Classes And Class Members Overview; Resource Limits - Cisco Catalyst 6500 Series Configuration Manual

Catalyst 6500 series switch and cisco 7600 series router firewall services
Hide thumbs Also See for Catalyst 6500 Series:
Table of Contents

Advertisement

Configuring Resource Management
The FWSM does not limit the bandwidth per context; however, the switch containing the FWSM can
Note
limit bandwidth per VLAN. See the switch documentation for more information.
This section includes the following topics:

Classes and Class Members Overview

The FWSM manages resources by assigning contexts to resource classes. Each context uses the resource
limits set by the class. This section includes the following topics:

Resource Limits

When you create a class, the FWSM does not set aside a portion of the resources for each context
assigned to the class; rather, the FWSM sets the maximum limit for a context. If you oversubscribe
resources, or allow some resources to be unlimited, a few contexts can "use up" those resources,
potentially affecting service to other contexts.
You can set the limit for all resources together as a percentage of the total available for the device. Also,
you can set the limit for individual resources as a percentage or as an absolute value.
You can oversubscribe the FWSM by assigning more than 100 percent of the resources across all
contexts. For example, you can set the Bronze class to limit connections to 20 percent per context, and
then assign 10 contexts to the class for a total of 200 percent. If contexts concurrently use more than the
system limit, then each context gets less than the 20 percent you intended. (See
Figure 5-8
Max. 20%
(199,800)
(159,984)
(119,988)
(79,992)
(39,996)
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide
5-12
Classes and Class Members Overview, page 5-12
Configuring a Class, page 5-14
Resource Limits, page 5-12
Default Class, page 5-13
Class Members, page 5-14
Resource Oversubscription
Total Number of System Connections = 999,900
16%
12%
8%
4%
1
2
3
Contexts in Class
4
5
6
7
8
Chapter 5
Managing Security Contexts
Figure
Maximum connections
allowed.
Connections in use.
Connections denied
because system limit
was reached.
9
10
5-8.)
OL-6392-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

7600 series

Table of Contents