05-21-2009 12:11 AM - edited 03-04-2019 04:49 AM
Hi Gurus,
I need to add app 3000 ACLs on a Cisco 6500 SUP 720. Will the device take it and would there be any performance degrdation?
-Sai.
Solved! Go to Solution.
05-21-2009 01:20 AM
05-21-2009 12:49 AM
Sai
Do you mean an acl with 3000 entries or 3000 separate acl's ?
Either way the 6500 with sup720 supports up to 32k of security acl's - see the sup720 datasheet for full details of what acl's are supported and how many -
ACL processing is done in hardware by the PFC so you should not notice any real degredation, the more likely scenario is you start to run out of TCAM resources. Also it is important to note that under some circumstances ACL processing is done in software and here you would certainly notice a performance hit. Attached is a white paper on acl processing on the 6500, pay particular attention to what acl entries mean the 6500 has to process in software and also the TCAM merge optimisations -
http://www.cisco.com/en/US/products/hw/switches/ps708/products_white_paper09186a00800c9470.shtml
Jon
05-21-2009 01:15 AM
Jon,
I meant 3000 entries which would be constantly accessed and processed.
-Sai.
05-21-2009 01:20 AM
Sai
Okay, then see previous answer.
Jon
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide