TCAM lookups

TCAM lookups are a finite hardware resource used in the application of ACLs and policies to packets being processed in switch hardware. ADC (analytics data collection) also consumes TCAM lookups. There are a limited number of ACL and policy features that can be enabled at the same time.

有10个TCAM查找可以使用的8320 switch and 9 TCAM lookups available on the 8325 switch. Each of these features uses at least one TCAM lookup when enabled. At most (eight on the 8320 switch, 3 on 8325 switch) classifier features can be configured at the same time.

8320:
Ingress Port IPv4 ACL Ingress Port IPv6 ACL Ingress Port MAC ACL Ingress VLAN IPv4 ACL Ingress VLAN IPv6 ACL Ingress VLAN MAC ACL Ingress Routed VLAN IPv4 ACL Ingress Routed VLAN IPv6 ACL Ingress Port Policy with IPv4 and/or MAC classes Ingress Port Policy with IPv6 classes Ingress VLAN Policy with IPv4 and/or MAC classes Ingress VLAN Policy with IPv6 classes Ingress Global Policy with IPv4 and/or MAC classes Ingress Global Policy with IPv6 classes Ingress Routed Port Policy with IPv4 classes Ingress Routed Port Policy with IPv6 classes Ingress Routed VLAN Policy with IPv4 classes Ingress Routed VLAN Policy with IPv6 classes Ingress IPv4 Analytics Data Collection (ADC) Ingress IPv6 Analytics Data Collection (ADC)
8325:
Ingress Port IPv4 and/or IPv6 ACL Ingress Port MAC ACL Ingress VLAN IPv4 and/or IPv6 ACL Ingress VLAN MAC ACL Ingress Routed VLAN IPv4 and/or IPv6 ACL Ingress Port Policy with IPv4 and/or MAC classes Ingress Port Policy with IPv6 classes Ingress VLAN Policy with IPv4 and/or MAC classes Ingress VLAN Policy with IPv6 classes Ingress Global Policy with IPv4 and/or MAC classes Ingress Global Policy with IPv6 classes Ingress Routed Port Policy with IPv4 classes Ingress Routed Port Policy with IPv6 classes Ingress Routed VLAN Policy with IPv4 classes Ingress Routed VLAN Policy with IPv6 classes Ingress IPv4 and/or IPv6 Analytics Data Collection (ADC)

8320and8325: There are two lookups available on Egress for these features. Applying both IPv4 and IPv6 ACLs on Routed-Egress at the same time is not permitted.

Egress features that use one lookup:
Egress VLAN IPv4 ACL Egress Routed VLAN IPv4 ACL
Egress features that use two lookups:
Egress VLAN IPv4 ACL Egress VLAN IPv6 ACL Egress Routed VLAN IPv6 ACL
8325 TCAM lookup sharing: TCAM lookups for the following features are shared between corresponding IPv4 and IPv6 features. For example, if three IPv4 features are used with three equivalent IPv6 features, only three TCAM lookups are consumed instead of six. This is assuming the total number of IPv4 and IPv6 entries in each feature are less than 768.
Ingress Port IPv4 ACL; Ingress Port IPv6 ACL Ingress VLAN IPv4 ACL; Ingress VLAN IPv6 ACL Ingress Routed Port Policy with IPv4 classes; Ingress Routed Port Policy with IPv6 classes Ingress Routed VLAN Policy with IPv4 classes; Ingress Routed VLAN Policy with IPv6 classes Ingress IPv4 Analytics Data Collection (ADC); Ingress IPv6 Analytics Data Collection (ADC) Ingress IPv4 VSX; Ingress IPv6 VSX
8320and8325: These features are not classifier-related but do use one TCAM lookup each:
Ingress IPv4 Analytics Data Collection (ADC) Ingress IPv6 Analytics Data Collection (ADC) Ingress IPv4 VSX Ingress IPv6 VSX Ingress MAC VSX Ingress ARP VSX

Features applied on egress use dedicated hardware and do not conflict with any of the features listed in this topic.

8325:Egress VLAN ACLs use two hardware entries for every software entry.