[c-nsp] mls qos vlan-based issues
Leslie Meade
lmeade at signal.ca
Fri Feb 27 15:14:54 EST 2009
I have an issue that I cannot work out.
I had all my policing statements working, when I had my asa's plugged
into an old 6509 via a fiber port that was trunked on both ends and the
ports that the asa's were plugged into were normal switch ports.
I have now plugged them directly into the new 6509 and now I am only
getting policing on downloads only.
policy-map 8_Mb_Internet
class class-default
police cir 8388500 bc 265625 be 265625 conform-action transmit
exceed-action drop violate-action drop
interface GigabitEthernet5/8
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
mls qos vlan-based
interface Vlan16
ip address 10.1.16.2 255.255.255.0
ip access-group Productions in
ip helper-address 10.1.6.10
no ip redirects
no ip unreachables
ip flow ingress
ip route-cache flow
no ip mroute-cache
mls netflow sampling
standby 15 ip 10.1.16.1
standby 15 priority 250
standby 15 preempt
service-policy input 8_Mb_Internet
service-policy output 8_Mb_Internet
Any ideas what could be causing the qos to police only downloads and not
up loads ?
More information about the cisco-nsp
mailing list