12-15-2008 09:18 PM - edited 03-06-2019 02:59 AM
Can not configure Qos for SVI interface.
Configuration:
Class Map match-any class-default (id 0)
Match any
Class Map match-any cl-voice (id 1)
Match access-group 110
Class Map match-all cl-input (id 2)
Match input-interface GigabitEthernet1/0/1
---
Extended IP access list 110
10 permit ip 192.168.23.0 0.0.0.255 any
20 permit ip 192.168.36.0 0.0.0.255 any
30 permit ip 192.168.34.0 0.0.0.255 any
---------
Policy Map POL-VOICE
Class cl-input
police 10000000 100000 exceed-action drop
Policy Map POL-PARENT
Class cl-voice
set dscp 31
service-policy POL-VOICE
----
interface Vlan120
ip address 172.16.19.2 255.255.255.0
service-policy input POL-PARENT
Networks in the access list are Ip phone networks. Need to offer a rate limit to those networks.
When executing sh policy-map interface vlan 120:
Vlan120
Service-policy input: POL-PARENT
Class-map: cl-voice (match-any)
0 packets, 0 bytes
5 minute offered rate 0 bps, drop rate 0 bps
Match: access-group 110
Service-policy : POL-VOICE
Class-map: cl-input (match-all)
0 packets, 0 bytes
5 minute offered rate 0 bps, drop rate 0 bps
Match: input-interface GigabitEthernet1/0/1
Class-map: class-default (match-any)
0 packets, 0 bytes
5 minute offered rate 0 bps, drop rate 0 bps
Match: any
Class-map: class-default (match-any)
226 packets, 15016 bytes
5 minute offered rate 0 bps, drop rate 0 bps
Match: any
Interface gigabit 1/0/1 is an ingress port from those networks in this case
12-15-2008 10:01 PM
Hello Fuad,
under int gi1/0/1 you may need to add
mls qos vlan-based
see
Hope to help
Giuseppe
12-15-2008 10:06 PM
I have done it as well, no results
12-16-2008 01:53 AM
Hello Faz,
try to avoid to use hierarchical policy maps to see what happens
Hope to help
Giuseppe
12-16-2008 03:06 AM
are you using 3560 switch?
simple question
do u have qos enabled with
mls qos command
12-16-2008 03:19 AM
The switch is 3750ME
mls qos is enabled
12-21-2008 11:04 PM
The issue is still there. Desperately need help
12-22-2008 02:13 AM
for ACL 110 can you make one line instead of 3 lines and try it
also make it match ip any to any and try it as well
good luck
12-22-2008 03:27 AM
I made it match ip any any - it worked fine. However, when configuring various networks nothing works
12-22-2008 03:32 AM
then my suspect was almost right
i am happy it at least worked even not fully
i think this tied of policing with HQ policies support one line ACL
just put a supper address for voice vlan in one line acl only and let me know
like 192.168.1.0 /23
good luck
12-22-2008 03:41 AM
I deleted all networks from access list and left only one - no results, I am afraid. However, with match ip any any it still works fine. I am really confused
12-22-2008 03:48 AM
ok as long as u matching voip traffic make ur acl or class map based on cos or dscp
like match ip any any dscp ef
like this
in this case u will make it better and get it work for that voip traffic
12-22-2008 03:53 AM
didnt help either..
12-22-2008 04:51 AM
ok if u concerned about one input interface just apply ur policer policy on that physical interface
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide