RE: Slight offtopic: Create QoS with IPsec and GRE

From: Mike Schlenger (mschlenger@meridianitsolutions.com)
Date: Mon Jul 28 2003 - 16:52:19 GMT-3


Oliver,

Check into the "qos preclassify" command, along with CBWFQ. Not only is
this the preferred method, but the command is not supported when using
legacy priority queuing. By default, the IP header (TOS/DSCP) is copied
into the GRE header, and then copied into the IPSec header. If this
application is JUST for voice, you won't need this command. If you need
to prioritize anything OTHER then ToS/DSCP, i.e. TCP/UDP port numbers
via ACLs, then this command is needed. Check it out.

http://www.cisco.com/en/US/netsol/ns110/ns170/ns171/ns109/networking_sol
utions_white_paper09186a0080189080.shtml

Mike

Michael Schlenger
CCIE #7079
Meridian IT Solutions
mschlenger@meridianitsolutions.com
847.592.3912

-----Original Message-----
From: Oliver Ziltener [mailto:ziltener@netcloud.ch]
Sent: Friday, July 25, 2003 6:39 PM
To: ccielab@groupstudy.com
Cc: Oliver Ziltener
Subject: Slight offtopic: Create QoS with IPsec and GRE

Hello all

sorry for the offtopic question...

I have a customer with a hub and spoke IPsec/GRE Networks. We have to
use GRE, because we run eigrp to the spokes. On the central site is a
time critical application (SAP) and some other preferred traffic
(smtp/pop). All spokes has a ADSL interface on a small router (830 or
1720) has a to directly to the internet for www and so on.

What is the best way to reserve bandwidth for application X and Y.
Im thinking CBWFQ will fit best, agree?
Does CBWFQ works well with GRE Tunnels?
  thanks for any feedback

Oliver



This archive was generated by hypermail 2.1.4 : Wed Aug 06 2003 - 06:52:56 GMT-3