[c-nsp] hybrid 6500 MLS/NDE best practice?

barney gumbo barney.gumbo at gmail.com
Wed Jul 26 07:51:49 EDT 2006


Is there any sort of general concensus on a good base config for MLS/NDE for
a 6500 w/ Sup 720's running hybrid mode?

I have 4x 6503 on a network edge acting as Layer3 switches connected to some
upstream eBGP peers which push up to 500 Mbps on very specific links; each
6503 has 2-4 links where the vast majority of the traffic flows.

The majority of the traffic is web-server hosting related.

With the base Cisco recommended MLS/NDE configs, I was running 60% CPU on
the supervisor at peak times.  That's way above normal and for me these
boxes, and the fear is that on a very busy day, the CPU's might max out.

Any feedback is appreciated.


More information about the cisco-nsp mailing list