# 1. 定义ACL匹配各段UDP端口
acl number 3500
rule 10 permit udp destination-port range 50000 50019
rule 20 permit udp destination-port range 50020 50039
rule 30 permit udp destination-port range 50040 50059
rule 40 permit udp destination-port range 50070 50089
# 2. 定义流分类,匹配ACL
traffic classifier C1 operator or
if-match acl 3500
# 3. 定义流行为,按ACL rule 标记DSCP
traffic behavior B1
remark dscp 46 acl 3500 rule 10
remark dscp 34 acl 3500 rule 20
remark dscp 18 acl 3500 rule 30
remark dscp 40 acl 3500 rule 40
# 4. 流策略绑定
qos policy P1
classifier C1 behavior B1
# 5. 接口入方向应用(接终端/服务器的口)
interface GigabitEthernet1/0/1
qos apply policy P1 inbound
暂无评论
GigabitEthernet0/0/1 上应用为例):1# ------------------------------
2# 第一步:定义流分类(精准抓取对应的UDP端口范围)
3# ------------------------------
4# 匹配 UDP 50000-50019
5traffic classifier C_UDP_50000 operator or
6 if-match udp destination-port range 50000 50019
7quit
8
9# 匹配 UDP 50020-50039
10traffic classifier C_UDP_50020 operator or
11 if-match udp destination-port range 50020 50039
12quit
13
14# 匹配 UDP 50040-50059
15traffic classifier C_UDP_50040 operator or
16 if-match udp destination-port range 50040 50059
17quit
18
19# 匹配 UDP 50070-50089
20traffic classifier C_UDP_50070 operator or
21 if-match udp destination-port range 50070 50089
22quit
23
24# ------------------------------
25# 第二步:定义流行为(重标记对应的DSCP值)
26# ------------------------------
27traffic behavior B_DSCP_46
28 remark dscp 46
29quit
30
31traffic behavior B_DSCP_34
32 remark dscp 34
33quit
34
35traffic behavior B_DSCP_18
36 remark dscp 18
37quit
38
39traffic behavior B_DSCP_40
40 remark dscp 40
41quit
42
43# ------------------------------
44# 第三步:定义流策略(将分类与行为绑定)
45# ------------------------------
46traffic policy P_VIDEO_QOS
47 # 绑定第一组:端口 50000-50019 -> DSCP 46
48 classifier C_UDP_50000 behavior B_DSCP_46
49 # 绑定第二组:端口 50020-50039 -> DSCP 34
50 classifier C_UDP_50020 behavior B_DSCP_34
51 # 绑定第三组:端口 50040-50059 -> DSCP 18
52 classifier C_UDP_50040 behavior B_DSCP_18
53 # 绑定第四组:端口 50070-50089 -> DSCP 40
54 classifier C_UDP_50070 behavior B_DSCP_40
55quit
56
57# ------------------------------
58# 第四步:在接口上应用流策略(建议在接入侧接口的入方向 inbound 应用)
59# ------------------------------
60interface GigabitEthernet0/0/1
61 traffic-policy P_VIDEO_QOS inbound
62quitdestination-port(目的端口)。如果你的实际业务流量中,这些 UDP 端口是作为源端口发出的,请将 if-match udp destination-port 修改为 if-match udp source-port。display traffic policy statistics interface GigabitEthernet0/0/1 inbound 命令来查看策略的命中计数,确认流量是否被正确识别和重标记。暂无评论
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论