R3166-R3206-HP High-End Firewalls Network Management Configuration Guide-6PW101
230
Item Descri
p
tion
EBS Set the excess burst size (EBS)
Green
Set the action to be taken on conforming packets.
• Discard: Drops the packets.
• Pass: Permits the packets to pass through.
Red
Set the action to be taken on excess packets.
• Discard: Drops the packets.
• Pass: Permits the packets to pass through.
Return to Traffic policing configuration task list.
QoS configuration example
1. Network requirements
On the network of a company as shown in Figure 132,
• F
irewall interconnects all departments of the company. The R&D department is connected to
GigabitEthernet 0/1 of Firewall.
• Configure ACLs and QoS policies to prevent the R&D department from accessing the salary server
at IP address 10.1.1.1/24 during the work hours from 8:00 to 18:00.
Figure 132 Network diagram for QoS configuration
2. Configuration Considerations
a. Create an ACL to prevent the R&D department from accessing the salary server during work
hours.
b. Configure a QoS policy to drop the packets matching the ACL.
c. Apply the QoS policy in the inbound direction of GigabitEthernet 0/1.
3. Configuration procedure
Step1 Configure the work-hour time range
# Define a time range covering the period from 8:00 to 18:00 on Monday through Friday.
• Select Resource > Time Range from the navigation tree and then click Add.
• Type the time range name, worktime for example, in the Name text box.
• Select the Periodic Time Range check box, set the start time to 8:00 and the end time to 18:00, and
then select the check boxes Mon through Fri.
• Click Apply to complete the operation.
Step2 Define an ACL for traffic to the salary server.