Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

QOS on ASA5510

I have an ASA5510 and I want to pass voice and data through, I have configured the asa to do QOS, for voice I have done priority and for ftp I have done traffic policing max 56000 burst 10500.

the problem is that when i monitor the service class on the outside interface and the inside interface i see that info is seen corectly. packets are received and send for both voice and ftp but when i do a ftp session the bandwidth is not at 56000 but much more, almost all the line. for voice i see the pcakets go to the LLQ. ONLY PROBLEM IS THE BANDWIDTH.

any ideas


  • Other Security Subjects
New Member

Re: QOS on ASA5510

When you see these conditions are you dropping voice packets? Is the circuit fully loaded?

Good Luck


New Member

Re: QOS on ASA5510

voice packets are not dropping, and the line is not full, but I do see ftp packets being dropped but still I download with almost full capasity say I have a 256kbits line I download ftp with 28kbytes

New Member

Re: QOS on ASA5510

What's your policy configuration?

I've been trying to find a way of policing FTP downloads but due to the dynamic port nature it makes using match access-list in the class map impossible so I've been trying to work out how to use inspect ftp to allocate to a policy-map so that it can be throttled in the same way all my static port traffic is controlled using police policies.

I have much the same situation as you with LLQ for voice on the outside interface and all the policing done using ACL matching on the inside interface.

Does anyone know how to get the police function to montior passive ftp connections?