cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1674
Views
0
Helpful
7
Replies

VPN QOS Design

peter.williams
Level 1
Level 1

I am currently looking into designing a VPN network over the internet with QOS for video and voice using ASA and 2811 routers.  Does anybody have any success stories or sample configurations that I could look at, to see if it is even a possibility?

Thank you

1 Accepted Solution

Accepted Solutions

As explained in http://supportforums.cisco.com/docs/DOC-1230 you use DSCP to match on traffic you prioritize and the rest you police.

You can also shape the rest of the traffic instead of police.

It explains it in the link provided.

PK

View solution in original post

7 Replies 7

Panos Kampanakis
Cisco Employee
Cisco Employee

I think this page https://supportforums.cisco.com/docs/DOC-1230 is exactly what you need.

It has examples for VPN QoS.

I hope it helps.

PK

Thank you for your post, is ther anything that I will need to put into the 2811 router on the other end?  Also I have multiple sites connected to the ASA, will the configuration change becasue of the multiple vpn tunnels on the ASA?

Thank you

Please do read the doc.

To briefly answer your questions:

- is there anything that I will need to put into the 2811 router on the other end?

For best results you need to QoS both ends outbound.

- will the configuration change because of the multiple vpn tunnels on the ASA?

check the config. You can QoS on a per tunnel basis.

Rate if helpful.

Regards,

PK

OK, I am sorry, I read the document but it only deals with the ASA (which is great) but I do not see anything on what the router side should look like, I probably just missing it.  Is there any other examples for the QOS between an ASA and a router using VPN?

Thank you

For router QoS you follow the example here http://www.cisco.com/en/US/products/ps6635/products_white_paper09186a008018913f.shtml

Good luck with the config.

PK

Thank you for your post, I need to give some more information on the sites - I will have a Site-to-Site VPN tunnel from a router in Amsterdam to an ASA in the US over the internet.  There will be VOIP phones and Tandberg video conferencing unit as well as PC's there in Amsterdam.  I want to provide the best possible QOS design.  I would assume that I will need to use DSCP to use the QOS properly over the VPN tunnel.  the previous examples looks like it is policing the bandwidth, is there anything that will prioritze the packets over the VPN tunnel between the sites or am I on the wrong track?

Thank you

As explained in http://supportforums.cisco.com/docs/DOC-1230 you use DSCP to match on traffic you prioritize and the rest you police.

You can also shape the rest of the traffic instead of police.

It explains it in the link provided.

PK

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: