[c-nsp] ASR920: egress ACL on BDIs

Gert Doering gert at greenie.muc.de
Mon Dec 30 17:16:29 EST 2019


On Tue, Dec 31, 2019 at 12:00:00AM +0200, Tassos Chatzithomaoglou wrote:
> We have been using small (<300 ACEs) egress ACLs under BDIs without any apparent issues until now.

Which version of IOS XE?  How many BDIs?

> Maybe have a look at the following outputs:
> show platform hardware pp active tcam utilization acl detail 0
> show platform hardware pp active tcam utilization egress-acl detail 0

That all looks reasonable... (15% and 57%)

> Also check the limitations of your SDM template (i.e. https://www.cisco.com/c/en/us/td/docs/routers/asr920/configuration/guide/sdm/16-11-1/b-sys-sdm-xe-16-11-1-asr-920.html)

We're on "default", and that should have enough of everything for
what the box is doing.

"If was one thing all people took for granted, was conviction that if you 
 feed honest figures into a computer, honest figures come out. Never doubted 
 it myself till I met a computer with a sense of humor."
                             Robert A. Heinlein, The Moon is a Harsh Mistress

Gert Doering - Munich, Germany                             gert at greenie.muc.de
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 630 bytes
Desc: not available
URL: <https://puck.nether.net/pipermail/cisco-nsp/attachments/20191230/6b87c63d/attachment.sig>

More information about the cisco-nsp mailing list