We classify / mark traffic inbound on LAN interface and shape / queue on outbound interface in a DMVPN / GETVPN environment. Our understanding is that with classification and marking on LAN interface, DSCP / TOS bits are preserved (copied to IP Header during IPSEC encryption)on Tunnel interface. Therefore, original DSCP settings would be preserved and visible into carrier network.
* is our understanding on preserved DSCP values correct?
* how could we verify / view, from the router itself, the DSCP are exiting the interface to the carrier