Configuring traffic policing – H3C Technologies H3C WX3000 Series Unified Switches User Manual
Page 364
37-20
As the priority of traffic classification rules is higher than that of the default rules used for processing
protocol packets, marking priority for all the packets or packets of a VLAN may affect device
management that is implemented through Telnet and so on.
Configuration example
z
GigabitEthernet 1/0/1 belongs to VLAN 2 and is connected to the 10.1.1.0/24 network segment.
z
Mark the DSCP precedence as 56 for the packets from the 10.1.1.0/24 network segment.
1) Method
I
[device] acl number 2000
[device-acl-basic-2000] rule permit source 10.1.1.1 0.0.0.255
[device-acl-basic-2000] quit
[device] interface GigabitEthernet1/0/1
[device-GigabitEthernet1/0/1] traffic-priority inbound ip-group 2000 dscp 56
2) Method
II
[device] acl number 2000
[device-acl-basic-2000] rule permit source 10.1.1.1 0.0.0.255
[device-acl-basic-2000] quit
[device] traffic-priority vlan 2 inbound ip-group 2000 dscp 56
Configuring Traffic Policing
Traffic Policing and Traffic Shaping
for information about traffic policing.
Configuration prerequisites
z
The ACL rules used for traffic classification are defined. Refer to ACL in H3C WX3000 Series
Unified Switches Switching Engine Configuration Guide
for information about defining ACL rules.
z
The rate limit for traffic policing, and the actions for the packets exceeding the rate limit are
determined.
Configuration procedure
You can configure traffic policing for all the packets matching specific ACL rules, or for the packets that
match specific ACL rules and are of a VLAN, of a port group, or pass a port.
Follow these steps to configure traffic policing for all the packets matching specific ACL rules:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Configure traffic
policing
traffic-limit
inbound acl-rule target-rate [ conform
con-action
] [ exceed exceed-action ]
[ meter-statistic ]
Required
By default, traffic policing is
disabled.