QoS MQC的配置

1.网络拓扑图

链接:https://pan.baidu.com/s/1hWpgF_uJGz4em8yMmtUr0A
提取码:8888
eNSP
链接:https://pan.baidu.com/s/1wP0vHim4yqVV0bc0wmzhFw
提取码:8888
在这里插入图片描述
2.网络需求
a.在R1上配置把流量分为AF11,AF21,EF三类。
b.在R2上将AF21流量重新标记为AF22.
3.实现网络互通。

3.配置
在R1上执行流分类;在RT2上执行带宽限制、重新标记等策略。
流量分类原则一般有两类一种是根据二层的源MAC地址、目的MAC地址、VLAN、MPLS EXP、二层协议字段、ACL匹配字段等分类;另外一种就是网络三层分类原则根据IP DSCP、IP协议类型、RTP端口、ACL匹配字段等。

3.1、SW1的配置
[SW1]display current-configuration

sysname SW1

vlan batch 10 20 30

cluster enable
ntdp enable
ndp enable

drop illegal-mac alarm

diffserv domain default

drop-profile default

aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password simple admin
local-user admin service-type http

interface Vlanif1

interface MEth0/0/1

interface GigabitEthernet0/0/1
port link-type access
port default vlan 10

interface GigabitEthernet0/0/2
port link-type access
port default vlan 20

interface GigabitEthernet0/0/3
port link-type access
port default vlan 30

interface GigabitEthernet0/0/4

interface GigabitEthernet0/0/5

interface GigabitEthernet0/0/6

interface GigabitEthernet0/0/7

interface GigabitEthernet0/0/8

interface GigabitEthernet0/0/9

interface GigabitEthernet0/0/10

interface GigabitEthernet0/0/11

interface GigabitEthernet0/0/12

interface GigabitEthernet0/0/13

interface GigabitEthernet0/0/14

interface GigabitEthernet0/0/15

interface GigabitEthernet0/0/16

interface GigabitEthernet0/0/17

interface GigabitEthernet0/0/18

interface GigabitEthernet0/0/19

interface GigabitEthernet0/0/20

interface GigabitEthernet0/0/21

interface GigabitEthernet0/0/22

interface GigabitEthernet0/0/23

interface GigabitEthernet0/0/24
port link-type trunk
port trunk allow-pass vlan 10 20 30

interface NULL0

user-interface con 0
user-interface vty 0 4

return
3.2、R1的配置
display current-configuration
[V200R003C00]

sysname R1

snmp-agent local-engineid 800007DB03000000000000
snmp-agent

clock timezone China-Standard-Time minus 08:00:00

portal local-server load flash:/portalpage.zip

drop illegal-mac alarm

wlan ac-global carrier id other ac id 0

set cpu-usage threshold 80 restore 75

acl number 2001
rule 0 permit source 1.1.1.0 0.0.0.255
acl number 2002
rule 0 permit source 2.2.2.0 0.0.0.255
acl number 2003
rule 0 permit source 3.3.3.0 0.0.0.255

traffic classifier Class_af11 operator and
if-match acl 2001
traffic classifier Class_af21 operator and
if-match acl 2002
traffic classifier Class_ef operator and
if-match acl 2003

traffic behavior Behavior_af11
remark dscp af11
traffic behavior Behavior_af21
remark dscp af21
traffic behavior Behavior_er
remark dscp ef

traffic policy Mark
classifier Class_af11 behavior Behavior_af11
classifier Class_af21 behavior Behavior_af21
classifier Class_ef behavior Behavior_er

aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher % % K8m.Nt84DZ}e#<0`8bmE3Uw}% %
local-user admin service-type http

firewall zone Local
priority 15

interface Ethernet0/0/0

interface Ethernet0/0/1

interface Ethernet0/0/2

interface Ethernet0/0/3

interface Ethernet0/0/4

interface Ethernet0/0/5

interface Ethernet0/0/6

interface Ethernet0/0/7

interface GigabitEthernet0/0/0

interface GigabitEthernet0/0/0.10
dot1q termination vid 10
ip address 1.1.1.1 255.255.255.0
arp broadcast enable

interface GigabitEthernet0/0/0.20
dot1q termination vid 20
ip address 2.2.2.1 255.255.255.0
arp broadcast enable

interface GigabitEthernet0/0/0.30
dot1q termination vid 30
ip address 3.3.3.1 255.255.255.0
arp broadcast enable

interface GigabitEthernet0/0/1
ip address 192.168.12.1 255.255.255.0
traffic-policy Mark outbound

interface NULL0

ospf 1
area 0.0.0.0
network 1.1.1.0 0.0.0.255
network 2.2.2.0 0.0.0.255
network 3.3.3.0 0.0.0.255
network 192.168.12.0 0.0.0.255

user-interface con 0
authentication-mode password
user-interface vty 0 4
user-interface vty 16 20

wlan ac

return

3.3、R2的配置
display current-configuration
[V200R003C00]

sysname R2

snmp-agent local-engineid 800007DB03000000000000
snmp-agent

clock timezone China-Standard-Time minus 08:00:00

portal local-server load flash:/portalpage.zip

drop illegal-mac alarm

wlan ac-global carrier id other ac id 0

set cpu-usage threshold 80 restore 75

aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher % % K8m.Nt84DZ}e#<0`8bmE3Uw}% %
local-user admin service-type http

firewall zone Local
priority 15

interface GigabitEthernet0/0/0
ip address 192.168.12.2 255.255.255.0

interface GigabitEthernet0/0/1
ip address 192.168.23.1 255.255.255.0

interface GigabitEthernet0/0/2

interface NULL0

ospf 1
area 0.0.0.0
network 192.168.12.0 0.0.0.255
network 192.168.23.0 0.0.0.255

user-interface con 0
authentication-mode password
user-interface vty 0 4
user-interface vty 16 20

wlan ac

return
3.4、R3的配置
display current-configuration
[V200R003C00]

sysname R3

snmp-agent local-engineid 800007DB03000000000000
snmp-agent

clock timezone China-Standard-Time minus 08:00:00

portal local-server load flash:/portalpage.zip

drop illegal-mac alarm

wlan ac-global carrier id other ac id 0

set cpu-usage threshold 80 restore 75

aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher % % K8m.Nt84DZ}e#<0`8bmE3Uw}% %
local-user admin service-type http

firewall zone Local
priority 15

interface GigabitEthernet0/0/0
ip address 192.168.23.2 255.255.255.0

interface GigabitEthernet0/0/1
ip address 192.168.34.1 255.255.255.0

interface GigabitEthernet0/0/2

interface NULL0

ospf 1
area 0.0.0.0
network 192.168.23.0 0.0.0.255
network 192.168.34.0 0.0.0.255

user-interface con 0
authentication-mode password
user-interface vty 0 4
user-interface vty 16 20

wlan ac

return
3.5、R4的配置
display current-configuration
[V200R003C00]

sysname R4

snmp-agent local-engineid 800007DB03000000000000
snmp-agent

clock timezone China-Standard-Time minus 08:00:00

portal local-server load flash:/portalpage.zip

drop illegal-mac alarm

wlan ac-global carrier id other ac id 0

set cpu-usage threshold 80 restore 75

aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher % % K8m.Nt84DZ}e#<0`8bmE3Uw}% %
local-user admin service-type http

firewall zone Local
priority 15

interface GigabitEthernet0/0/0
ip address 192.168.34.2 255.255.255.0

interface GigabitEthernet0/0/1

interface GigabitEthernet0/0/2
ip address 4.4.4.1 255.255.255.0

interface NULL0

ospf 1
area 0.0.0.0
network 4.4.4.0 0.0.0.255
network 192.168.34.0 0.0.0.255

user-interface con 0
authentication-mode password
user-interface vty 0 4
user-interface vty 16 20

wlan ac

return

4.PC互相通信
在这里插入图片描述

猜你喜欢

转载自blog.csdn.net/qq_41235506/article/details/109610807
QOS