Enterasys Networks XSR-Series manual Diffserv Dscp field addressing

Page 41

10.1 DIFFSERV DSCP field addressing

XSR-1805#show running-config

!!

!Version 4.0.0.0, Built Mar 26 2003, 19:47:17

hostname XSR-1805

class-map DSCP_EF match access-group 2 match ip dscp EF

policy-map DSCP_EF class DSCP_EF

priority high 12000

access-list 2 permit 10.10.10.0 0.0.0.255

interface FastEthernet1 description "LAN-Interface1"

ip address 10.10.10.1 255.255.255.0 no shutdown

interface FastEthernet2 description "LAN-Interface2"

ip address 20.20.20.1 255.255.255.0 service-policy output DSCP_EF

no shutdown

end

XSR-1805#

DSCP default values:

af11 Match packets with AF11 DSCP (001010) af12 Match packets with AF12 DSCP (001100) af13 Match packets with AF13 DSCP (001110) af21 Match packets with AF21 DSCP (010010) af22 Match packets with AF22 DSCP (010100) af23 Match packets with AF23 DSCP (010110) af31 Match packets with AF31 DSCP (011010) af32 Match packets with AF32 DSCP (011100) af33 Match packets with AF33 DSCP (011110) af41 Match packets with AF41 DSCP (100010) af42 Match packets with AF42 DSCP (100100) af43 Match packets with AF43 DSCP (001010) cs1 Match packets with CS1 DSCP (001000) cs2 Match packets with CS2 DSCP (010000) cs3 Match packets with CS3 DSCP (011000) cs4 Match packets with CS4 DSCP (100000) cs5 Match packets with CS5 DSCP (101000) cs6 Match packets with CS6 DSCP (110000) cs7 Match packets with CS7 DSCP (111000) default Match packets with default DSCP (000000)

ef Match packets with Expedited Forwarding (EF) DSCP (101110)

Configuration Guide

Page 41 of 55

Image 41
Contents Configuration Guide Table of Contents Appendix Helpful commands for using the XSR platformIP-Static-routing IP-Loopback Interface IP-Address and Secondary Addresses configurationIP-OSPF-routing IP-RIPv1,v2-routing Ip local pool 10th 10.10.10.0 Sntp Simple Network Time Protocol Duplex half System login bannerDuplex full Configuration Guide XSR-1805config#access-list 110 move 1 Access control list moving online editingVirtual Router Redundancy Protocol RFC Router-2-BackupRouter-1-Master Hostname XSR-18051Vrrp 1 priority Vrrp 1 master-respond-ping no shutdown Vrrp monitor interface function, interface trackingNAT static bindings Access-list 10 permit 10.10.10.0NAT dynamic with PAT Port Address Translation Ip address 10.10.10.1 255.255.255.0 no shutdownDialer Interface Controller e1 0/2/0 clock source internal no shutdown Dialer Backup interface functionUsername remote privilege 0 password is not displayed PAP for authentication PPPInterface Dialer0 dialer pool Chap for authentication PPPUsername remote privilege 0 cleartext iamRemote Dialer-list 1 protocol ip list XSR-1805-1config#aaa user XSR-1805-1config-aaa#password XSRVPN via Dialer Interface rtr1 VPN via Dialer Interface rtr2 Dialer Int. PRI to BRI with D-channel-callbackcentral-site Ppp pap sent-username central password xsr ppp multilinkDialer Int. PRI to BRI with D-channel-callbackremote1-site Ppp pap sent-username remote1 password xsr1 ppp multilinkDialer Int. PRI to BRI with D-channel-callbackremote2-site Ppp pap sent-username remote2 password xsr2 ppp multilinkIsdn config for BRIx/x Isdn switch type changing Dialer-group Isdn callbackDialer caller 112233 callback dialer remote-name XSR-Remote Isdn multilink / Isnd channel bundling PPPoE on Adsl interface with chap authentication AAA Authentication Authorization Accounting Radius SSH / Telnet Ip ssh server disable Ip telnet server disableSyslog function, Server local-buffer Logging Snmp MediumSnmp v1/v2/v3 Snmp configuration /contact/location/parameter0r1 VPN Ipsec site-to-site tunnel via pre-shared key XSR-18051config#aaa user XSR-18051config-aaa#password XSRRouter-1 Ip route 80.80.80.0 255.255.255.00r2 VPN Ipsec site-to-site tunnel via pre-shared key XSR-18052config#aaa user XSR-18052config-aaa#password XSRRouter-2 Ip route 10.10.10.0 255.255.255.0VPN Ipsec site-to-site tunnel certification PKI Password Re-enter password XSR-18051config#crypto ca identity Enterasys-Networks-CAXSR-18051config#crypto ca crl request Enterasys-Networks-CA Request certificate from CA y/n ? yENTITY-ACTIVE Certification control / certificates / Crls / CA identityPptp encrypt mppe auto VPN Pptp User terminationXSR-18051config#aaa user XSR-18051config-aaa#password XSR XSR-18052config#aaa user XSR-18052config-aaa#password XSR Version 6.0.0.0, Built Sep 14 2003 5r1 GRE native site-to-site tunnel5r2 GRE native site-to-site tunnel Diffserv Dscp field addressing Description internalloopbackPrivate ip address 13.13.13.1 Firewall configurationDescription InteralnetworkPrivate ip address 10.10.10.1 Ip address 30.30.30.1 Vlan configuration 802.1q tagged routingIp address 20.20.20.1 Version 2.02, Built Feb 24 2003 A1.2 ping & tracerouteVersion 4.0.0.0, Built Mar 26 2003 XSR-1805 uptime is 0 days, 2 hours, 23 minutesA1.4 telnet to other routers Current operational duplex mode is negotiated to fullPhysical link is currently up Current operational speed is negotiated to 100 Mb/sA1.6 verify the flash file checksum A1.5 flash/ cflash/ dir, rename, copy commandsB1.1 show ip arp B1.0 show ip routeC1.1 show crypto isakmp sa C1.0 show tunnelsC1.2 show crypto ipsec sa C1.3 show crypto mapC1.5 show interface vpn / GRE via Ipsec C1.4 show tunnels / GRE via IpsecC1.6 show crypto ipsec sa / GRE via Ipsec C1.7 show ip route / GRE via IpsecMTU is 1492 bytes D1.1 show ip interface atm 1/0.1D1.2 show controllers atm 1/0 VPI/VCI 1/32 D1.3 show controllers atm 1/0.1Administrative State is Enabled Operational State is UP ATM 1/0 is Admin Up / Oper UpD1.4 show interface atm 1/0 IfLastChange 001609D1.5 show interface atm 1/0.1 ATM 1/0.1 is Admin Up / Oper UpState Opened PPPoE is Oper UpChap authentication success with ATM 1/0.1 PPP is Admin Up / Oper UpD1.6 show ppp interface atm 1/0.1 Current StateGetting Help