Reference Guide
QoS CAM Region Limitation
To store QoS service policies, the default CAM profile allocates a partition within the IPv4Flow region.
If the QoS CAM space is exceeded, a message similar to the following displays.
%EX2YD:12 %DIFFSERV-2-DSA_QOS_CAM_INSTALL_FAILED: Not enough space in L3
Cam(PolicyQos) for class 2 (Gi 12/20) entries on portpipe 1 for linecard 12
%EX2YD:12 %DIFFSERV-2-
DSA_QOS_CAM_INSTALL_FAILED: Not enough space in L3 Cam(PolicyQos) for
class 5 (Gi 12/
22) entries on portpipe 1 for linecard 12
If you exceed the QoS CAM space, follow these steps.
1. Verify that you have configured a CAM profile that allocates 24 K entries to the IPv4 system flow
region.
2. Allocate more entries in the IPv4Flow region to QoS.
Dell Networking OS supports the ability to view the actual CAM usage before applying a service-policy.
The test cam-usage service-policy command provides this test framework. For more information,
refer to Pre-Calculating Available QoS CAM Space.
Implementing ACLs on Dell Networking OS
You can assign one IP ACL per interface with Dell Networking OS. If you do not assign an IP ACL to an
interface, the software does not use it in any other capacity.
The number of entries allowed per ACL is hardware-dependent.
If you enable counters on IP ACL rules that are already configured, those counters are reset when a new
rule is inserted or prepended. If a rule is appended, the existing counters are not affected. This is
applicable to the following features:
• L2 Ingress Access list
• L2 Egress Access list
• L3 Ingress Access list
• L3 Egress Access list
NOTE: IP ACLs are supported over VLANs in Dell Networking OS version 6.2.1.1 and higher.
ACLs and VLANs
There are some differences when assigning ACLs to a VLAN rather than a physical port.
For example, when using a single port-pipe, if you apply an ACL to a VLAN, one copy of the ACL entries is
installed in the ACL CAM on the port-pipe. The entry looks for the incoming VLAN in the packet. Whereas
if you apply an ACL on individual ports of a VLAN, separate copies of the ACL entries are installed for each
port belonging to a port-pipe.
126
Access Control Lists (ACLs)










