[112722] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Netflow on SUP720-3BXL

daemon@ATHENA.MIT.EDU (Jon Lewis)
Sun Mar 15 10:00:57 2009

Date: Sun, 15 Mar 2009 10:00:43 -0400 (EDT)
From: Jon Lewis <jlewis@lewis.org>
To: Andy Bierlair <globichen@gmail.com>
In-Reply-To: <d626d8700903141855w20a5be31vda6aaf528610b559@mail.gmail.com>
Cc: nanog@nanog.org
Errors-To: nanog-bounces@nanog.org

On Sun, 15 Mar 2009, Andy Bierlair wrote:

> Im trying to run netflow on one of our Cisco core routers (SUP720-3BXL),
> but I think I am hitting some limitations because of this:
>
> %EARL_NETFLOW-SP-4-TCAM_THRLD: Netflow TCAM threshold exceeded, TCAM
> Utilization [99%]
>
> TCAM Utilization             :   100%
>
> Aggregated traffic: 7-8 GBIT/s
>
> Packets per Second: 1.0 - 1.2 Million

AFAIK, at that traffic level, you will have to do sampled netflow.  Try
mls sampling time-based 64 [in global]
mls netflow sampling [in interface]

and see if that stops your TCAM utilization issues.  You may have to 
sample even less flow data.


----------------------------------------------------------------------
  Jon Lewis                   |  I route
  Senior Network Engineer     |  therefore you are
  Atlantic Net                |
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________


home help back first fref pref prev next nref lref last post