Nortel 5530 Engineering Manual

Nortel 5530 Engineering Manual

Ethernet routing switch
Table of Contents

Advertisement

Ethernet Routing Switch
5510/5520/5530
Engineering
> Filters and QOS Configuration for
Ethernet Routing Switch 5500
Technical Configuration Guide
Enterprise Solutions Engineering
Document Date: April 01, 2008
Document Number: NN48500-559
Document Version: 2.0

Advertisement

Table of Contents
loading

Summary of Contents for Nortel 5530

  • Page 1 Ethernet Routing Switch 5510/5520/5530 Engineering > Filters and QOS Configuration for Ethernet Routing Switch 5500 Technical Configuration Guide Enterprise Solutions Engineering Document Date: April 01, 2008 Document Number: NN48500-559 Document Version: 2.0...
  • Page 2: Filters And Qos Configuration For Ers

    Voice over IP, multimedia services and applications, and wireless broadband designed to help people solve the world’s greatest challenges. Nortel does business in more than 150 countries. For more information, visit Nortel on the Web at www.nortel.com.
  • Page 3 This technical configuration guide provides an overview on how to configure QoS and Filters on the Ethernet Routing Switch 5500 with software release 5.1. The configuration examples are all in reference to the Nortel Networks Command Line Interface (NNCLI). ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 4: Table Of Contents

    12.5 4 – L2 C MAC A ....62 ONFIGURATION XAMPLE LASSIFICATION ASED ON DDRESS 12.6 5 – L2 L3 C ..........64 ONFIGURATION XAMPLE LASSIFICATION ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 5 Table 8: Meter Bucket Size and Duration ..................22 Table 9: Default Nortel CoS Markings ................... 24 Table 10: QoS Applications – Number of Classifiers Used ............33 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 6: Document Updates

    Italic text in a Courier New font indicates text the user must enter or select in a menu item, button or command: ERS5520-48T# show running-config Output examples from Nortel devices are displayed in a Lucinda Console font: ERS5520-48T# show running-config ! Embedded ASCII Configuration Generator Script ! Model = Ethernet Routing Switch 5520-24T-PWR ! Software version = v5.0.0.011...
  • Page 7: Overview: Ethernet Routing Switch 5500 Qos And Filtering

    Note that only the 802.1p user priority value associated with ‘well-known’ DSCP values are remapped by the default trusted ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 8: Table 1: Default Qos Action

    Destination MAC with mask to filter on complete or partial MAC addresses VLAN ID – can be a range Tagged or untagged packets EtherType 802.1p priority • IP Classifier Elements Source IPv4/v6 host or subnet ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 9 The switch can be set-up for one counter for each classifier or a counter for all classifiers associated with a policy up to 63 counters are available per port. The statistics track match/in- profile and out-of-profile statistics associated with a meter. ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 10: Qos Flow Chart

    One L2 and one IP Meter *Application QoS Meter Classifier Block Grouping of one or more Policy Classifiers Type = Classifier Block *Application QoS Policy Figure 2: QoS Flow Chart ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 11: Filter Functionality

    The referenced action or metering elements may differ across block members but all members must reference individual actions or meters (but not actions and meters) if any do. ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 12: Port Range Functionality

    Maximum Value Binary Value be even number) 1, 3, 7, 15, 31, 63, 127, 255, 511, 1025, 2047, 4095, 8191, 16355, 32762, or 65535 Min = 10 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 13: Policies

    Don’t Drop 0x22 Priority 5 lowDropPrec Premium_Service Don’t Drop 0x2e Priority 6 lowDropPrec Network_Service Don’t Drop 0x30 Priority 7 lowDropPrec Null_Service Don’t Drop ignore ignore lowDropPrec ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 14 QoS shares resources with other switch applications including DHCP Relay, MAC Security, IP Fix, IGMP, EAPOL, EAP multihost (5530-24TFD only), OSPF, IP Source Guard, and ADAC. Please use the command ‘show qos diag’ to view the mask utilization per port.
  • Page 15: Queue Sets

    This command is in the CLI priv-exec mode. Resource Sharing Recommendations Nortel Networks recommends you use the default resource-sharing setting of regular. If you change the setting, the resulting performance may increase for some ports, and at times, decrease for other ports.
  • Page 16: Table 5: Ethernet Routing Switch 5500 Egress Cos Queuing

    18432B 36864B 85504B 18432B 33792B 70656B 18432B 30720B 54272B 36864B 49152B 144640B Strict 100% Weighted 32768B 46080B 131840B Round Robin 26624B 39936B 120064B 19968B 33280B 109824B ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 17 21504B 37376B 111360B 18432B 34304B 98560B 46080B 64000B 199680B Strict 100% 41984B 59904B 181760B 35840B 53760B 158720B Weighted Round Robin 28160B 46080B 133120B 19968B 38400B 113152B ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 18 8) in which the switch will operate. This parameter is global and requires a reset to activate a change. This command is in the CLI priv-exec mode. • 5520-24T-PWR(config)#qos queue-set-assignment queue-set <1-8> 1p <0-7> queue <1-8> ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 19 CLI priv-exec mode. Egress Queue Recommendations If you are running all untagged traffic and do not change default port priority settings, use setting 1 CoS. ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 20: Traffic Meter And Shaping

    Low Drop ReadOnl Null_Action Ignore Ignore Low Drop ReadOnl 55001 UntrustedClfrs1 DPass Ing 1p Ignore Low Drop Other 55002 UntrustedClfrs2 DPass 0x0 Priority 0 High Drop Other ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 21: Actual Bucket Size

    1 to 4294967295 ms. in-profile-action <1-55000> Specify the in-profile action ID; range is 1 to 55000. in-profile-action-name Specify the in-profile action name. <WORD> ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 22 Bucket sizes in bytes are 4K, 8K, 16k, 32K, 64K, 128K, 256K, and 512K • For the 10 GigE module only, available for the Ethernet Routing Switch 5530, it supports bucket sizes of 4K, 8K, 16K, 32K, 64K, 128K, 256K, 512K, 1024K, 2048K, 4096K, and 8192K.
  • Page 23: Interface Shaper

    Duration = ((bucketSize*8) / (max-burst-rate – committed-rate)) • Bucket sizes in bytes are 4K, 8K, 16k, 32K, 64K, 128K, 256K, and 512K ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 24 Technical Configuration Guide v2.0 NN48500-559 • For the 10 GigE module only, available for the Ethernet Routing Switch 5530, it supports bucket sizes of 4K, 8K, 16K, 32K, 64K, 128K, 256K, 512K, 1024K, 2048K, 4096K, and 8192K. • If you do not specify maximum burst duration when setting up a shaper, the maximum bucket size will be automatically set.
  • Page 25: Default Nortel Class Of Service

    Filters and QoS Configuration for ERS 5500 Technical Configuration Guide v2.0 NN48500-559 6. Default Nortel Class of Service The following table shows the default Nortel Class of Service marking. Table 9: Default Nortel CoS Markings DSCP Binary NNSC Decimal 000000 00...
  • Page 26: Qos Access Lists (Acl)

    Specify the source IP classifier criteria src-port-min Specify the L4 source port minimum value classifier criteria update-1p Specify the update user priority update-dscp Specify the update DSCP <cr> ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 27 172.1.1.10 would be allowed. • Protocol 6 refer to TCP traffic ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 28 Action Set Drop Precedence: Low Drop Type: Access List Storage Type: NonVolatile Id: 3 Name: host Block: Address Type: IPv4 Destination Addr/Mask: Ignore Source Addr/Mask: Ignore ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 29 Classifier Id: 55003 Unit/Port: 1/19 Meter: Meter Id: In-Profile Action: In-Profile Action Id: Non-Match Action: Non-Match Action Id: Track Statistics: Aggregate Precedence: Session Id: 0 Storage Type: Other ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 30 5500 (config)#qos ip-acl name host src-ip 172.1.1.10/32 protocol 6 src-port-min 80 src-port-max 80 update-dscp 10 block tcpcommon Finally, re-apply the IP-ACL back to port 1/19: • 5500 (config)#qos acl-assign port 1/19 acl-type ip name host ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 31: Ip Security Features

    8.2.1 Dynamic ARP Inspection Configuration Assuming DHCP snooping is already enable for VLANs 100 and 200 and port 1/19 is the uplink port, enter the following commands: ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 32: Ip Source Guard

    Assuming DHCP snooping is already configured with untrusted port members 2-20, enter the following commands: • interface fastEthernet 5500(config)# 2-20 • ip verify source 5500(config-if)# • exit 5500(config-if)# ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 33: Bpdu Filtering

    1/1 to 1/10, enter the following commands: • 5520-1(config)#interface fastEthernet 1/1-10 • 5520-1(config-if)#spanning-tree learning fast • 5520-1(config-if)#spanning-tree bpdu-filtering timeout 0 • 5520-1(config-if)#spanning-tree bpdu-filtering enable • 5520-1(config-if)#exit ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 34: Qos Interface Applications

    Ethernet Routing Switch prior to release 4.2. This document can be found by going to www.nortel.com/support and can be found under any Ethernet Switch or Ethernet Routing Switch folder. ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 35: Arp Spoofing

    3. Drop all ARP packets with a source IP address equal to the identified default gateway. 4. Drop all ARP packets with a target IP address equal to the identified default gateway. 5. Pass all ARP responses. ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 36: Dhcp Attacks

    1. Pass DHCP traffic originated by the valid DHCP server. 2. Drop DHCP traffic originated by all other hosts. ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 37: Dos

    Beyond the scanning activity for new hosts, the current variant of this worm has no Configuring Quality of Service and IP Filtering for Nortel Ethernet Routing Switch 5500 Series, Software Release 4.2 other payload. Activity of this worm is readily identifiable on a network by the presence of 376 byte UDP packets.
  • Page 38: Bpdu Blocking

    01:80:c2:00:00:00 and 01:00:0c:cc:cc:cd. The following commands are used to enable BPDU blocking • 5530-24TFD(config)#interface fastEthernet all • 5530-24TFD(config-if)# qos bpdu blocker port <port #> enable ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 39: Configuration Steps - Policy Configuration

    ERS5500-48T#show qos if-group Role Interface Capabilities Storage Combination Class Type ________________________________ ____________ ___________________ ___________ allBayStackIfcs Untrusted Input 802, Input IP ReadOnly role_one Untrusted Input 802, Input IP NonVolatile ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 40: Classification

    Specify the Vlan ID minimum value classifier criteria vlan-tag Specify the vlan tag classifier criteria <cr> Example: • ERS5500-48T(config)# qos l2-element 1 src-mac 00-00-0A-00-00-00 src-mac-mask FF-FF-FF-FF-FF-00 ethertype 0x800 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 41 The following commands add classifiers 1 and 4 to classifier block 1. • ERS5500-48T(config)#qos classifier-block 1 block-number 1 name block_1 set-id 1 • ERS5500-48T(config)#qos classifier-block 2 block-number 1 name block_1 set-id 4 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 42: Meters

    Specify the in-profile action ID. in-profile-action-name Specify the in-profile action name. <actname> out-profile-action <actid> Specify the out-of-profile action ID. out-profile-action-name Specify the out-of-profile action name. <actname> ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 43: Add A New Policy

    To add track individual statistics for each classifier, use the following command: • ERS5500-48T(config)#qos policy 1 name policy_one if-group role_one clfr-type block clfr-id 1 in-profile-action 1 non-match-action 2 precedence 10 track-statistics individual ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 44: Configuration Examples

    Pre-defined Numerical Parameter Value DSCP Ignore 0 to 63 Decimal DSCP value Protocol ICMP IGMP RSVP Src/Dst Port TFTP FTP Control FTP Data Telnet SMTP HTTP HTTPS ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 45: Configuration Example 1 - Traffic Meter Using Policies

    Configure three IP elements for UDP destination ports 80, 69, and 137. ERS5500 Step 1 – Create the IP elements ERS5500-24T(config)#qos ip-element 1 addr-type ipv4 protocol 17 dst-port-min 80 dst-port-max 80 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 46 ERS5500 Step 1 – Create the classifier block ERS5500-24T(config)#qos classifier-block 1 block-number 1 name b1 set-id 1 meter 1 ERS5500-24T(config)#qos classifier-block 2 block-number 1 name b1 set-id 2 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 47 ____ ____ _______ ________________ _________ __________ Version 1 Version 1 12.2.2.2 Verify IP-Element Configuration Step 1 – Verify that the 3 IP Elements show qos ip-element ERS5500-24T# Result: ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 48 NonVolatile NonVolatile 55001 UntrustedClfrs1 55001 55001 Other 55002 UntrustedClfrs2 55002 55002 Other Step 3 – Verify that the Meter Configuration show qos meter ERS5500-24T# Result: Name: ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 49 Storage Type: NonVolatile Block Name: Block Number: Classifier Name: Classifier Set Id: Meter Name: Meter Id: Action Name: Action Id: Session Id: 0 Storage Type: NonVolatile ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 50 Meter: Meter Id: In-Profile Action: In-Profile Action Id: Non-Match Action: Standard_Service Non-Match Action Id: 2 Track Statistics: Individual Precedence: 3 Session Id: 0 Storage Type: NonVolatile ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 51: Configuration Example - Ip Acl, Dhcp Snooping, Arp Inspection, Bpdu Filtering, And Source Guard

    5500(config)#vlan members 700 23 12.3.1.2 Add IP Address and Enable OSPF ERS5500: Step 1 – Add IP address to VLAN 110 and enable OSPF with interface type of passive ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 52 12.3.1.5 Enable STP Fast Start, BPDU Filtering and Broadcast/Multicast Rate Limiting ERS5500: Step 1 – Enable STP Fast Start and BPDU Filtering 5500(config)#interface fastEthernet 3-6,8-10 5500(config-if)#spanning-tree learning fast 5500(config-if)#spanning-tree bpdu-filtering timeout 0 5500(config-if)#spanning-tree bpdu-filtering enable 5500(config-if)#exit ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 53 10.10.30.0/24 block b1 5500(config)# 5500(config)# qos ip-acl name one dst-ip 10.62.32.0/24 block b1 qos ip-acl name one dst-ip 10.0.0.0/8 drop-action enable 5500(config)# block b2 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 54 VLAN Snooping ---- -------- Disabled Disabled Enabled Enabled Disabled Step 2 – Verify all the access port are configured for ‘untrusted’ – this is the default setting ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 55 Step 2 – Verify all the access ports are configured for ‘untrusted’ – this is the default setting show ip arp-inspection interface 3-6,8-10 ERS5500-24T# Result: Port Inspection ---- ---------- Untrusted Untrusted Untrusted Untrusted Untrusted Untrusted Untrusted ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 56 IPv6 Flow Id: Ignore Action Drop: Action Update DSCP: Ignore Action Update 802.1p Priority: Ignore Action Set Drop Precedence: Low Drop Type: Access List Storage Type: NonVolatile ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 57 Id: 6 Name: Block: Address Type: IPv4 Destination Addr/Mask: 172.0.0.0/8 Source Addr/Mask: Ignore DSCP: Ignore IPv4 Protocol / IPv6 Next Header: Ignore Destination L4 Port Min: Ignore ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 58 IPv6 Flow Id: Ignore Action Drop: Action Update DSCP: Ignore Action Update 802.1p Priority: Ignore Action Set Drop Precedence: Low Drop Type: Access List Storage Type: NonVolatile ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 59 Storage Type: NonVolatile Step 2 – To view the IP ACL assignment, enter the following command: show qos acl-assign ERS5500-24T# Result: Name State Unit/Port Storage Type Type ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 60: Configuration Example 3: Port Range Using Acl Or Policy

    Max Port Range: 2016-2047 2016-2047 Min = 11111100000 Max = 11111111111 Other valid ranges: 2016 to 2016 2016 to 2017 2016 to 2019 2016 to 2023 2016 to 2031 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 61 5500(config)#qos policy 3 name range_udp_1 if-group ifx clfr-type classifier clfr-id 3 in-profile-action 4 non-match-action 9 precedence 9 5500(config)#qos policy 4 name range_udp_2 if-group ifx clfr-type classifier clfr-id 4 in-profile-action 4 non-match-action 3 precedence 8 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 62 If you do not assign a drop-action to the individual IP-ACL configuration, the default action of disable will be used. The non-match global action is always drop. Protocol 17 refers to UDP and protocol 6 refers to TCP. ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 63: Figure 5: L2 Classification Based On Mac Address Example

    Gold and non-match action of service class bronze 5500(config)# qos policy 1 name "pol_1" if-group "vlan_110" clfr-type classifier ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 64 ERS5500: Step 2 – Pass all other traffic with standard CoS 5500(config)#qos l2-acl name vlan_110 drop-action disable ERS5500: Step 3 – Assign the L2-ACL’s to ports 3-4 qos acl-assign port 1/3-4 acl-type l2 name vlan_110 5500(config)# ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 65: Configuration Example 5 - L2 And L3 Classification

    ERS5500-24T(config)# qos if-assign port 1/3 name Int_group_2 12.6.1.2 Add IP and L2 Classifiers Elements ERS5500: Step 1 – Add IP elements with source address of 192.1.1.10 5500(config)#qos ip-element 1 src-ip 192.1.1.10/32 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 66 ERS5500 Step 1 – create a new policy with classifier block 1 with a non-match-action of Bronze service 5500(config)#qos policy 1 name Pol_1 if-group Int_group_2 clfr-type block clfr- id 1 non-match-action 3 precedence 10 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 67: Configuration Example 6 - Qos Marking With Port Role Combination Set For Un-Restricted Using Acl's

    ERS5500: Step 1 – Add queue set 8; please note that you must reboot the switch for the queue set to take effect 5500(config)#qos agent queue-set 8 5500(config)#boot ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 68: Policy Configuration

    5500(config)#qos classifier 3 set-id 3 name c3 element-type ip element-id 3 ERS5500 Step 1 – Create a Classifier Block 5500(config)# qos classifier-block 1 block-number 1 name b1 set-id 1 in-profile- ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 69 45056 Weighted Round Robin Relative 43008 Weighted Round Robin Relative 39936 Weighted Round Robin Relative 36864 Weighted Round Robin Relative 33792 Weighted Round Robin Relative 30720 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 70: Configuration Example 7 - Interface Shaping

    Step 1 –View the shape rate configured on port 8 show qos if-shaper port 8 ERS5500-24T# Result: Unit Port IfIndex Name Rate Burst Size (Kbps) (Bytes) ____ ____ _______ ________________ ________ ________ 40000 524288 ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 71: Software Baseline

    All configuration examples are based on software release 5.1. 14. Reference Documentation Document Title Publication Description Number Configuration - Quality of NN47200-504 Nortel Ethernet Routing Switch 5500 Service (217466-C) Series updated for software release ___________________________________________________________________________________________________________________________ Nortel Confidential Information Copyright © 2008 Nortel Networks. All Rights Reserved. External Distribution...
  • Page 72 NN48500-559 Contact us If you purchased a service contract for your Nortel product from a distributor or authorized reseller, contact the technical support staff for that distributor or reseller for assistance. If you purchased a Nortel Networks service program, contact Nortel Technical Support. To obtain contact information online, go to www.nortel.com/contactus.

This manual is also suitable for:

55205510

Table of Contents