• 產品與解決方案
  • 行業解決方案
  • 服務
  • 支持
  • 合作夥伴
  • 關於我們

08-ACL和QoS配置舉例

目錄

07-H3C_重標記與隊列調度典型配置舉例

本章節下載 07-H3C_重標記與隊列調度典型配置舉例  (240.92 KB)

07-H3C_重標記與隊列調度典型配置舉例

H3C重標記與隊列調度典型配置舉例

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

資料版本:6W100-20200330

產品版本:Release 7585P05

 

Copyright © 2020 bobty下载软件 版權所有,保留一切權利。

非經本公司書麵許可,任何單位和個人不得擅自摘抄、複製本文檔內容的部分或全部,並不得以任何形式傳播。

除bobty下载软件 的商標外,本手冊中出現的其它公司的商標、產品標識及商品名稱,由各自權利人擁有。

本文檔中的信息可能變動,恕不另行通知。

 



1  簡介

本文檔介紹了重標記、優先級映射與隊列調度的配置舉例。

重標記是將報文的優先級或者標誌位進行設置,重新分配報文的優先級值等。

隊列調度是指當設備的某個端口發生擁塞時,先通過配置隊列調度策略修改各隊列的調度參數,然後在該端口應用該策略來實現擁塞管理功能。

2  配置前提

本文檔中的配置均是在實驗室環境下進行的配置和驗證,配置前設備的所有參數均采用出廠時的缺省配置。如果您已經對設備進行了配置,為了保證配置效果,請確認現有配置和以下舉例中的配置不衝突。

本文假設您已了解隊列調度特性。

3  使用限製

dscp/exp/dot1p/lp/dp重標記與下列QoS動作衝突:流量過濾(filter deny命令)、重定向到CPU(redirect cpu命令)以及帶顏色的報文優先級映射(primap命令)。

4  重標記與隊列調度典型配置舉例

4.1  組網需求

圖1所示,某公司在省內各市和省中心之間通過雙上行鏈路互連,公司內網的業務分為以下三種:

·            視頻相關業務:使用IP網段10.1.0.0/16(其中省中心內網使用IP網段10.1.1.0/24;A市內網使用IP網段10.1.2.0/24……F市內網使用IP網段10.1.7.0/24);

·            生產相關業務:使用IP網段10.2.0.0/16(其中省中心內網使用IP網段10.2.1.0/24;A市內網使用IP網段10.2.2.0/24……F市內網使用IP網段10.2.7.0/24);

·            語音相關業務:使用IP網段10.3.0.0/16(其中省中心內網使用IP網段10.3.1.0/24;A市內網使用IP網段10.3.2.0/24……F市內網使用IP網段10.3.7.0/24)。

現要求通過配置隊列調度策略實現當網絡發生擁塞時,三種業務(視頻相關業務:生產相關業務:語音相關業務)之間按照調度比重2:1:1的權重進行調度。

圖1 配置組網圖

 

4.2  配置思路

由於本例中三種業務均為IP業務,為了將三種業務流量入不同的隊列,可以重新標記報文的本地優先級,將不同的業務流量指定至對應的隊列中。

當發生擁塞時,若要實現三種業務按照2:1:1的權重比例進行調度,需要將三種業務規劃到同一WRR優先組的不同隊列中。在本例中指定視頻業務為隊列2,生產業務為隊列3,語音業務為隊列4(缺省情況下,端口輸出隊列的調度方式為SP隊列),並通過配置指定隊列的調度策略來實現三個隊列之間的調度權重比為2:1:1。

4.3  配置步驟

4.3.1  Device S1的配置

說明

Device S2的配置和Device S1的配置相似,此處僅以Device S1的配置為例。詳細配置可參見

配置文件

 

(1)       在內網入端口區分不同業務的流量進入不同的隊列

# 創建ACL 3000用於匹配視頻業務,並創建流行為重標記該業務的本地優先級為2。

<DeviceS1> system-view

[DeviceS1] acl advanced 3000

[DeviceS1-acl-ipv4-adv-3000] rule 0 permit ip source 10.1.1.0 0.0.0.255 destination 10.1.0.0 0.0.255.255

[DeviceS1-acl-ipv4-adv-3000] quit

[DeviceS1] traffic classifier video

[DeviceS1-classifier-video] if-match acl 3000

[DeviceS1-classifier-video] quit

[DeviceS1] traffic behavior video

[DeviceS1-behavior-video] remark local-precedence 2

[DeviceS1-behavior-video] quit

# 創建ACL 3001用於匹配生產業務,並創建流行為重標記該業務的本地優先級為3。

[DeviceS1] acl advanced 3001

[DeviceS1-acl-ipv4-adv-3001] rule 0 permit ip source 10.2.1.0 0.0.0.255 destination 10.2.0.0 0.0.255.255

[DeviceS1-acl-ipv4-adv-3001] quit

[DeviceS1] traffic classifier production

[DeviceS1-classifier-production] if-match acl 3001

[DeviceS1-classifier-production] quit

[DeviceS1] traffic behavior production

[DeviceS1-behavior-production] remark local-precedence 3

[DeviceS1-behavior-production] quit

# 創建ACL 3002用於匹配語音業務,並創建流行為重標記該業務的本地優先級為4。

[DeviceS1] acl advanced 3002

[DeviceS1-acl-ipv4-adv-3002] rule 0 permit ip source 10.3.1.0 0.0.0.255 destination 10.3.0.0 0.0.255.255

[DeviceS1-acl-ipv4-adv-3002] quit

[DeviceS1] traffic classifier voice

[DeviceS1-classifier-voice] if-match acl 3002

[DeviceS1-classifier-voice] quit

[DeviceS1] traffic behavior voice

[DeviceS1-behavior-voice] remark local-precedence 4

[DeviceS1-behavior-voice] quit

# 配置QoS策略policy1,為三種業務流量分別指定對應的流行為。

[DeviceS1] qos policy policy1

[DeviceS1-qospolicy-policy1] classifier video behavior video

[DeviceS1-qospolicy-policy1] classifier production behavior production

[DeviceS1-qospolicy-policy1] classifier voice behavior voice

[DeviceS1-qospolicy-policy1] quit

# 在業務流量的入端口Ten-GigabitEthernet1/0/3上應用QoS策略policy1。

[DeviceS1] interface ten-gigabitethernet 1/0/3

[DeviceS1-Ten-GigabitEthernet1/0/3] qos apply policy policy1 inbound

[DeviceS1-Ten-GigabitEthernet1/0/3] quit

(2)       在外網出端口配置調度策略

# 配置隊列調度策略qm1,實現視頻、生產和語音三個隊列之間的調度權重比為2:1:1。

[DeviceS1] qos qmprofile qm1

[DeviceS1-qmprofile-qm1] queue 2 wrr group 1 byte-count 2

[DeviceS1-qmprofile-qm1] queue 3 wrr group 1 byte-count 1

[DeviceS1-qmprofile-qm1] queue 4 wrr group 1 byte-count 1

[DeviceS1-qmprofile-qm1] quit

# 在業務流量的出端口Ten-GigabitEthernet1/0/1和Ten-GigabitEthernet1/0/2上應用隊列調度策略qm1。

[DeviceS1] interface ten-gigabitethernet 1/0/1

[DeviceS1-Ten-GigabitEthernet1/0/1] qos apply qmprofile qm1

[DeviceS1-Ten-GigabitEthernet1/0/1] quit

[DeviceS1] interface ten-gigabitethernet 1/0/2

[DeviceS1-Ten-GigabitEthernet1/0/2] qos apply qmprofile qm1

[DeviceS1-Ten-GigabitEthernet1/0/2] quit

4.3.2  Device A1的配置

說明

Device A2、Device F1和Device F2的配置和Device A1的配置相似,此處僅以Device A1的配置為例。詳細配置可參見

配置文件

 

(1)       在內網端口區分不同業務的流量進入不同的隊列

# 創建ACL 3000用於匹配視頻業務,並創建流行為重標記該業務的本地優先級為2。

<DeviceA1> system-view

[DeviceA1] acl advanced 3000

[DeviceA1-acl-ipv4-adv-3000] rule 0 permit ip source 10.1.2.0 0.0.0.255 destination 10.1.0.0 0.0.255.255

[DeviceA1-acl-ipv4-adv-3000] quit

[DeviceA1] traffic classifier video

[DeviceA1-classifier-video] if-match acl 3000

[DeviceA1-classifier-video] quit

[DeviceA1] traffic behavior video

[DeviceA1-behavior-video] remark local-precedence 2

[DeviceA1-behavior-video] quit

# 創建ACL 3001用於匹配生產業務,並創建流行為重標記該業務的本地優先級為3。

[DeviceA1] acl advanced 3001

[DeviceA1-acl-ipv4-adv-3001] rule 0 permit ip source 10.2.2.0 0.0.0.255 destination 10.2.0.0 0.0.255.255

[DeviceA1-acl-ipv4-adv-3001] quit

[DeviceA1] traffic classifier production

[DeviceA1-classifier-production] if-match acl 3001

[DeviceA1-classifier-production] quit

[DeviceA1] traffic behavior production

[DeviceA1-behavior-production] remark local-precedence 3

[DeviceA1-behavior-production] quit

# 創建ACL 3002用於匹配語音業務,並創建流行為重標記該業務的本地優先級為4。

[DeviceA1] acl advanced 3002

[DeviceA1-acl-ipv4-adv-3002] rule 0 permit ip source 10.3.2.0 0.0.0.255 destination 10.3.0.0 0.0.255.255

[DeviceA1-acl-ipv4-adv-3002] quit

[DeviceA1] traffic classifier voice

[DeviceA1-classifier-voice] if-match acl 3002

[DeviceA1-classifier-voice] quit

[DeviceA1] traffic behavior voice

[DeviceA1-behavior-voice] remark local-precedence 4

[DeviceA1-behavior-voice] quit

# 配置QoS策略policy1,為三種業務流量分別指定對應的流行為。

[DeviceA1] qos policy policy1

[DeviceA1-qospolicy-policy1] classifier video behavior video

[DeviceA1-qospolicy-policy1] classifier production behavior production

[DeviceA1-qospolicy-policy1] classifier voice behavior voice

[DeviceA1-qospolicy-policy1] quit

# 在業務流量的入端口Ten-GigabitEthernet1/0/3上應用QoS策略policy1。

[DeviceA1] interface ten-gigabitethernet 1/0/3

[DeviceA1-Ten-GigabitEthernet1/0/3] qos apply policy policy1 inbound

[DeviceA1-Ten-GigabitEthernet1/0/3] quit

(2)       在外網端口配置調度策略

# 配置隊列調度策略qm1,實現語音、生產和視頻三個隊列之間的調度權重比為1:1:2。

[DeviceA1] qos qmprofile qm1

[DeviceA1-qmprofile-qm1] queue 2 wrr group 1 byte-count 2

[DeviceA1-qmprofile-qm1] queue 3 wrr group 1 byte-count 1

[DeviceA1-qmprofile-qm1] queue 4 wrr group 1 byte-count 1

[DeviceA1-qmprofile-qm1] quit

# 在業務流量的出端口Ten-GigabitEthernet1/0/1上應用隊列調度策略qm1。

[DeviceA1] interface ten-gigabitethernet 1/0/1

[DeviceA1-Ten-GigabitEthernet1/0/1] qos apply qmprofile qm1

[DeviceA1-Ten-GigabitEthernet1/0/1] quit

4.4  驗證配置

所有路由器上的配置顯示方法相同,本處僅以Device S1為例。

# 查看業務流量入接口上的QoS策略的配置信息和運行情況。

[DeviceS1] display qos policy interface ten-gigabitethernet 1/0/3

Interface: Ten-GigabitEthernet1/0/3

  Direction: Inbound

  Policy: policy1

   Classifier: video

     Operator: AND

     Rule(s) :

      If-match acl 3000

     Behavior: video

      Marking:

        Remark local-precedence 2

   Classifier: production

     Operator: AND

     Rule(s) :

      If-match acl 3001

     Behavior: production

      Marking:

        Remark local-precedence 3

   Classifier: voice

     Operator: AND

     Rule(s) :

      If-match acl 3002

     Behavior: voice

      Marking:

        Remark local-precedence 4

# 查看業務流量出接口上隊列調度策略的配置情況。

[DeviceS1] display qos qmprofile configuration

Queue management profile: qm1 (ID 1)

 Queue ID    Type    Group    Schedule-unit    Schedule-value    Bandwidth

 ---------------------------------------------------------------------------

 be          SP      N/A      N/A              N/A                N/A

 af1         SP      N/A      N/A              N/A                N/A

 af2         WRR     1        byte-count       2                  N/A

 af3         WRR     1        byte-count       1                  N/A

 af4         WRR     1        byte-count       1                  N/A

 ef          SP      N/A      N/A              N/A                N/A

 cs6         SP      N/A      N/A              N/A                N/A

 cs7         SP      N/A      N/A              N/A                N/A

4.5  配置文件

·            Device S1:

#

qos qmprofile qm1

 queue af2 wrr group 1 byte-count 2

 queue af3 wrr group 1 byte-count 1

 queue af4 wrr group 1 byte-count 1

#

traffic classifier production operator and

 if-match acl 3001

#

traffic classifier video operator and

 if-match acl 3000

#

traffic classifier voice operator and

 if-match acl 3002

#

traffic behavior production

 remark local-precedence 3

#

traffic behavior video

 remark local-precedence 2

#

traffic behavior voice

 remark local-precedence 4

#

qos policy policy1

 classifier video behavior video

 classifier production behavior production

 classifier voice behavior voice

#

interface Ten-GigabitEthernet1/0/1

 port link-mode bridge

 qos apply qmprofile qm1

#

interface Ten-GigabitEthernet1/0/2

 port link-mode bridge

 qos apply qmprofile qm1

#

interface Ten-GigabitEthernet1/0/3

 port link-mode bridge

 qos apply policy policy1 inbound

#

acl advanced 3000

 rule 0 permit ip source 10.1.1.0 0.0.0.255 destination 10.1.0.0 0.0.255.255

#

acl advanced 3001

 rule 0 permit ip source 10.2.1.0 0.0.0.255 destination 10.2.0.0 0.0.255.255

#

acl advanced 3002

 rule 0 permit ip source 10.3.1.0 0.0.0.255 destination 10.3.0.0 0.0.255.255

#

return

·            Device S2

#

qos qmprofile qm1

 queue af2 wrr group 1 byte-count 2

 queue af3 wrr group 1 byte-count 1

 queue af4 wrr group 1 byte-count 1

#

traffic classifier production operator and

 if-match acl 3001

#

traffic classifier video operator and

 if-match acl 3000

#

traffic classifier voice operator and

 if-match acl 3002

#

traffic behavior production

 remark local-precedence 3

#

traffic behavior video

 remark local-precedence 2

#

traffic behavior voice

 remark local-precedence 4

#

qos policy policy1

 classifier video behavior video

 classifier production behavior production

 classifier voice behavior voice

#

interface Ten-GigabitEthernet1/0/1

 port link-mode bridge

 qos apply qmprofile qm1

#

interface Ten-GigabitEthernet1/0/2

 port link-mode bridge

 qos apply qmprofile qm1

#

interface Ten-GigabitEthernet1/0/3

 port link-mode bridge

 qos apply policy policy1 inbound

#

acl advanced 3000

 rule 0 permit ip source 10.1.1.0 0.0.0.255 destination 10.1.0.0 0.0.255.255

#

acl advanced 3001

 rule 0 permit ip source 10.2.1.0 0.0.0.255 destination 10.2.0.0 0.0.255.255

#

acl advanced 3002

 rule 0 permit ip source 10.3.1.0 0.0.0.255 destination 10.3.0.0 0.0.255.255

#

return

·            Device A1:

#

qos qmprofile qm1

 queue af2 wrr group 1 byte-count 2

 queue af3 wrr group 1 byte-count 1

 queue af4 wrr group 1 byte-count 1

#

traffic classifier production operator and

 if-match acl 3001

#

traffic classifier video operator and

 if-match acl 3000

#

traffic classifier voice operator and

 if-match acl 3002

#

traffic behavior production

 remark local-precedence 3

#

traffic behavior video

 remark local-precedence 2

#

traffic behavior voice

 remark local-precedence 4

#

qos policy policy1

 classifier video behavior video

 classifier production behavior production

 classifier voice behavior voice

#

interface Ten-GigabitEthernet1/0/1

 port link-mode bridge

 qos apply qmprofile qm1

#

interface Ten-GigabitEthernet1/0/3

 port link-mode bridge

 qos apply policy policy1 inbound

#

acl advanced 3000

 rule 0 permit ip source 10.1.2.0 0.0.0.255 destination 10.1.0.0 0.0.255.255

#

acl advanced 3001

 rule 0 permit ip source 10.2.2.0 0.0.0.255 destination 10.2.0.0 0.0.255.255

#

acl advanced 3002

 rule 0 permit ip source 10.3.2.0 0.0.0.255 destination 10.3.0.0 0.0.255.255

#

return

·            Device A2:

#

qos qmprofile qm1

 queue af2 wrr group 1 byte-count 2

 queue af3 wrr group 1 byte-count 1

 queue af4 wrr group 1 byte-count 1

#

traffic classifier production operator and

 if-match acl 3001

#

traffic classifier video operator and

 if-match acl 3000

#

traffic classifier voice operator and

 if-match acl 3002

#

traffic behavior production

 remark local-precedence 3

#

traffic behavior video

 remark local-precedence 2

#

traffic behavior voice

 remark local-precedence 4

#

qos policy policy1

 classifier video behavior video

 classifier production behavior production

 classifier voice behavior voice

#

interface Ten-GigabitEthernet1/0/1

 port link-mode bridge

 qos apply qmprofile qm1

#

interface Ten-GigabitEthernet1/0/3

 port link-mode bridge

 qos apply policy policy1 inbound

#

acl advanced 3000

 rule 0 permit ip source 10.1.2.0 0.0.0.255 destination 10.1.0.0 0.0.255.255

#

acl advanced 3001

 rule 0 permit ip source 10.2.2.0 0.0.0.255 destination 10.2.0.0 0.0.255.255

#

acl advanced 3002

 rule 0 permit ip source 10.3.2.0 0.0.0.255 destination 10.3.0.0 0.0.255.255

#

return

·            Device F1:

#

qos qmprofile qm1

 queue af2 wrr group 1 byte-count 2

 queue af3 wrr group 1 byte-count 1

 queue af4 wrr group 1 byte-count 1

#

traffic classifier production operator and

 if-match acl 3001

#

traffic classifier video operator and

 if-match acl 3000

#

traffic classifier voice operator and

 if-match acl 3002

#

traffic behavior production

 remark local-precedence 3

#

traffic behavior video

 remark local-precedence 2

#

traffic behavior voice

 remark local-precedence 4

#

qos policy policy1

 classifier video behavior video

 classifier production behavior production

 classifier voice behavior voice

#

interface Ten-GigabitEthernet1/0/2

 port link-mode bridge

 qos apply qmprofile qm1

#

interface Ten-GigabitEthernet1/0/3

 port link-mode bridge

 qos apply policy policy1 inbound

#

acl advanced 3000

 rule 0 permit ip source 10.1.7.0 0.0.0.255 destination 10.1.0.0 0.0.255.255

#

acl advanced 3001

 rule 0 permit ip source 10.2.7.0 0.0.0.255 destination 10.2.0.0 0.0.255.255

#

acl advanced 3002

 rule 0 permit ip source 10.3.7.0 0.0.0.255 destination 10.3.0.0 0.0.255.255

#

return

·            Device F2:

#

qos qmprofile qm1

 queue af2 wrr group 1 byte-count 2

 queue af3 wrr group 1 byte-count 1

 queue af4 wrr group 1 byte-count 1

#

traffic classifier production operator and

 if-match acl 3001

#

traffic classifier video operator and

 if-match acl 3000

#

traffic classifier voice operator and

 if-match acl 3002

#

traffic behavior production

 remark local-precedence 3

#

traffic behavior video

 remark local-precedence 2

#

traffic behavior voice

 remark local-precedence 4

#

qos policy policy1

 classifier video behavior video

 classifier production behavior production

 classifier voice behavior voice

#

interface Ten-GigabitEthernet1/0/2

 port link-mode bridge

 qos apply qmprofile qm1

#

interface Ten-GigabitEthernet1/0/3

 port link-mode bridge

 qos apply policy policy1 inbound

#

acl advanced 3000

 rule 0 permit ip source 10.1.7.0 0.0.0.255 destination 10.1.0.0 0.0.255.255

#

acl advanced 3001

 rule 0 permit ip source 10.2.7.0 0.0.0.255 destination 10.2.0.0 0.0.255.255

#

acl advanced 3002

 rule 0 permit ip source 10.3.7.0 0.0.0.255 destination 10.3.0.0 0.0.255.255

#

return

5  相關資料

·            H3C S10500係列交換機 ACL和QoS配置指導-R758X

·            H3C S10500係列交換機 ACL和QoS命令參考-R758X

不同款型規格的資料略有差異, 詳細信息請向具體銷售和400谘詢。H3C保留在沒有任何通知或提示的情況下對資料內容進行修改的權利!

BOB登陆
官網
聯係我們