Nortel Networks 5520, 5530, 5510 manual ERS5500 Add L2 elements for Vlan 110

Page 66

Filters and QoS Configuration for ERS 5500

 

 

Technical Configuration Guide

v2.0

NN48500-559

ERS5500: Step 2 – Add L2 elements for VLAN 110 and 120

5500(config)#qos l2-element 1 vlan-min 110 vlan-max 110 vlan-tag tagged ethertype 0x800

5500(config)#qos l2-element 1 vlan-min 120 vlan-max 120 vlan-tag tagged ethertype 0x800

12.6.1.3 Configure Classifier and Classifier Blocks

The following steps add two classifiers, one with IP element 1 and L2 element 1 and the second with IP element 1 and L2 element 2. We will also create a classifier block with two members, representing classifier id 1 and 2

ERS5500 Step 1 – The following commands add a classifier with IP element 1 and L2 element 1

5500(config)#qos classifier 1 set-id 1 name c1 element-type ip element-id 1

5500(config)# qos classifier 2 set-id 1 name c1 element-type l2 element-id 1

ERS5500 Step 2 – The next two commands add the second classifier with IP element 1 and L2 element 2

5500(config)#qos classifier 3 set-id 2 name c2 element-type ip element-id 1

5500(config)#qos classifier 4 set-id 2 name c2 element-type l2 element-id 2

ERS5500 Step 3 – Add a classifier block with classifier 1 with an in-provide action of Gold service and classifier 2 with an in-profile action of Silver service

5500(config)# qos classifier-block 1 block-number 1 name Pol_1 set-id 1 in- profile-action 5

5500(config)# qos classifier-block 2 block-number 1 name Pol_1 set-id 2 in- profile-action 4

12.6.1.4 Create Policy

Create the policies with the classifiers created above. Please refer to table 3 in reference to the policy action.

ERS5500 Step 1 – create a new policy with classifier block 1 with a non-match-action of Bronze service

5500(config)#qos policy 1 name Pol_1 if-group Int_group_2 clfr-type block clfr- id 1 non-match-action 3 precedence 10

___________________________________________________________________________________________________________________________

Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved.

 

External Distribution

65

Image 66
Contents Ethernet Routing Switch NN48500-559 Abstract Table of Contents List of Figures List of TablesConventions Document UpdatesSymbols TextOverview Ethernet Routing Switch 5500 QoS and Filtering Unrestricted Ports ClassificationUntrusted Ports ƒ Layer 2 Classifier ElementsActions Supported StatisticsQoS Flow Chart Filter Functionality Overall Classification FunctionalityClassifier Block Functionality Port Range Functionality 7, 15, 31, 63 255, 511, 1025 4095, 8191 32762, or Min =Default Policy Drop Action PoliciesNN48500-559 5520-24T-PWRconfig#qos agent buffer large maximum regular 5520-24T-PWRconfig#default qos agent bufferQueue Sets Ethernet Routing Switch 5500 Egress CoS Queuing Egress CoS QueuingCoS 5520-24T-PWRconfig#show qos queue-set-assignment 5520-24T-PWRconfig#qos agent queue set5520-24T-PWRconfig#default qos agent queue-set 5520-24T-PWRconfig#qos agent reset-defaultEgress Queue Recommendations Traffic Meter and Shaping Bucket SizeActual Bucket Size in Bytes Actual size in bytes Interface Actual Bucket SizePolicing Traffic Parameter DescriptionExample Interface Shaper Meter Bucket Size and DurationBucket Size Max burst rate Committed rate Duration MSec 5530-24TFDconfig#show qos if-shaper port Binary Default Nortel Class of ServiceDefault Nortel CoS Markings Hex DecimalIP-ACL Configuration QoS Access Lists ACLACL Configuration Config#qos ip-acl name 1..16 character string ?ACL Configuration Example 2 L2-ACL ConfigurationACL-Assign Configuration Config#qos l2-acl name 1..16 character string ?Verification 5530H-24TFD#show qos acl-assign5530H-24TFD#show qos ip-acl 5530H-24TFD#show qos policy 5500config#no qos ip-acl 5500config#no qos acl-assign5500config#no qos acl-assign 1 port 1/19 Changing ACLDynamic ARP Inspection Configuration IP Security FeaturesDhcp Snooping Configuration Dhcp SnoopingIP Source Guard Configuration IP Source GuardBpdu Filtering Configuration Bpdu FilteringQoS Applications Number of Classifiers Used Feature QoS Interface ApplicationsConfiguration Example ARP SpoofingDhcp Attacks Dhcp Snooping10.3 DoS Bpdu Blocking ERS5500-48T#show qos if-assign Configuration Steps Policy ConfigurationRole Combination ERS5500-48T#show qos if-groupAdding IP and L2 Element ERS5500-48Tconfig#qos ip-element 1-64000?Classification IP ElementAdding a Classifier Adding a Classifier BlockMeters Parameters and variables DescriptionAdd a New Policy Configuration Examples Pre-defined ValuesQoS Action Configure the Interface Role Combination Configuration Example 1 Traffic Meter Using Policies12.2.1 ERS5500 Configuration Using Policies Configure the IP elementsConfigure Meters Configure the Classifier BlockERS5500 Create the classifier block ERS5500 Create the policy Configure the PolicyVerify Operations Verify the Role CombinationVerify Classifier and Classifier Block Configuration Name m1ERS5500-24T#show qos classifier-block Verify Policy Configuration Verify that the QoS Policy 12.3.1 ERS5500 Configuration IP ACL, Dhcp Snooping, ARP Inspection, and Source GuardERS5500 Add IP address to Vlan 700 and enable Ospf ERS5500 Enable ARP-Inspection for VLAN’s 110 ERS5500 Assign the IP-ACL’s to ports Verify DHCP-SnoopingVerify ARP Inspection VIDVerify ACL Configuration Verify IP Source GuardNN48500-559 NN48500-559 ERS5500-24T#show qos acl-assign Configuration Example 3 Port Range Using ACL or Policy TCP Port RangeConfiguration Using Policies Configure the PoliciesERS5500 Create IP elements for UDP port range Configuration Using IP-ACL’s ERS5500 Remark all other traffic to Bronze12.5.1 ERS5500 Configuration Using Policies Create Policy12.5.2 ERS5500 Configuration Using IP-ACL’s ERS5500 Pass all other traffic with standard CoSERS5500 Assign the L2-ACL’s to ports Configuration Example 5 L2 and L3 Classification 12.6.1 ERS5500 Configuration Using PoliciesConfigure Classifier and Classifier Blocks ERS5500 Add L2 elements for Vlan 11012.7.1 ERS5500 Configuration Dscp Mapping via Un-restricted Port RoleACL Configuration Policy ConfigurationView the Queue Assignments ID IDConfiguration Example 7 Interface Shaping Enable Shaping on PortVerify Shape Rate Configuration Software Baseline Reference DocumentationContact us