cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1299
Views
0
Helpful
1
Replies

TOS Byte and IPSEC Tunnel

Dudley_Johnson
Level 1
Level 1

I have two sites connected over the Internet via a VPN Tunnell terminated on PIXs at bothe ends. I want to implement QOS on the tunnel. I can mark the packets on the inside of each network and then implemet QOS on the router that connects to the Internet. My concern is that I may loose the setting in the TOS byte when the packet is being encrypted by the PIX. Will the TOS byte be copied to the IPSEC packet even though the tunnel is terminated on the PIX?

[inside net]-PIX- --2620 --- INTERNET ---2620 ---PIX- -- [inside net]

1 Reply 1

nihal.akbulut
Level 1
Level 1

yes, as I know in tunnel mode IPSec copies the TOS to IPSec header. You can also check rfc2401.

Review Cisco Networking products for a $25 gift card