R3166-R3206-HP High-End Firewalls Network Management Configuration Guide-6PW101

230
Item Descri
p
tion
EBS Set the excess burst size (EBS)
Green
Set the action to be taken on conforming packets.
Discard: Drops the packets.
Pass: Permits the packets to pass through.
Red
Set the action to be taken on excess packets.
Discard: Drops the packets.
Pass: Permits the packets to pass through.
Return to Traffic policing configuration task list.
QoS configuration example
1. Network requirements
On the network of a company as shown in Figure 132,
F
irewall interconnects all departments of the company. The R&D department is connected to
GigabitEthernet 0/1 of Firewall.
Configure ACLs and QoS policies to prevent the R&D department from accessing the salary server
at IP address 10.1.1.1/24 during the work hours from 8:00 to 18:00.
Figure 132 Network diagram for QoS configuration
2. Configuration Considerations
a. Create an ACL to prevent the R&D department from accessing the salary server during work
hours.
b. Configure a QoS policy to drop the packets matching the ACL.
c. Apply the QoS policy in the inbound direction of GigabitEthernet 0/1.
3. Configuration procedure
Step1 Configure the work-hour time range
# Define a time range covering the period from 8:00 to 18:00 on Monday through Friday.
Select Resource > Time Range from the navigation tree and then click Add.
Type the time range name, worktime for example, in the Name text box.
Select the Periodic Time Range check box, set the start time to 8:00 and the end time to 18:00, and
then select the check boxes Mon through Fri.
Click Apply to complete the operation.
Step2 Define an ACL for traffic to the salary server.