cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
298
Views
0
Helpful
1
Replies

FWSM ACLs Supported (Capacity)

edcano
Level 1
Level 1

Currently hosting FWSM 2.3(3) which according to docs has capability of 128,000 ACLs, but the practical number supported is about 85,000.

Are the new versions of of FWSM increasing this capacity?

1 Reply 1

The FWSM supports a fixed number of rules for the entire system.For 3.2 code the rule limits are as follows

http://www.cisco.com/en/US/docs/security/fwsm/fwsm32/configuration/guide/specs_f.html#wp1054944

In later releases you can manipulate the rules using

FWSM(config)# resource rule nat 13 acl max filter current fixup current est current aaa 442 console current

Meaning you can reduce for e.g policy nat Aces and allocate memory to ACLs.

Syed

Review Cisco Networking products for a $25 gift card