28-H3C VSR1000虛擬路由器流量整形典型配置舉例
本章節下載: 28-H3C VSR1000虛擬路由器流量整形典型配置舉例 (177.82 KB)
H3C VSR1000虛擬路由器流量整形配置舉例
Copyright © 2014 杭州華三通信技術有限公司 版權所有,保留一切權利。 非經本公司書麵許可,任何單位和個人不得擅自摘抄、複製本文檔內容的部分或全部, 並不得以任何形式傳播。本文檔中的信息可能變動,恕不另行通知。 |
|
本文檔介紹了GTS(Generic Traffic Shaping,通用流量整形)的配置舉例。
本文檔不嚴格與具體軟件版本對應,如果使用過程中與產品實際情況有差異,請參考相關產品手冊,或以設備實際情況為準。
本文檔中的配置均是在實驗室環境下進行的配置和驗證,配置前設備的所有參數均采用出廠時的缺省配置。如果您已經對設備進行了配置,為了保證配置效果,請確認現有配置和以下舉例中的配置不衝突。
本文假設您已了解流量整形特性。
如圖1所示,某公司通過專線連接分支機構(圖中左側網絡)與總部(圖中右側網絡),專線中傳輸的流量主要有三類:FTP流量、業務應用流量、IP語音流量。由於整個專線的速率為20Mbps,在總部的邊緣設備Device B上已經配置了相應的流量監管功能:
· IP語音流量的承諾速率為10M;
· 業務應用流量的承諾速率為3M;
· FTP流量的承諾速率為7M。
為配合總部的流量監管,要求在分支機構的設備Device A上配置流量整形功能,對各類流量中突發的超出部分進行緩存,避免數據丟失。
本舉例是在E0301版本上進行配置和驗證的軟件版本。
(1) 在Device A上創建三個流分類,分別匹配三類報文的源IP網段
# 創建基本IPv4 ACL2000,匹配IP電話發送的流量(源地址為192.168.3.0/24網段)。
<DeviceA> system-view
[DeviceA] acl number 2000
[DeviceA-acl-basic-2000] rule permit source 192.168.3.0 0.0.0.255
[DeviceA-acl-basic-2000] quit
# 創建流分類voice,匹配規則為IPv4 ACL 2000。
[DeviceA] traffic classifier voice
[DeviceA-classifier-voice] if-match acl 2000
[DeviceA-classifier-voice] quit
# 創建基本IPv4 ACL2001,匹配業務軟件終端發送的流量(源地址為192.168.2.0/24網段)。
[DeviceA] acl number 2001
[DeviceA-acl-basic-2001] rule permit source 192.168.2.0 0.0.0.255
[DeviceA-acl-basic-2001] quit
# 創建流分類service,匹配規則為IPv4 ACL 2001。
[DeviceA] traffic classifier service
[DeviceA-classifier-service] if-match acl 2001
[DeviceA-classifier-service] quit
# 創建高級IPv4 ACL 3000,匹配普通PC發送的FTP流量(源地址為192.168.1.0/24網段,目的端口為20)。
[DeviceA] acl number 3000
[DeviceA-acl-adv-3000] rule permit tcp destination-port eq 20 source 192.168.1.0 0.0.0.255
[DeviceA-acl-adv-3000] quit
# 創建流分類ftp,匹配規則為IPv4 ACL 3000。
[DeviceA] traffic classifier ftp
[DeviceA-classifier-ftp] if-match acl 3000
[DeviceA-classifier-ftp] quit
(2) 創建三個流行為,分別配置流量整形動作
# 創建流行為voice,為語音報文配置承諾速率為10000Kbps。
[DeviceA] traffic behavior voice
[DeviceA-behavior-voice] gts cir 10000
[DeviceA-behavior-voice] quit
# 創建流行為service,為業務應用報文配置承諾速率為3000Kbps。
[DeviceA] traffic behavior service
[DeviceA-behavior-service] gts cir 3000
[DeviceA-behavior-service] quit
# 創建流行為ftp,為FTP報文配置承諾速率為7000Kbps。
[DeviceA] traffic behavior ftp
[DeviceA-behavior-ftp] gts cir 7000
[DeviceA-behavior-ftp] quit
(3) 創建QoS策略並應用
# 創建QoS策略shaping,將上麵三組流分類和流行為進行關聯。
[DeviceA] qos policy shaping
[DeviceA-qospolicy-shaping] classifier voice behavior voice
[DeviceA-qospolicy-shaping] classifier service behavior service
[DeviceA-qospolicy-shaping] classifier ftp behavior ftp
[DeviceA-qospolicy-shaping] quit
# 將QoS策略應用到GigabitEthernet1/0端口的出方向。
[DeviceA] interface gigabitethernet 1/0
[DeviceA-GigabitEthernet1/0] qos apply policy shaping outbound
[DeviceA-GigabitEthernet1/0] quit
# 使用display qos policy interface命令查看流量整形功能的配置。
[Devcie] display qos policy interface outbound
Interface: GigabitEthernet1/0
Direction: Outbound
Policy: shaping
Classifier: default-class
Matched : 0 (Packets) 0 (Bytes)
5-minute statistics:
Forwarded: 0/0 (pps/bps)
Dropped : 0/0 (pps/bps)
Operator: AND
Rule(s) :
If-match any
Behavior: be
-none-
Classifier: voice
Matched : 0 (Packets) 0 (Bytes)
5-minute statistics:
Forwarded: 0/0 (pps/bps)
Dropped : 0/0 (pps/bps)
Operator: AND
Rule(s) :
If-match acl 2000
Behavior: voice
General Traffic Shaping:
CIR 10000 (kbps), CBS 625000 (Bytes), EBS 0 (Bytes)
Queue length: 50 (Packets)
Queue size : 0 (Packets)
Passed : 0 (Packets) 0 (Bytes)
Discarded: 0 (Packets) 0 (Bytes)
Delayed : 0 (Packets) 0 (Bytes)
Classifier: service
Matched : 0 (Packets) 0 (Bytes)
5-minute statistics:
Forwarded: 0/0 (pps/bps)
Dropped : 0/0 (pps/bps)
Operator: AND
Rule(s) :
If-match acl 2001
Behavior: service
General Traffic Shaping:
CIR 3000 (kbps), CBS 187500 (Bytes), EBS 0 (Bytes)
Queue length: 50 (Packets)
Queue size : 0 (Packets)
Passed : 0 (Packets) 0 (Bytes)
Discarded: 0 (Packets) 0 (Bytes)
Delayed : 0 (Packets) 0 (Bytes)
Classifier: ftp
Matched : 0 (Packets) 0 (Bytes)
5-minute statistics:
Forwarded: 0/0 (pps/bps)
Dropped : 0/0 (pps/bps)
Operator: AND
Rule(s) :
If-match acl 3000
Behavior: ftp
General Traffic Shaping:
CIR 7000 (kbps), CBS 437500 (Bytes), EBS 0 (Bytes)
Queue length: 50 (Packets)
Queue size : 0 (Packets)
Passed : 0 (Packets) 0 (Bytes)
Discarded: 0 (Packets) 0 (Bytes)
Delayed : 0 (Packets) 0 (Bytes)
#
traffic classifier ftp operator and
if-match acl 3000
#
traffic classifier service operator and
if-match acl 2001
#
traffic classifier voice operator and
if-match acl 2000
#
traffic behavior ftp
gts cir 7000 cbs 437500 ebs 0 queue-length 50
#
traffic behavior service
gts cir 3000 cbs 187500 ebs 0 queue-length 50
#
traffic behavior voice
gts cir 10000 cbs 625000 ebs 0 queue-length 50
#
qos policy shaping
classifier voice behavior voice
classifier service behavior service
classifier ftp behavior ftp
#
interface GigabitEthernet1/0
port link-mode route
qos apply policy shaping outbound
#
acl number 2000
rule 0 permit source 192.168.3.0 0.0.0.255
#
acl number 2001
rule 0 permit source 192.168.2.0 0.0.0.255
#
acl number 3000
rule 0 permit tcp source 192.168.1.0 0.0.0.255 destination-port eq ftp-data
#
· 《H3C VSR1000虛擬路由器配置指導》中的“ACL和QoS配置指導”
· 《H3C VSR1000虛擬路由器命令參考》中的“ACL和QoS命令參考”
不同款型規格的資料略有差異, 詳細信息請向具體銷售和400谘詢。H3C保留在沒有任何通知或提示的情況下對資料內容進行修改的權利!