Rule Usage (Devices)


ExtremeControl enables you to manage ACL rules onExtremeXOS/Switch Engine devices on which version 30.5 or later is installed. ExtremeXOS/Switch Engine devices on which versions 30.5 or later are installed support ACL data via REST.

The Rule Usage tab displays a raw usage report of the Content-Aware Processors (CAP) on the device. ExtremeXOS/Switch Engine uses VLAN-based CAP (VCAP) and Ingress CAP (ICAP) to implement Policy on the device. The VCAP and ICAP are programmed using logical groupings of rules called slices.

A slice is typically associated with an action type (e.g. CoS, Permit/Deny). The slice allocation is dependent on the firmware and configuration on the device. ExtremeControl uses this raw data to determine if the Policy Domain configuration can be enforced successfully to the device you select on the Policy > Devices / Port Groups > Devices tab.

Select the Refresh () button to reload the data from the selected device. The table includes the following columns:

Slice
Displays the slice identifier for each port-group and look-up stage on the device. Each port-group is associated with a unique chip on the device. Each look-up stage is associated with a unique Content-Aware Processor (CAP) on the chip.
Type
Displays a description of how the slice is allocated by the device.
Slices Used
Displays the number of slices allocated for a given stage or port-group.
Rules Used (%)
Displays the number (and percentage) of rules used for a give slice, stage, or port-group.
Rules Available (%)
Displays the number (and percentage) or rules available for a given slice, stage, or port-group.
  NOTES:
  • Rule Usage data displays only forExtremeXOS/Switch Engine devices on which version 30.7 or later is installed.
  • Rule Usage data displays only for ExtremeXOS/Switch Engine devices that support the extreme-acl-usage REST API.
  • The Rule Usage data displays only when a single device is selected in the Policy > Devices / Port Groups > Devices tree
  • The Rule Hit Count only displays when a supporting device is selected in the Policy > Devices / Port Groups > Devices tree.
  • The selected device can be in Rule mode or ACL Rule mode for Rule Usage data to display.

For information on related help topics: