From: Bob Sinclair (bsin@cox.net)
Date: Thu Jun 02 2005 - 12:27:15 GMT-3
Gladston,
Not sure of your problem. I have done a 'set' and 'police' in the same
policy, but have not tried 'trust' except on the interface. Have you verified
that each action works as expected independently? You are aware DSCP 3 and
DSCP 2 both map to IP Precedence 0?
HTH,
Bob Sinclair
CCIE #10427, CCSI 30427, CISSP
www.netmasterclass.net
----- Original Message -----
From: gladston@br.ibm.com
To: ccielab@groupstudy.com
Sent: Thursday, June 02, 2005 9:43 AM
Subject: Policie and Trust Actions
Do you know if it is possible to trust and police IN?
Just 'trust' work, but police with trust under the same policy applyed
inbound does not work
It is not working:
mls qos map policed-dscp 3 to 2
!
class-map match-all Set-with-police
match access-group 121
!
policy-map Set-with-police
class Set-with-police
police 8000 8000 exceed-action policed-dscp-transmit
trust ip-precedence
!
cat2#sh run int fa 0/22
Building configuration...
Current configuration : 194 bytes
!
interface FastEthernet0/22
switchport trunk encapsulation isl
switchport mode trunk
switchport nonegotiate
no ip address
service-policy input Set-with-police
spanning-tree portfast
end
_______________________________________________________________________
Subscription information may be found at:
http://www.groupstudy.com/list/CCIELab.html
This archive was generated by hypermail 2.1.4 : Wed Jul 06 2005 - 14:43:40 GMT-3