【文章內容簡介】
lassmap matchany Batchapplicationmatch accessgroup Batch classmap matchany OAapplicationmatch accessgroup OApolicymap SETDSCPclass Keyapplicationset dscp 46class Voiceapplicationset dscp 34class Videoapplicationset dscp 36class Interactiveapplicationset dscp 26class Batchapplicationset dscp 18class OAapplicationset dscp 10class classdefaultset dscp 0216。 將定義的Policy應用到連接一級分行上聯(lián)路由器的Vlan上interface vlan name servicepolicy output SETDSCP 一級分行上聯(lián)路由器由于一級分行骨干交換機已經(jīng)將數(shù)據(jù)流進行了分類和染色,因此一級分行上聯(lián)路由器就可以根據(jù)染色的結果使用LLQ隊列技術為不同類別的數(shù)據(jù)流配置不同的帶寬。具體的分類方式、采用的隊列技術和丟棄策略如下表所示:類別dscp值所屬隊列丟棄策略Keyapplication48(路由協(xié)議)、46PQ尾丟棄Voiceapplication34PQ尾丟棄Videoapplication36PQ尾丟棄Interactiveapplication26PQ尾丟棄Batchapplication18CBWFQWREDOAapplication10default0一級分行上聯(lián)路由器都是思科的7507路由器,配置方法如下:216。 大規(guī)模分行//啟用ip cef distributedip cef distributedclassmap matchany Keyapplication match ip dscp cs6 match ip dscp efclassmap matchany Voiceapplication match ip dscp af41classmap matchany Videoapplication match ip dscp af42classmap matchany Interactiveapplication match ip dscp af31classmap matchany Batchapplication match ip dscp af21classmap matchany OAapplication match ip dscp af11policymap QoS_DC class Keyapplication priority bandwidth class Voiceapplication priority bandwidth class Videoapplication priority bandwidth class Interactiveapplication priority bandwidth class Batchapplication bandwidth percent {value} randomdetect dscpbased class OAapplication bandwidth percent value randomdetect dscpbased class classdefault randomdetect dscpbasedinterface ATM interface name pointtopointpvc name vpi/vciclassvc vcclass nameservicepolicy out QoS_DC216。 中小規(guī)模分行//啟用ip cef distributedip cef distributedip accesslist extended Key permit tcp any any eq 2065 permit tcp any eq 2065 anyclassmap matchany Keyapplication match ip dscp cs6 match accessgroup name Key match ip dscp efclassmap matchany Voiceapplication match ip dscp af41classmap matchany Videoapplication match ip dscp af42classmap matchany Interactiveapplication match ip dscp af31classmap matchany Batchapplication match ip dscp af21classmap matchany OAapplication match ip dscp af11policymap QoS_DC class Keyapplication priority bandwidth class Voiceapplication priority bandwidth class Videoapplication priority bandwidth class Interactiveapplication priority bandwidth class Batchapplication bandwidth percent value randomdetect dscpbased class OAapplication bandwidth percent value randomdetect dscpbased class classdefault randomdetect dscpbasedinterface ATM interface name pointtopointpvc name vpi/vciclassvc vcclass nameservicepolicy out QoS_DC由于一級分行上聯(lián)路由器都是思科的7507路由器,因此我們在一級分行上聯(lián)路由器連接數(shù)據(jù)中心的ATM端口上采用LLQ隊列技術,對于LLQ中的非PQ隊列還采用WRED技術。 軟件開發(fā)中心QoS配置模板由于軟件開發(fā)中心承載的大都是非生產(chǎn)業(yè)務,因此對于軟件開發(fā)中心我們需要配置單獨的QoS策略。 數(shù)據(jù)中心Intranet接入交換機Intranet接入交換機根據(jù)數(shù)據(jù)流的IP地址或服務端口號將數(shù)據(jù)流分為五類,對每一類設置不同的dscp值。使用CatOS版本的交換機在數(shù)據(jù)中心數(shù)據(jù)流進入Intranet接入交換機時設置dscp值,使用Native IOS版本的交換機在數(shù)據(jù)中心數(shù)據(jù)流離開Intranet接入交換機時設置dscp值。數(shù)據(jù)流的分類和設置的dscp值如下表所示:所屬類別所包含的業(yè)務特征和類型dscp值關鍵業(yè)務類Dlsw(dscp 46)、網(wǎng)管、實時的監(jiān)控事件(dscp 26)語音業(yè)務類VoIP34視頻會議類視頻會議36OA業(yè)務類AD、Notes application、Notes mail10缺省業(yè)務類其他業(yè)務0n 數(shù)據(jù)中心(北京)CatOS版本216。 配置ACL://實施時請確認以下的ACL是否包括了所有需要QoS保障的應用//Dlsw流量set qos acl ip SETDSCP dscp 46 tcp any any eq 2065set qos acl ip SETDSCP dscp 46 tcp any eq 2065 any//網(wǎng)管、實時的監(jiān)控事件set qos acl ip SETDSCP dscp 26 ip …………//到軟件開發(fā)中心的voip流量set qos acl ip SETDSCP dscp 34 ip any set qos acl ip SETDSCP dscp 34 ip any //到軟件開發(fā)中心(廣州)和軟件開發(fā)中心(珠海)的視頻會議流量,在配置到分行的視頻會議流量時已經(jīng)包括set qos acl ip SETDSCP dscp 36 ip //到軟件開發(fā)中心的OA流量set qos acl ip SETDSCP dscp 10 ip any host set qos acl ip SETDSCP dscp 10 ip any host set qos acl ip SETDSCP dscp 10 ip any host set qos acl ip SETDSCP dscp 10 ip any host 216。 啟用定義的ACL:mit qos acl allset qos acl map SETDSCP 1821n 數(shù)據(jù)中心(上海)Native IOS版本216。 配置ACL、classmap和policymap://實施時請確認以下的ACL是否包括了所有需要QoS保障的應用ip accesslist extended Keypermit tcp any any eq 2065permit tcp any eq 2065 anyip accesslist extended Voicepermit ip any permit ip any ip accesslist extended Videopermit ip ip accesslist extended OApermit ip any host permit ip any host permit ip any host permit ip any host //網(wǎng)管、實時的監(jiān)控事件ip accesslist extended WangGuanpermit ip …………classmap matchany Keyapplicationmatch accessgroup Keyclassmap matchany Voiceapplicationmatch accessgroup Voiceclassmap matchany Videoapplicationmatch accessgroup Videoclassmap matchany OAapplicationmatch accessgroup OAclassmap matchany WangGuanapplicationmatch accessgroup WangGuanpolicymap SETDSCPclass Keyapplicationset dscp 46class WangGuanapplicationset dscp 26class Voiceapplicationset dscp 34class Videoapplicationset dscp 36class OAapplicationset dscp 10216。 將定義的Policy應用到連接Intranet接入路由器的端口上:interface GigabitEthernet1/4 //連接NF12WA01 servicepolicy output SETDSCPinterface GigabitEthernet1/5 //連接NF12WA02 servicepolicy output SETDSCP 數(shù)據(jù)中心Intranet接入路由器由于Intranet接入交換機已經(jīng)將數(shù)據(jù)流進行了分類和染色,因此Intranet接入路由器就可以根據(jù)染色的結果使用MDRR隊列技術為不同類別的數(shù)據(jù)流配置不同的帶寬。具體的分類方式、采用的隊列技術和丟棄策略如下表所示:類別IP Precedence值所屬隊列丟棄策略Keyapplication6(路由協(xié)議)、3(網(wǎng)管、實時的監(jiān)控事件)PQ尾丟棄OAapplication1Round RobinWREDdefault0n 數(shù)據(jù)中心(北京)BF12WA01classmap matchany KeyapplicationKF match ip precedence 6 match ip precedence 5match ip precedence 4match ip precedence 3classmap matchany OAapplicationKF match ip precedence 1policymap QoS_KF class KeyapplicationKF priority class OAapplicationKF band