[c-nsp] Policing individual vlans on 3750

Jose lobo at allstream.net
Sat Jul 26 00:43:48 EDT 2008


Hi everyone.  Ran into a little snag this afternoon when I needed to 
police layer 2 customers on a single port in a similar fashion to the 
way we do it on the 3550-24s.  Normally we would we create the aggregate 
policer, use a class map that matches on vlan id and another one that 
matches any ip per customer...we combine these under a single policy-map 
and apply it to the interface.


When trying this similar process on the 3750, we noticed that we aren't 
able to match on vlan:

copsw01(config)#class-map match-all ARPI3-IP-Trunk

copsw01(config-cmap)#match ?

  access-group     Access group

  input-interface  Select one or more input interfaces to match

  ip               IP specific values


So now we're left wondering how can we have a trunk port police 
invididual vlans if the option is not there to choose?  BTW, the version 
of IOS we're using is c3750-ipbasek9-mz.122-25.SEE2.

Thanks.

Jose



More information about the cisco-nsp mailing list