想看配置里有没有对某个网段,vlan,端口,之列的限速的策略。比如带宽限制一半或者50兆。我把配置里静态路由删除了。
<HRB-core>dis cu # version 5.20, Release 6708P03 # sysname HRB-core # dhcp relay server-group 1 ip 10.110.0.5 # irf domain 1 irf mac-address persistent always irf auto-update enable irf auto-merge enable undo irf link-delay irf member 1 priority 32 # domain default enable system # telnet server enable # loopback-detection enable # udp-helper enable # switch-mode standard chassis 1 switch-mode normal chassis 1 slot 2 switch-mode normal chassis 1 slot 3 switch-mode normal chassis 1 slot 5 switch-mode standard chassis 2 switch-mode normal chassis 2 slot 2 switch-mode normal chassis 2 slot 3 switch-mode normal chassis 2 slot 5 # irf-pbr enable switch-mode route-normal # password-recovery enable # acl number 2000 rule 0 permit # acl number 3001 rule 8 deny udp destination 192.168.0.0 0.0.255.255 destination-port eq 445 rule 9 deny tcp destination 192.168.0.0 0.0.255.255 destination-port eq 445 rule 10 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.11.0 0.0.0.255 rule 20 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.12.0 0.0.1.255 rule 30 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.14.0 0.0.1.255 rule 40 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.16.0 0.0.15.255 rule 50 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.32.0 0.0.15.255 rule 60 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.48.0 0.0.1.255 rule 70 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.52.0 0.0.1.255 rule 80 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.54.0 0.0.1.255 rule 90 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.56.0 0.0.7.255 rule 110 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.128.0 0.0.127.255 rule 120 permit ip source 10.110.0.0 0.0.255.255 destination 10.100.0.0 0.0.255.255 rule 130 permit ip source 10.110.0.0 0.0.255.255 destination 10.104.0.0 0.0.255.255 rule 140 permit ip source 10.110.0.0 0.0.255.255 destination 10.161.0.0 0.0.255.255 rule 150 permit ip source 10.110.0.0 0.0.255.255 destination 192.168.0.0 0.0.0.255 rule 155 deny ip source 10.110.36.100 0 destination 192.168.0.157 0 rule 160 deny icmp source 10.110.36.100 0 destination 192.168.0.157 0 acl number 3002 rule 10 deny tcp destination 192.168.0.0 0.0.255.255 destination-port eq 445 rule 100 permit ip # vlan 1 # vlan 74 # vlan 102 # vlan 103 description sccm connect to sz # vlan 200 to 251 # vlan 1000 # vlan 2000 to 2001 # vlan 3000 # vlan 3002 # vlan 4000 to 4003 # domain system access-limit disable state active idle-cut disable self-service-url disable # traffic classifier hrbdeny445 operator and if-match acl 3002 traffic classifier hrb operator and if-match acl 3001 # traffic behavior hrbdeny445 filter permit traffic behavior hrb redirect next-hop 10.1.31.1 fail-action forward traffic behavior 1 # qos policy hrbdeny445 classifier hrbdeny445 behavior hrbdeny445 qos policy hrb classifier hrb behavior hrb # dhcp server ip-pool 1 # user-group system group-attribute allow-guest # local-user admin password cipher $c$3$CPBfG95pELQ60Sju/PpIWI6wttzl8NF2FwNHKg== authorization-attribute level 3 service-type telnet # stp region-configuration region-name hrbin active region-configuration # stp instance 0 root primary stp bpdu-protection stp enable # interface Bridge-Aggregation1 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation2 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation3 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation4 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation5 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation6 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation7 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation8 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation9 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation10 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation11 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation12 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation13 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation14 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation15 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation16 port link-type trunk port trunk permit vlan all # interface Bridge-Aggregation17 port link-type trunk port trunk permit vlan all # interface NULL0 # interface Vlan-interface1 ip address dhcp-alloc client-identifier mac Vlan-interface1 # interface Vlan-interface74 # interface Vlan-interface102 description cucc to sz ip address 10.1.1.2 255.255.255.252 # interface Vlan-interface103 description cmcc to sz ip address 10.1.11.2 255.255.255.252 # interface Vlan-interface200 ip address 10.110.0.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface201 ip address 10.110.1.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface202 ip address 10.110.2.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface203 ip address 10.110.3.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface204 ip address 10.110.4.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface205 ip address 10.110.5.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface206 ip address 10.110.6.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface207 ip address 10.110.7.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface208 ip address 10.110.8.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface209 ip address 10.110.9.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface210 ip address 10.110.10.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface211 ip address 10.110.11.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface212 ip address 10.110.12.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface213 ip address 10.110.13.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface214 ip address 10.110.14.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface215 ip address 10.110.15.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface216 ip address 10.110.16.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface217 ip address 10.110.17.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface218 ip address 10.110.18.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface219 ip address 10.110.19.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface220 ip address 10.110.20.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface221 ip address 10.110.21.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface222 ip address 10.110.22.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface223 ip address 10.110.23.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface224 ip address 10.110.24.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface225 ip address 10.110.25.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface226 ip address 10.110.26.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface227 ip address 10.110.27.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface228 ip address 10.110.28.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface229 ip address 10.110.29.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface230 ip address 10.110.30.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface231 ip address 10.110.31.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface232 ip address 10.110.32.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface233 ip address 10.110.33.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface234 ip address 10.110.34.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface235 ip address 10.110.35.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface236 ip address 10.110.36.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface237 ip address 10.110.37.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface238 ip address 10.110.38.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface239 ip address 10.110.39.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface240 ip address 10.110.40.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface241 ip address 10.110.41.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface242 ip address 10.110.42.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface243 ip address 10.110.43.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface244 ip address 10.110.44.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface245 ip address 10.110.45.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface246 ip address 10.110.46.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface247 ip address 10.110.47.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface248 ip address 10.110.48.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface249 ip address 10.110.49.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface250 ip address 10.110.50.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface251 ip address 10.110.51.1 255.255.255.0 dhcp select relay dhcp relay server-select 1 # interface Vlan-interface1000 ip address 10.10.10.1 255.255.255.0 # interface Vlan-interface2000 # interface Vlan-interface4000 # interface Vlan-interface4001 # interface Vlan-interface4002 description ip add 172.16.0.55/24 # # interface GigabitEthernet1/3/0/8 port link-mode route description unicom-mpls ip address 10.1.31.2 255.255.255.252 qos apply policy hrb inbound # interface GigabitEthernet1/2/0/1 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 1 # interface GigabitEthernet1/2/0/2 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 2 # interface GigabitEthernet1/2/0/3 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 3 # interface GigabitEthernet1/2/0/4 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 4 # interface GigabitEthernet1/2/0/5 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 5 # interface GigabitEthernet1/2/0/6 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 6 # interface GigabitEthernet1/2/0/7 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 7 # interface GigabitEthernet1/2/0/8 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 8 # interface GigabitEthernet1/2/0/9 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 9 # interface GigabitEthernet1/2/0/10 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 10 # interface GigabitEthernet1/2/0/11 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 11 # interface GigabitEthernet1/2/0/12 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 12 # interface GigabitEthernet1/2/0/13 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 13 # interface GigabitEthernet1/2/0/14 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 14 # interface GigabitEthernet1/2/0/15 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 15 # interface GigabitEthernet1/2/0/16 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 16 # interface GigabitEthernet1/2/0/17 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 17 # interface GigabitEthernet1/2/0/18 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound # interface GigabitEthernet1/2/0/19 port link-mode bridge port access vlan 1000 # interface GigabitEthernet1/2/0/20 port link-mode bridge port access vlan 1000 # interface GigabitEthernet1/2/0/21 port link-mode bridge port access vlan 1000 # interface GigabitEthernet1/2/0/22 port link-mode bridge port access vlan 1000 # interface GigabitEthernet1/2/0/23 port link-mode bridge port access vlan 1000 # interface GigabitEthernet1/2/0/24 port link-mode bridge port access vlan 1000 # interface GigabitEthernet1/3/0/1 port link-mode bridge description firewall port access vlan 200 stp edged-port enable # interface GigabitEthernet1/3/0/2 port link-mode bridge port access vlan 200 stp edged-port enable # interface GigabitEthernet1/3/0/3 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/4 port link-mode bridge description CDN-test stp edged-port enable # interface GigabitEthernet1/3/0/5 port link-mode bridge description huawei1980 port access vlan 201 qos apply policy hrb inbound # interface GigabitEthernet1/3/0/6 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound # interface GigabitEthernet1/3/0/7 port link-mode bridge stp edged-port enable interface GigabitEthernet1/3/0/8 port link-mode route description unicom-mpls ip address 10.1.31.2 255.255.255.252 qos apply policy hrb inbound # ---- More ---- interface GigabitEthernet1/3/0/9 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/10 port link-mode bridge arp max-learning-num 0 arp detection trust # interface GigabitEthernet1/3/0/11 port link-mode bridge stp edged-port enable qos apply policy hrb inbound # interface GigabitEthernet1/3/0/12 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/13 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/14 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/15 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/16 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/17 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/18 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/19 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/20 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/21 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/22 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/23 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/24 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/25 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/26 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/27 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/28 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/29 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/30 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/31 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/32 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/33 port link-mode bridge port access vlan 2000 stp edged-port enable # interface GigabitEthernet1/3/0/34 port link-mode bridge port access vlan 2000 stp edged-port enable # interface GigabitEthernet1/3/0/35 port link-mode bridge port access vlan 2000 stp edged-port enable # interface GigabitEthernet1/3/0/36 port link-mode bridge port access vlan 2000 stp edged-port enable # interface GigabitEthernet1/3/0/37 port link-mode bridge port access vlan 2000 stp edged-port enable # interface GigabitEthernet1/3/0/38 port link-mode bridge port access vlan 2000 stp edged-port enable # interface GigabitEthernet1/3/0/39 port link-mode bridge port access vlan 3000 stp edged-port enable # interface GigabitEthernet1/3/0/40 port link-mode bridge port access vlan 3000 stp edged-port enable # interface GigabitEthernet1/3/0/41 port link-mode bridge port access vlan 3000 stp edged-port enable # interface GigabitEthernet1/3/0/42 port link-mode bridge port access vlan 3000 stp edged-port enable # interface GigabitEthernet1/3/0/43 port link-mode bridge stp edged-port enable # interface GigabitEthernet1/3/0/44 port link-mode bridge description pdttestroom port access vlan 237 qos apply policy hrb inbound # interface GigabitEthernet1/3/0/45 port link-mode bridge description cmcc to sz port access vlan 103 stp edged-port enable qos apply policy hrbdeny445 inbound # interface GigabitEthernet1/3/0/46 port link-mode bridge description cucc to sz port access vlan 102 stp edged-port enable # interface GigabitEthernet1/3/0/47 port link-mode bridge port link-type trunk port trunk permit vlan all # interface GigabitEthernet1/3/0/48 port link-mode bridge description "connect to aruba" port link-type trunk port trunk permit vlan all # interface GigabitEthernet2/2/0/1 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 1 # interface GigabitEthernet2/2/0/2 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 2 # interface GigabitEthernet2/2/0/3 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 3 # interface GigabitEthernet2/2/0/4 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 4 # interface GigabitEthernet2/2/0/5 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 5 # interface GigabitEthernet2/2/0/6 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 6 # interface GigabitEthernet2/2/0/7 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 7 # interface GigabitEthernet2/2/0/8 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 8 # interface GigabitEthernet2/2/0/9 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 9 # interface GigabitEthernet2/2/0/10 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 10 # interface GigabitEthernet2/2/0/11 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 11 # interface GigabitEthernet2/2/0/12 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 12 # interface GigabitEthernet2/2/0/13 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 13 # interface GigabitEthernet2/2/0/14 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 14 # interface GigabitEthernet2/2/0/15 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 15 # interface GigabitEthernet2/2/0/16 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 16 # interface GigabitEthernet2/2/0/17 port link-mode bridge port link-type trunk port trunk permit vlan all qos apply policy hrb inbound port link-aggregation group 17 # interface GigabitEthernet2/2/0/18 port link-mode bridge port access vlan 1000 # interface GigabitEthernet2/2/0/19 port link-mode bridge port access vlan 1000 # interface GigabitEthernet2/2/0/20 port link-mode bridge port access vlan 1000 # interface GigabitEthernet2/2/0/21 port link-mode bridge port access vlan 1000 # interface GigabitEthernet2/2/0/22 port link-mode bridge port access vlan 1000 # interface GigabitEthernet2/2/0/23 port link-mode bridge port access vlan 1000 # interface GigabitEthernet2/2/0/24 port link-mode bridge port access vlan 1000 # interface GigabitEthernet2/3/0/1 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/2 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/3 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/4 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/5 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/6 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/7 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/8 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/9 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/10 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/11 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/12 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/13 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/14 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/15 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/16 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/17 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/18 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/19 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/20 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/21 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/22 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/23 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/24 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/25 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/26 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/27 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/28 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/29 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/30 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/31 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/32 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/33 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/34 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/35 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/36 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/37 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/38 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/39 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/40 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/41 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/42 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/43 port link-mode bridge description shengting port access vlan 4001 stp edged-port enable # interface GigabitEthernet2/3/0/44 port link-mode bridge description jiaojingdui port access vlan 4001 # interface GigabitEthernet2/3/0/45 port link-mode bridge description taiyangdao1 port access vlan 4001 stp disable # interface GigabitEthernet2/3/0/46 port link-mode bridge description taiyangdao2 port access vlan 4001 stp edged-port enable # interface GigabitEthernet2/3/0/47 port link-mode bridge stp edged-port enable # interface GigabitEthernet2/3/0/48 port link-mode bridge stp disable # interface M-Ethernet1/0/0/0 # interface Ten-GigabitEthernet1/5/0/1 # interface Ten-GigabitEthernet1/5/0/2 # interface Ten-GigabitEthernet2/5/0/1 # interface Ten-GigabitEthernet2/5/0/2 # ospf 1 router-id 3.3.3.3 import-route direct area 0.0.0.0 network 10.1.1.0 0.0.0.255 network 10.1.11.0 0.0.0.3 network 10.110.0.0 0.0.255.255 # undo info-center logfile enable # snmp-agent snmp-agent local-engineid 800063A20370F96D5A31CD snmp-agent community read public snmp-agent community write private snmp-agent sys-info version all # dhcp enable # qos vlan-policy hrb vlan 236 inbound # load xml-configuration # load tr069-configuration # user-interface aux 1/0 user-interface aux 2/0 user-interface vty 0 4 authentication-mode scheme user-interface vty 5 15 # irf-port 1/2 port group interface Ten-GigabitEthernet1/5/0/1 mode normal port group interface Ten-GigabitEthernet1/5/0/2 mode normal # irf-port 2/1 port group interface Ten-GigabitEthernet2/5/0/1 mode normal port group interface Ten-GigabitEthernet2/5/0/2 mode normal # return
(0)
最佳答案
可以参考下面步骤
某公司通过专线连接分支机构(下图左侧网络)与总部(下图右侧网络),专线中传输的流量主要有三类:FTP流量、业务软件流量、IP语音流量。由于专线带宽资源有限,在总部的边缘设备SwitchB上已经配置了相应的流量监管功能:1、IP语音流量的承诺速率为1024Kbps;2、业务软件流量的承诺速率为768Kbps;3、FTP流量的承诺速率为512Kbps
为配合总部的流量监管,要求在分支机构的边缘设备SwitchA上配置流量整形功能,对各类流量中突发的超出部分进行缓存,避免数据丢失。同时,由于整个专线的速率为2Mbps,因此要求在SwitchA上配置发往专线的所有数据总速率不得超过2Mbps。
# 创建基本IPv4 ACL2000,匹配IP电话发送的流量(源地址为192.168.3.0/24网段)。
<SwitchA> system-view
[SwitchA] acl basic 2000
[SwitchA-acl-basic-2000] rule permit source 192.168.3.0 0.0.0.255
[SwitchA-acl-basic-2000] quit
# 创建流分类voice,匹配规则为IPv4 ACL 2000。
[SwitchA] traffic classifier voice
[SwitchA-classifier-voice] if-match acl 2000
[SwitchA-classifier-voice] quit
# 创建基本IPv4 ACL2001,匹配业务软件终端发送的流量(源地址为192.168.2.0/24网段)。
[SwitchA] acl basic 2001
[SwitchA-acl-basic-2001] rule permit source 192.168.2.0 0.0.0.255
[SwitchA-acl-basic-2001] quit
# 创建流分类service,匹配规则为IPv4 ACL 2001。
[SwitchA] traffic classifier service
[SwitchA-classifier-service] if-match acl 2001
[SwitchA-classifier-service] quit
# 创建高级IPv4 ACL 3000,匹配普通PC发送的FTP流量(源地址为192.168.1.0/24网段,目的端口为20)。
[SwitchA] acl advanced 3000
[SwitchA-acl-adv-3000] rule permit tcp destination-port eq 20 source 192.168.1.0 0.0.0.255
[SwitchA-acl-adv-3000] quit
# 创建流分类ftp,匹配规则为IPv4 ACL 3000。
[SwitchA] traffic classifier ftp
[SwitchA-classifier-ftp] if-match acl 3000
[SwitchA-classifier-ftp] quit
# 创建流行为voice,动作为重标记本地优先级为6。
[SwitchA] traffic behavior voice
[SwitchA-behavior-voice] remark local-precedence 6
[SwitchA-behavior-voice] quit
# 创建流行为service,动作为重标记本地优先级为4。
[SwitchA] traffic behavior service
[SwitchA-behavior-service] remark local-precedence 4
[SwitchA-behavior-service] quit
# 创建流行为ftp,动作为重标记本地优先级为2。
[SwitchA] traffic behavior ftp
[SwitchA-behavior-ftp] remark local-precedence 2
[SwitchA-behavior-ftp] quit
# 创建QoS策略shaping,将上面三组流分类和流行为进行关联。
[SwitchA] qos policy shaping
[SwitchA-qospolicy-shaping] classifier voice behavior voice
[SwitchA-qospolicy-shaping] classifier service behavior service
[SwitchA-qospolicy-shaping] classifier ftp behavior ftp
[SwitchA-qospolicy-shaping] quit
# 将QoS策略应用到GigabitEthernet1/0/2端口的入方向。
[SwitchA] interface GigabitEthernet 1/0/2
[SwitchA-GigabitEthernet1/0/2] qos apply policy shaping inbound
[SwitchA-GigabitEthernet1/0/2] quit
经过上述配置,三类报文在SwitchA中的本地优先级已经被修改,即可以确定三类报文的输出队列分别为6、4、2。
# 在GigabitEthernet1/0/1端口上配置流量整形,为语音报文(队列6)配置承诺速率为1024Kbps,承诺突发尺寸建议配置为500ms内通过的报文容量(65536bytes)。
[SwitchA] interface GigabitEthernet 1/0/1
[SwitchA-GigabitEthernet1/0/1] qos gts queue 6 cir 1024 cbs 65536
# 在GigabitEthernet1/0/1端口上配置流量整形,为业务软件报文(队列4)配置承诺速率为768Kbps,承诺突发尺寸为49152bytes。
[SwitchA] interface GigabitEthernet 1/0/1
[SwitchA-GigabitEthernet1/0/1] qos gts queue 4 cir 768 cbs 49152
# 在GigabitEthernet1/0/1端口上配置流量整形,为FTP报文(队列2)配置承诺速率为512Kbps,承诺突发尺寸为32768bytes。
[SwitchA] interface GigabitEthernet 1/0/1
[SwitchA-GigabitEthernet1/0/1] qos gts queue 2 cir 512 cbs 32768
# 在GigabitEthernet1/0/1端口上配置端口限速,对出端口方向的流量配置承诺速率为2048Kbps,承诺突发尺寸配置为500ms内通过的流量,即131072bytes。
[SwitchA-GigabitEthernet1/0/1] qos lr outbound cir 2048 cbs 131072
# 保存配置信息
<H3C>save fo
(0)
我是要让看我发的配置里有没有限速策略。
traffic classifier hrbdeny445 operator and if-match acl 3002 traffic classifier hrb operator and if-match acl 3001 # traffic behavior hrbdeny445 filter permit traffic behavior hrb redirect next-hop 10.1.31.1 fail-action forward traffic behavior 1 # qos policy hrbdeny445 classifier hrbdeny445 behavior hrbdeny445 qos policy hrb classifier hrb behavior hrb 这个有QOS的策略,但是看起来是重定向
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
traffic classifier hrbdeny445 operator and if-match acl 3002 traffic classifier hrb operator and if-match acl 3001 # traffic behavior hrbdeny445 filter permit traffic behavior hrb redirect next-hop 10.1.31.1 fail-action forward traffic behavior 1 # qos policy hrbdeny445 classifier hrbdeny445 behavior hrbdeny445 qos policy hrb classifier hrb behavior hrb 这个有QOS的策略,但是看起来是重定向