ā11-07-2013 02:00 PM - edited ā02-21-2020 05:02 AM
I have a bonded T1 3 MB circuit and need to add QOS to allow guaranteed 1.5 MB throughput to below IPSEC tunnel destination 10.10.22.0. Then all other internet traffic fifo.
We are using ISO 7.2(2) and ASDM 5.2(2)
What's the best way to configure QOS for described setup?
access-list outside_20_cryptomap extended permit ip 192.168.16.0 255.255.255.0 10.10.22.0 255.255.255.0
crypto map outside_map 20 match address outside_20_cryptomap
crypto map outside_map 20 set peer 64.84.x.x
crypto map outside_map 20 set transform-set ESP-AES-256-MD5
tunnel-group 64.84.x.x type ipsec-l2l
tunnel-group 64.84.x.x ipsec-attributes
pre-shared-key *
ā11-11-2013 02:56 AM
as I know asa dosnt support qos
ā11-16-2013 09:13 PM
Hi David,
did you look at the 7.2 configuration guide... unfortunatly the ASA QoS is as versatile as Cisco IOS routers but it does provide basics like priority queuing, shaping and policing:
http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/qos.html#wp1084096
Also, might want to consider upgrading the code since the one you're running is 7 years old.
Patrick
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide