cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2070
Views
0
Helpful
1
Replies

FMC - max policy rules support

dngore
Cisco Employee
Cisco Employee

Hi,

Is there any limitation on policy rule numbers on FMC? 

Customer wants to order FMC that will manage about 12 FTD and each FTD will have  about 1 million policy rules.

 

As per my understanding, it should not affect FMC. FMC will support any number of policy rules as long as FTD supports that. 

 

Is my understanding correct?

1 Reply 1

Abheesh Kumar
VIP Alumni
VIP Alumni

Hi,

I think you are correct, but complex policies and rules can command significant resources and negatively affect performance of FTD. When you deploy configuration changes, the system evaluates all rules together and creates an expanded set of criteria that target devices use to evaluate network traffic. If these criteria exceed the resources (physical memory, processors, and so on) of a target device, you cannot deploy to that device.

 

HTH

Abheesh

Review Cisco Networking for a $25 gift card