[c-nsp] ASR920: egress ACL on BDIs

Gert Doering gert at greenie.muc.de
Mon Dec 30 17:16:29 EST 2019


Hi,

On Tue, Dec 31, 2019 at 12:00:00AM +0200, Tassos Chatzithomaoglou wrote:
> We have been using small (<300 ACEs) egress ACLs under BDIs without any apparent issues until now.

Which version of IOS XE?  How many BDIs?

> Maybe have a look at the following outputs:
> 
> show platform hardware pp active tcam utilization acl detail 0
> show platform hardware pp active tcam utilization egress-acl detail 0

That all looks reasonable... (15% and 57%)

> Also check the limitations of your SDM template (i.e. https://www.cisco.com/c/en/us/td/docs/routers/asr920/configuration/guide/sdm/16-11-1/b-sys-sdm-xe-16-11-1-asr-920.html)

We're on "default", and that should have enough of everything for
what the box is doing.

gert
-- 
"If was one thing all people took for granted, was conviction that if you 
 feed honest figures into a computer, honest figures come out. Never doubted 
 it myself till I met a computer with a sense of humor."
                             Robert A. Heinlein, The Moon is a Harsh Mistress

Gert Doering - Munich, Germany                             gert at greenie.muc.de
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 630 bytes
Desc: not available
URL: <https://puck.nether.net/pipermail/cisco-nsp/attachments/20191230/6b87c63d/attachment.sig>


More information about the cisco-nsp mailing list