
48
Cisco 10008 Router PRE4 Installation and Configuration Guide
OL-13840-01
hw-module tcam
hw-module tcam
To configure the router to merge (or not merge) access control list entries (ACEs) when compiling and
storing ACEs in Ternary Content Addressable Memory (TCAM), use the
hw-module tcam
command in
global configuration mode. To not merge ACEs, use the
no
form of the command.
hw-module tcam compile
{
no-merge
|
with-pt-tree
}
no
hw-module tcam compile with-pt-tree
Syntax Description
Command Default
The router uses the original ACE to program TCAM (
no-merge
option).
Command Modes
Global configuration
Command History
Usage Guidelines
Ternary Content Addressable Memory (TCAM) is a hardware device on the PRE3 and the PRE4 that
enables QoS ACLs to be collapsed and stored densely. Instead of using the TurboACL algorithm of the
PRE3, the PRE3 uses the TCAM to implement ACL lookup for quick retrieval.
The PRE2 does not support the following features for IPv4 security ACLs:
•
IPv4 mini-ACLs (less than 8 ACEs)
•
Incremental compilation
IPv4 template ACLs have the same functionality on the PR2 as the PRE2 implementation.
The router supports the collection of per-ACE statistical information using the
hw-module tcam
compile no-merge
command.
When configured, the
hw-module tcam
command applies to all newly added or modified ACLs and
QoS-related TCAM entries. When you reload the router or microcode, the command applies to all ACL
and QoS-related TCAM entries.
no-merge
Programs the TCAM using the original ACE instead of merging ACEs. This
option enables you to display per-ACE statistics for security access control
lists (ACLs).
with-pt-tree
Uses a TCAM merge algorithm to collapse ACEs, which improves the
utilization and scalability of TCAM. However, this option aggregates
statistical information at the ACL level, disabling the router’s ability to
provide per-ACE statistics for security ACLS.
Release
Modification
12.2(31)SB2
This command was introduced on the PRE3 for the Cisco 10000 series
router.
12.2(33)SB
This command was introduced on the PRE4 for the Cisco 10000 series
router.