<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Policing Traffic Does Not Work in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1958002#M402012</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Bro&lt;/P&gt;&lt;P&gt;If you need me to help you, I need you to paste your complete show running-config here. This is because your show service-policy police output doesn't match the commands you've typed. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Shown below is exactly what I've done in my lab using Cisco ASA 5510 v8.0.2, and the output is good. I don't think the problem that you're having is a software bug. I believe you've typed in the wrong parameters in your show running-config &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;access-list laptop_acl extended permit ip host 192.168.3.10 any&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;class-map rate_limit&lt;/P&gt;&lt;P&gt;match access-list laptop_acl&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map speed_limit&lt;/P&gt;&lt;P&gt;class rate_limit&lt;/P&gt;&lt;P&gt;&amp;nbsp; police output 3670000 114687 conform-action transmit exceed-action drop&lt;/P&gt;&lt;P&gt;&amp;nbsp; police input 3670000 114687 conform-action transmit exceed-action drop&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;service-policy speed_limit interface dmz&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FW01# show service-policy police&lt;/P&gt;&lt;P&gt;Interface dmz:&lt;BR /&gt;&amp;nbsp; Service-policy: speed_limit&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Class-map: rate_limit&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Input police Interface dmz:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cir 3670000 bps, bc 114687 bytes&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 packets, 0 bytes; actions:&amp;nbsp; trasnmit&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; exceeded 0 packets, 0 bytes; actions:&amp;nbsp; drop&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 bps, exceed 0 bps&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Output police Interface dmz:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cir 3670000 bps, bc 114687 bytes&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 packets, 0 bytes; actions:&amp;nbsp; trasnmit&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; exceeded 0 packets, 0 bytes; actions:&amp;nbsp; drop&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 bps, exceed 0 bps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P/S: Personally, I believe you've used the keyword "drop" in the 'conform-action drop exceed-action drop', but I stand corrected&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Note: If you think my comment is useful, please do rate them nicely &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 20 Jul 2012 02:44:45 GMT</pubDate>
    <dc:creator>Ramraj Sivagnanam Sivajanam</dc:creator>
    <dc:date>2012-07-20T02:44:45Z</dc:date>
    <item>
      <title>Policing Traffic Does Not Work</title>
      <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957995#M402005</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm trying to use qos to police traffic where a certain host should not go above 5Mpbs at any time and if the traffic is exceded it should be dropped.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have trying to play around with the below but the host machine can still access the full bandwidth.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map laptop&lt;/P&gt;&lt;P&gt; match access-list laptop_acl&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list laptop_acl extended permit ip host 192.168.3.10 any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map laptop_sp&lt;/P&gt;&lt;P&gt; class laptop&lt;/P&gt;&lt;P&gt;&amp;nbsp; police input 5000000&lt;/P&gt;&lt;P&gt;&amp;nbsp; police output 5000000&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;service-policy laptop_sp interface outside&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:31:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957995#M402005</guid>
      <dc:creator>John Peterson</dc:creator>
      <dc:date>2019-03-11T23:31:33Z</dc:date>
    </item>
    <item>
      <title>Policing Traffic Does Not Work</title>
      <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957996#M402006</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello John,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try it like this&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;policy-map laptop_sp&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;class laptop&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;police output 50000 conform-action transmit exceed-action drop&amp;nbsp; &lt;/P&gt;&lt;P&gt;police input&amp;nbsp; 50000 conform-action transmit exceed-action drop&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Afterwards do a clear local-host 192.168.3.10&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CSC is a free support community, rate all the posts of our team,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Jul 2012 18:38:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957996#M402006</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-07-16T18:38:27Z</dc:date>
    </item>
    <item>
      <title>Policing Traffic Does Not Work</title>
      <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957997#M402007</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The above seems to rate the traffic, but for some reason when I do a speed test the traffic gets policed but after a while of testing I am unable to connect to the internet and connect to the firewall via ssh.&amp;nbsp; All network access seems to have stopped I have to reload the firewall to get access back?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Jul 2012 20:18:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957997#M402007</guid>
      <dc:creator>John Peterson</dc:creator>
      <dc:date>2012-07-16T20:18:50Z</dc:date>
    </item>
    <item>
      <title>Policing Traffic Does Not Work</title>
      <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957998#M402008</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello John,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Of course that should rate it!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now why you got unable to connect to the internet or even the ASA, that is completely different.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the ACL you have there you are only including one PC, correct?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are you able to ping the ASA after you get disconnected?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Rate the helpful posts&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Jul 2012 21:29:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957998#M402008</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-07-16T21:29:36Z</dc:date>
    </item>
    <item>
      <title>Re: Policing Traffic Does Not Work</title>
      <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957999#M402009</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No not able to ping the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For some reason after the police is applied and when going through a speed test you can see the ASA policing the traffic but during the policing the speed test hangs there and network traffic grind to a halt.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It like the ASA has somehow stopped the host to transmit any data because it has gone past the police rate or tried to burst.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Jul 2012 05:21:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1957999#M402009</guid>
      <dc:creator>John Peterson</dc:creator>
      <dc:date>2012-07-17T05:21:04Z</dc:date>
    </item>
    <item>
      <title>Re: Policing Traffic Does Not Work</title>
      <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1958000#M402010</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've added thoses commands but when i do a:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;firewall(config-pmap-c)# show service-policy police&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface inside:&lt;/P&gt;&lt;P&gt;&amp;nbsp; Service-policy: speed_limit&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Class-map: rate_limit&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Input police Interface inside:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cir 3670000 bps, bc 114687 bytes&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 36029 packets, 21519175 bytes; actions:&amp;nbsp; drop&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; exceeded 536 packets, 752429 bytes; actions:&amp;nbsp; drop&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 117104 bps, exceed 392 bps&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Output police Interface inside:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cir 3670000 bps, bc 114687 bytes&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 packets, 0 bytes; actions:&amp;nbsp; drop&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; exceeded 0 packets, 0 bytes; actions:&amp;nbsp; drop&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 bps, exceed 0 bps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface outside:&lt;/P&gt;&lt;P&gt;&amp;nbsp; Service-policy: speed_limit&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Class-map: rate_limit&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Input police Interface VM:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cir 3670000 bps, bc 114687 bytes&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 packets, 0 bytes; actions:&amp;nbsp; drop&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; exceeded 0 packets, 0 bytes; actions:&amp;nbsp; drop&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 bps, exceed 0 bps&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Output police Interface VM:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cir 3670000 bps, bc 114687 bytes&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 5097 packets, 1544222 bytes; actions:&amp;nbsp; drop&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; exceeded 0 packets, 0 bytes; actions:&amp;nbsp; drop&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 17264 bps, exceed 0 bps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I used the 'conform-action transmit exceed-action drop'&amp;nbsp; but the conformed packets shows drop when it should show transmit.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Jul 2012 08:28:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1958000#M402010</guid>
      <dc:creator>John Peterson</dc:creator>
      <dc:date>2012-07-18T08:28:40Z</dc:date>
    </item>
    <item>
      <title>Re: Policing Traffic Does Not Work</title>
      <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1958001#M402011</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Anybody please?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 19 Jul 2012 22:34:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1958001#M402011</guid>
      <dc:creator>John Peterson</dc:creator>
      <dc:date>2012-07-19T22:34:39Z</dc:date>
    </item>
    <item>
      <title>Re: Policing Traffic Does Not Work</title>
      <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1958002#M402012</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Bro&lt;/P&gt;&lt;P&gt;If you need me to help you, I need you to paste your complete show running-config here. This is because your show service-policy police output doesn't match the commands you've typed. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Shown below is exactly what I've done in my lab using Cisco ASA 5510 v8.0.2, and the output is good. I don't think the problem that you're having is a software bug. I believe you've typed in the wrong parameters in your show running-config &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;access-list laptop_acl extended permit ip host 192.168.3.10 any&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;class-map rate_limit&lt;/P&gt;&lt;P&gt;match access-list laptop_acl&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map speed_limit&lt;/P&gt;&lt;P&gt;class rate_limit&lt;/P&gt;&lt;P&gt;&amp;nbsp; police output 3670000 114687 conform-action transmit exceed-action drop&lt;/P&gt;&lt;P&gt;&amp;nbsp; police input 3670000 114687 conform-action transmit exceed-action drop&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;service-policy speed_limit interface dmz&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FW01# show service-policy police&lt;/P&gt;&lt;P&gt;Interface dmz:&lt;BR /&gt;&amp;nbsp; Service-policy: speed_limit&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Class-map: rate_limit&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Input police Interface dmz:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cir 3670000 bps, bc 114687 bytes&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 packets, 0 bytes; actions:&amp;nbsp; trasnmit&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; exceeded 0 packets, 0 bytes; actions:&amp;nbsp; drop&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 bps, exceed 0 bps&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Output police Interface dmz:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cir 3670000 bps, bc 114687 bytes&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 packets, 0 bytes; actions:&amp;nbsp; trasnmit&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; exceeded 0 packets, 0 bytes; actions:&amp;nbsp; drop&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; conformed 0 bps, exceed 0 bps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P/S: Personally, I believe you've used the keyword "drop" in the 'conform-action drop exceed-action drop', but I stand corrected&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Note: If you think my comment is useful, please do rate them nicely &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 20 Jul 2012 02:44:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1958002#M402012</guid>
      <dc:creator>Ramraj Sivagnanam Sivajanam</dc:creator>
      <dc:date>2012-07-20T02:44:45Z</dc:date>
    </item>
    <item>
      <title>Policing Traffic Does Not Work</title>
      <link>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1958003#M402013</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;trasnmit? I wonder did you mispell that or did cisco?&amp;nbsp; On my 8.2(1) it says &lt;STRONG&gt;conformed...drop&lt;/STRONG&gt; in the show service-policy even though I told it transmit and it appears transmit is the default since the config prunes that.&amp;nbsp; It's not working anyway appears buggy I think I need to upgrade...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Jan 2013 23:02:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policing-traffic-does-not-work/m-p/1958003#M402013</guid>
      <dc:creator>Nelson Minica</dc:creator>
      <dc:date>2013-01-23T23:02:27Z</dc:date>
    </item>
  </channel>
</rss>

