12-15-2008 09:18 PM - edited 03-06-2019 02:59 AM
Can not configure Qos for SVI interface.
Configuration:
Class Map match-any class-default (id 0)
Match any
Class Map match-any cl-voice (id 1)
Match access-group 110
Class Map match-all cl-input (id 2)
Match input-interface GigabitEthernet1/0/1
---
Extended IP access list 110
10 permit ip 192.168.23.0 0.0.0.255 any
20 permit ip 192.168.36.0 0.0.0.255 any
30 permit ip 192.168.34.0 0.0.0.255 any
---------
Policy Map POL-VOICE
Class cl-input
police 10000000 100000 exceed-action drop
Policy Map POL-PARENT
Class cl-voice
set dscp 31
service-policy POL-VOICE
----
interface Vlan120
ip address 172.16.19.2 255.255.255.0
service-policy input POL-PARENT
Networks in the access list are Ip phone networks. Need to offer a rate limit to those networks.
When executing sh policy-map interface vlan 120:
Vlan120
Service-policy input: POL-PARENT
Class-map: cl-voice (match-any)
0 packets, 0 bytes
5 minute offered rate 0 bps, drop rate 0 bps
Match: access-group 110
Service-policy : POL-VOICE
Class-map: cl-input (match-all)
0 packets, 0 bytes
5 minute offered rate 0 bps, drop rate 0 bps
Match: input-interface GigabitEthernet1/0/1
Class-map: class-default (match-any)
0 packets, 0 bytes
5 minute offered rate 0 bps, drop rate 0 bps
Match: any
Class-map: class-default (match-any)
226 packets, 15016 bytes
5 minute offered rate 0 bps, drop rate 0 bps
Match: any
Interface gigabit 1/0/1 is an ingress port from those networks in this case
12-15-2008 10:01 PM
Hello Fuad,
under int gi1/0/1 you may need to add
mls qos vlan-based
see
Hope to help
Giuseppe
12-15-2008 10:06 PM
I have done it as well, no results
12-16-2008 01:53 AM
Hello Faz,
try to avoid to use hierarchical policy maps to see what happens
Hope to help
Giuseppe
12-16-2008 03:06 AM
are you using 3560 switch?
simple question
do u have qos enabled with
mls qos command
12-16-2008 03:19 AM
The switch is 3750ME
mls qos is enabled
12-21-2008 11:04 PM
The issue is still there. Desperately need help
12-22-2008 02:13 AM
for ACL 110 can you make one line instead of 3 lines and try it
also make it match ip any to any and try it as well
good luck
12-22-2008 03:27 AM
I made it match ip any any - it worked fine. However, when configuring various networks nothing works
12-22-2008 03:32 AM
then my suspect was almost right
i am happy it at least worked even not fully
i think this tied of policing with HQ policies support one line ACL
just put a supper address for voice vlan in one line acl only and let me know
like 192.168.1.0 /23
good luck
12-22-2008 03:41 AM
I deleted all networks from access list and left only one - no results, I am afraid. However, with match ip any any it still works fine. I am really confused
12-22-2008 03:48 AM
ok as long as u matching voip traffic make ur acl or class map based on cos or dscp
like match ip any any dscp ef
like this
in this case u will make it better and get it work for that voip traffic
12-22-2008 03:53 AM
didnt help either..
12-22-2008 04:51 AM
ok if u concerned about one input interface just apply ur policer policy on that physical interface
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: