the command is only available via the System context:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/fwsm/fwsm32/command/reference/qr.html#wp1622931"&gt;http://www.cisco.com/en/US/docs/security/fwsm/fwsm32/command/reference/qr.html#wp1622931&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are seeing this issue on a single context FWSM, your only means of recourse are to reduce the number ACL entries that you have.&amp;nbsp; This may be best accomplished by combining host access-lists entries into subnet entries.&amp;nbsp; Any approach that you can use to make your access-lists "less specific" will oftentimes reduce the amount of resources that the ACL takes up.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let us know if you have any further questions.&amp;nbsp; If you have no further questions, please be sure to mark this topic as 'answered'.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;/P&gt;&lt;P&gt;Kevin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Jul 2010 13:47:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432691#M667906</guid>
      <dc:creator>Kevin Redmon</dc:creator>
      <dc:date>2010-07-13T13:47:14Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM 3.2(2)</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432692#M667915</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;is there any way to increase the number of ACE's after reaching the limit of 75k on FWSM version 3.1(8) ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;BR /&gt;Vikram&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Jan 2011 07:37:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432692#M667915</guid>
      <dc:creator>vikran_anumukonda</dc:creator>
      <dc:date>2011-01-17T07:37:37Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM 3.2(2)</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432693#M667919</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ACE limit for version 3.1.x is just 72,806:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/fwsm/fwsm31/configuration/guide/specs_f.html#wp1057500"&gt;http://www.cisco.com/en/US/docs/security/fwsm/fwsm31/configuration/guide/specs_f.html#wp1057500&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and ACE limit for version 3.2.x is 74,188:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/fwsm/fwsm32/configuration/guide/specs_f.html#wp1063812"&gt;http://www.cisco.com/en/US/docs/security/fwsm/fwsm32/configuration/guide/specs_f.html#wp1063812&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So if you are currently running version 3.1, you can upgrade to version 3.2.x to increase the ACE limit from 72,806 to 74,188.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or to further increase the limit, you can upgrade to version 4.0.x:&lt;SPAN class="content"&gt; 100,567:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/fwsm/fwsm41/configuration/guide/specs_f.html#wp1067843"&gt;http://www.cisco.com/en/US/docs/security/fwsm/fwsm41/configuration/guide/specs_f.html#wp1067843&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please check out the release notes on hardware/software compatibility prior to upgrade.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Jan 2011 08:03:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432693#M667919</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-01-17T08:03:14Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM 3.2(2)</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432694#M667929</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks jennifer&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Jan 2011 08:06:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-3-2-2/m-p/1432694#M667929</guid>
      <dc:creator>vikran_anumukonda</dc:creator>
      <dc:date>2011-01-17T08:06:17Z</dc:date>
    </item>
  </channel>
</rss>

