1. 程式人生 > >ASA的QOS基本配置

ASA的QOS基本配置

流量限制

第一步:新建ACL
access-list acl174 extended permit ip host 192.168.1.74 any
access-list acl174 extended permit ip any host 192.168.1.7

第二步:新建class-map,並關聯相應的ACL
class-map class174
match access-list acl174

第三步:新建policy-map,並關聯相應的class-map
policy-map policy_inside
class class174
police input 2000000 1500 conform-action transmit exceed-action drop //限制入流量2Mbps

police output 3000000 1500 conform-action transmit exceed-action drop //限制出流量3Mbps

第四步:將policy-map關聯到相應的接口中
service-policy policy_inside interface outside

備註:一個IP段或object-group,指的是這段的總流量

ASA的QOS基本配置