<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA Traffic Shaping in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-traffic-shaping/m-p/3695879#M14477</link>
    <description>Commans are ok except the bust value.&lt;BR /&gt;Bust is a total of bits sent over a specific time.&lt;BR /&gt;I recommend you read the following articles:&lt;BR /&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/asa-command-reference/S/cmdref3/s1.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/asa-command-reference/S/cmdref3/s1.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/82310-qos-voip-vpn.html#anc6" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/82310-qos-voip-vpn.html#anc6&lt;/A&gt;</description>
    <pubDate>Tue, 28 Aug 2018 00:56:22 GMT</pubDate>
    <dc:creator>Francesco Molino</dc:creator>
    <dc:date>2018-08-28T00:56:22Z</dc:date>
    <item>
      <title>ASA Traffic Shaping</title>
      <link>https://community.cisco.com/t5/network-security/asa-traffic-shaping/m-p/3695856#M14474</link>
      <description>&lt;P&gt;Hello Cisco Guru's,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As a start i am no expert at ASA's but manage to find my way around them, i apologize in advance if my question seems dumb.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have a new 50Mbit/s synchronous link over fibre that the provider implements heavy traffic policing, with this they suggested i setup some shaping on our ASA to 47Mbit's with 50Mbit's bursts, i am hoping i have done this correctly.&amp;nbsp; &amp;nbsp;This is on an ASA 5520.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;object network PABX&lt;/P&gt;
&lt;P&gt;&amp;nbsp;host 192.168.3.50&lt;/P&gt;
&lt;P&gt;object network VOIP&lt;/P&gt;
&lt;P&gt;&amp;nbsp;subnet x.x.x.0 255.255.255.0&lt;/P&gt;
&lt;P&gt;object-group service SIP-Trunks tcp-udp&lt;/P&gt;
&lt;P&gt;&amp;nbsp;port-object range 10020 10067&lt;/P&gt;
&lt;P&gt;&amp;nbsp;port-object eq sip&lt;/P&gt;
&lt;P&gt;object-group protocol TCPUDP&lt;/P&gt;
&lt;P&gt;&amp;nbsp;protocol-object udp&lt;/P&gt;
&lt;P&gt;&amp;nbsp;protocol-object tcp&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;!&lt;/P&gt;
&lt;P&gt;access-list outside_access_in extended permit object-group TCPUDP object VOIP object PABX&lt;/P&gt;
&lt;P&gt;object-group SIP-Trunks&lt;/P&gt;
&lt;P&gt;!&lt;/P&gt;
&lt;P&gt;access-list global_mpc extended permit object-group TCPUDP 192.168.3.0&lt;/P&gt;
&lt;P&gt;!&lt;/P&gt;
&lt;P&gt;class-map DM_INLINE_Child-Class&lt;/P&gt;
&lt;P&gt;&amp;nbsp;match access-list global_mpc&lt;/P&gt;
&lt;P&gt;!&lt;/P&gt;
&lt;P&gt;policy-map DM_INLINE_Child-Policy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;class DM_INLINE_Child-Class&lt;/P&gt;
&lt;P&gt;&amp;nbsp; priority&lt;/P&gt;
&lt;P&gt;policy-map outside-policy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;class class-default&lt;/P&gt;
&lt;P&gt;&amp;nbsp; shape average 47000000 50000000&lt;/P&gt;
&lt;P&gt;&amp;nbsp; service-policy DM_INLINE_Child-Policy&lt;/P&gt;
&lt;P&gt;!&lt;/P&gt;
&lt;P&gt;service-policy outside-policy interface outside&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In addition i have setup voice traffic (SIP and RTP) for traffic prioritization, hoping i have done this correctly too.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Your help is much appreciated.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:09:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-traffic-shaping/m-p/3695856#M14474</guid>
      <dc:creator>TMaster100</dc:creator>
      <dc:date>2020-02-21T16:09:21Z</dc:date>
    </item>
    <item>
      <title>Re: ASA Traffic Shaping</title>
      <link>https://community.cisco.com/t5/network-security/asa-traffic-shaping/m-p/3695862#M14475</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;The goal is to limit to 50Mbps the voice traffic or limit all traffic and have voice prioritized?</description>
      <pubDate>Mon, 27 Aug 2018 23:25:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-traffic-shaping/m-p/3695862#M14475</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2018-08-27T23:25:43Z</dc:date>
    </item>
    <item>
      <title>Re: ASA Traffic Shaping</title>
      <link>https://community.cisco.com/t5/network-security/asa-traffic-shaping/m-p/3695864#M14476</link>
      <description>&lt;P&gt;Yes, you are absolutely correct. We need to shape all traffic to 50Mbps but prioritize Voice.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Aug 2018 23:28:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-traffic-shaping/m-p/3695864#M14476</guid>
      <dc:creator>TMaster100</dc:creator>
      <dc:date>2018-08-27T23:28:20Z</dc:date>
    </item>
    <item>
      <title>Re: ASA Traffic Shaping</title>
      <link>https://community.cisco.com/t5/network-security/asa-traffic-shaping/m-p/3695879#M14477</link>
      <description>Commans are ok except the bust value.&lt;BR /&gt;Bust is a total of bits sent over a specific time.&lt;BR /&gt;I recommend you read the following articles:&lt;BR /&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/asa-command-reference/S/cmdref3/s1.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/asa-command-reference/S/cmdref3/s1.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/82310-qos-voip-vpn.html#anc6" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/82310-qos-voip-vpn.html#anc6&lt;/A&gt;</description>
      <pubDate>Tue, 28 Aug 2018 00:56:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-traffic-shaping/m-p/3695879#M14477</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2018-08-28T00:56:22Z</dc:date>
    </item>
  </channel>
</rss>

