<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	>
<channel>
	<title>Comments on: Cisco 877 download rate limiting</title>
	<atom:link href="http://stuff.iain.cx/2010/07/11/cisco-877-download-rate-limiting/feed/" rel="self" type="application/rss+xml" />
	<link>http://stuff.iain.cx/2010/07/11/cisco-877-download-rate-limiting/</link>
	<description>Dumenil said I should write a blog</description>
	<lastBuildDate>Tue, 05 Mar 2013 00:28:32 +0000</lastBuildDate>
		<sy:updatePeriod>hourly</sy:updatePeriod>
		<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.8</generator>
	<item>
		<title>By: joseoplmx</title>
		<link>http://stuff.iain.cx/2010/07/11/cisco-877-download-rate-limiting/comment-page-1/#comment-59</link>
		<dc:creator><![CDATA[joseoplmx]]></dc:creator>
		<pubDate>Tue, 05 Mar 2013 00:28:32 +0000</pubDate>
		<guid isPermaLink="false">http://stuff.iain.cx/?p=273#comment-59</guid>
		<description><![CDATA[Hello..

I couldn&#039;t make my router work with this configuration, i have a 5Mbits service and want to limit any kind of traffic to 1Mbit, it isn&#039;t important the time nor day of the week. the policy should be active all the time. Could you please help me posting an example?

Thanks in advance.
J.O.]]></description>
		<content:encoded><![CDATA[<p>Hello..</p>
<p>I couldn&#8217;t make my router work with this configuration, i have a 5Mbits service and want to limit any kind of traffic to 1Mbit, it isn&#8217;t important the time nor day of the week. the policy should be active all the time. Could you please help me posting an example?</p>
<p>Thanks in advance.<br />
J.O.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: iain</title>
		<link>http://stuff.iain.cx/2010/07/11/cisco-877-download-rate-limiting/comment-page-1/#comment-54</link>
		<dc:creator><![CDATA[iain]]></dc:creator>
		<pubDate>Mon, 19 Sep 2011 12:03:31 +0000</pubDate>
		<guid isPermaLink="false">http://stuff.iain.cx/?p=273#comment-54</guid>
		<description><![CDATA[Good stuff.  If you&#039;re using policing I should mention that you can get stats with:

# sh policy-map int &lt;interface&gt; [input&#124;output [class &lt;class&gt;]]]]></description>
		<content:encoded><![CDATA[<p>Good stuff.  If you&#8217;re using policing I should mention that you can get stats with:</p>
<p># sh policy-map int &lt;interface&gt; [input|output [class &lt;class&gt;]]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mankool</title>
		<link>http://stuff.iain.cx/2010/07/11/cisco-877-download-rate-limiting/comment-page-1/#comment-53</link>
		<dc:creator><![CDATA[mankool]]></dc:creator>
		<pubDate>Mon, 19 Sep 2011 11:52:42 +0000</pubDate>
		<guid isPermaLink="false">http://stuff.iain.cx/?p=273#comment-53</guid>
		<description><![CDATA[ok, I created an L3 port on my switch and then applied the class-map to it and it worked!

Great, thanks alot for your great blog!]]></description>
		<content:encoded><![CDATA[<p>ok, I created an L3 port on my switch and then applied the class-map to it and it worked!</p>
<p>Great, thanks alot for your great blog!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mankool</title>
		<link>http://stuff.iain.cx/2010/07/11/cisco-877-download-rate-limiting/comment-page-1/#comment-52</link>
		<dc:creator><![CDATA[mankool]]></dc:creator>
		<pubDate>Sun, 18 Sep 2011 13:49:52 +0000</pubDate>
		<guid isPermaLink="false">http://stuff.iain.cx/?p=273#comment-52</guid>
		<description><![CDATA[Hi Iain,
Thank you for the prompt reply. I tried the rate limit in my test lab using a 3550 and a 3750 but to no effect. I even set my acl to &#039;permit ip any any&#039; and even that didn&#039;t help cause when I did a show int vlan10 rate-limit I didn&#039;t see the &quot;conform&quot; counter increase :( 

Moreover, I did a file transfer across the switches (a laptop connected at each end) and didn&#039;t notice a drop in the transfer rate.

Moving on, I tried the class-map command that you suggested and I&#039;m getting the following error:

%QoS: policy-map with police action at parent level not supported on Vlan10 interface.

Any clue on this? I read this post on cisco forums that talks about using &quot;mls qos vlan-based&quot; but that is for individual ports and not an EtherSVI. 

The IOS on my 3750 is 12.2(50)SE1 so it should suport EtherSVI]]></description>
		<content:encoded><![CDATA[<p>Hi Iain,<br />
Thank you for the prompt reply. I tried the rate limit in my test lab using a 3550 and a 3750 but to no effect. I even set my acl to &#8216;permit ip any any&#8217; and even that didn&#8217;t help cause when I did a show int vlan10 rate-limit I didn&#8217;t see the &#8220;conform&#8221; counter increase :( </p>
<p>Moreover, I did a file transfer across the switches (a laptop connected at each end) and didn&#8217;t notice a drop in the transfer rate.</p>
<p>Moving on, I tried the class-map command that you suggested and I&#8217;m getting the following error:</p>
<p>%QoS: policy-map with police action at parent level not supported on Vlan10 interface.</p>
<p>Any clue on this? I read this post on cisco forums that talks about using &#8220;mls qos vlan-based&#8221; but that is for individual ports and not an EtherSVI. </p>
<p>The IOS on my 3750 is 12.2(50)SE1 so it should suport EtherSVI</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: iain</title>
		<link>http://stuff.iain.cx/2010/07/11/cisco-877-download-rate-limiting/comment-page-1/#comment-51</link>
		<dc:creator><![CDATA[iain]]></dc:creator>
		<pubDate>Thu, 15 Sep 2011 11:38:45 +0000</pubDate>
		<guid isPermaLink="false">http://stuff.iain.cx/?p=273#comment-51</guid>
		<description><![CDATA[I don&#039;t know about matching directly with an ACL without having to use class-map.  If your docs say you can then it&#039;s worth a try.

In any event I wouldn&#039;t recommend using rate-limit.  In a later post I commented that I saw better results with police.  So it would be something this (your formula looks correct to limit at 512kbps):

class-map match-any Email-0900-1300
 match access-group name Email-0900-1300
!
policy-map vlan10-incoming
 class Email-0900-1300
  police 512000 96000 192000 conform-action transmit exceed-action drop violate-option drop
!
interface Vlan 10
 service-policy input vlan10-incoming
!]]></description>
		<content:encoded><![CDATA[<p>I don&#8217;t know about matching directly with an ACL without having to use class-map.  If your docs say you can then it&#8217;s worth a try.</p>
<p>In any event I wouldn&#8217;t recommend using rate-limit.  In a later post I commented that I saw better results with police.  So it would be something this (your formula looks correct to limit at 512kbps):</p>
<p>class-map match-any Email-0900-1300<br />
 match access-group name Email-0900-1300<br />
!<br />
policy-map vlan10-incoming<br />
 class Email-0900-1300<br />
  police 512000 96000 192000 conform-action transmit exceed-action drop violate-option drop<br />
!<br />
interface Vlan 10<br />
 service-policy input vlan10-incoming<br />
!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mankool</title>
		<link>http://stuff.iain.cx/2010/07/11/cisco-877-download-rate-limiting/comment-page-1/#comment-50</link>
		<dc:creator><![CDATA[mankool]]></dc:creator>
		<pubDate>Thu, 15 Sep 2011 10:06:49 +0000</pubDate>
		<guid isPermaLink="false">http://stuff.iain.cx/?p=273#comment-50</guid>
		<description><![CDATA[Hi,
I&#039;ve been doing some reading on the rate-limit command and I came across your blog. Excellent writeup i have to say ...

I&#039;m trying to understand if I can apply the same to a VLAN on my Core switch, which is a Cisco Catalyst 3750G (AdvancedServices IOS image). Based on some Cisco docs that I read, I can match the traffic based on my ACL without using class-map. Can you confirm if my understanding is correct?

Basically, I&#039;m trying to limit incoming email traffic on my LAN to 512Kbps, between 9am and 1pm . Will the below help me achive this:

time-range Email-0900-1300
 periodic sundary monday tuesday wednesday thursday 9:00 to 13:00
!
! The IP 1.1.1.1 etc are fictitious ip addresses from which I&#039;m expecting incoming emails
ip access-list extended Email-0900-1300
 permit ip host 1.1.1.1 any time-range Email-0900-1300
 permit ip host 1.1.1.2 any time-range Email-0900-1300
 permit ip host 1.1.1.3 anytime-range Email-0900-1300

interface vlan 10
rate-limit input access-group Email-0900-1300 512000 96000 192000 conform-action transmit exceed-action drop

Thank you for your input ...

regards,
mAr]]></description>
		<content:encoded><![CDATA[<p>Hi,<br />
I&#8217;ve been doing some reading on the rate-limit command and I came across your blog. Excellent writeup i have to say &#8230;</p>
<p>I&#8217;m trying to understand if I can apply the same to a VLAN on my Core switch, which is a Cisco Catalyst 3750G (AdvancedServices IOS image). Based on some Cisco docs that I read, I can match the traffic based on my ACL without using class-map. Can you confirm if my understanding is correct?</p>
<p>Basically, I&#8217;m trying to limit incoming email traffic on my LAN to 512Kbps, between 9am and 1pm . Will the below help me achive this:</p>
<p>time-range Email-0900-1300<br />
 periodic sundary monday tuesday wednesday thursday 9:00 to 13:00<br />
!<br />
! The IP 1.1.1.1 etc are fictitious ip addresses from which I&#8217;m expecting incoming emails<br />
ip access-list extended Email-0900-1300<br />
 permit ip host 1.1.1.1 any time-range Email-0900-1300<br />
 permit ip host 1.1.1.2 any time-range Email-0900-1300<br />
 permit ip host 1.1.1.3 anytime-range Email-0900-1300</p>
<p>interface vlan 10<br />
rate-limit input access-group Email-0900-1300 512000 96000 192000 conform-action transmit exceed-action drop</p>
<p>Thank you for your input &#8230;</p>
<p>regards,<br />
mAr</p>
]]></content:encoded>
	</item>
</channel>
</rss>
