Chapter 12
| Security Measures
Access Control Lists
– 294 –
Figure 189: Showing the Rules Configured for a Time Range
Showing
TCAM Utilization
Use the Security > ACL (Configure ACL - Show TCAM) page to show utilization
parameters for TCAM (Ternary Content Addressable Memory), including the
number policy control entries in use, the number of free entries, and the overall
percentage of TCAM in use.
Command Usage
Policy control entries (PCEs) are used by various system functions which rely on
rule-based searches, including Access Control Lists (ACLs), IP Source Guard filter
rules, Quality of Service (QoS) processes, QinQ, MAC-based VLANs, VLAN
translation, or traps.
For example, when binding an ACL to a port, each rule in an ACL will use two PCEs;
and when setting an IP Source Guard filter rule for a port, the system will also use
two PCEs.
Parameters
These parameters are displayed:
◆ Total Policy Control Entries – The number policy control entries in use.
◆ Free Policy Control Entries – The number of policy control entries available for
use.
◆ Entries Used by System – The number of policy control entries used by the
operating system.
◆ Entries Used by User – The number of policy control entries used by
configuration settings, such as access control lists.
◆ TCAM Utilization – The overall percentage of TCAM in use.