cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1073
Views
0
Helpful
2
Replies

prevent users from hogging bandwidth

TECH-JEFF
Level 4
Level 4

Hi, we have a Cisco ASA5520 as our Firewall, lately a lot of users are having some downloads, video stream, etc. Though we can see under monitoring which IP address is hogging the bandwidth, my question is, I know that only web filters are able to block sites with streaming, etc...

Is there a bandwidth limitation which Cisco ASA can do to that specific port or IP?

Thanks

Jeff

Jefferson Co
1 Accepted Solution

Accepted Solutions

On the ASA you can configure MPF, where you describe traffic in a class-map based on address and port.  These classes are referenced in a policy-map where you can police the traffic. That means that all traffic above the given policing-rate is dropped.

All in all, this will be a nightmare to configure. Given that the ASA 5520 is approaching EOL, it's time to look for a replacement. The Cisco Meraki MX appliances are really powerful when it comes to traffic control like you want to do it. 

--
If you found this post helpful, please give it Kudos. If my answer solves your problem, please click Accept as Solution so others can benefit from it.

View solution in original post

2 Replies 2

On the ASA you can configure MPF, where you describe traffic in a class-map based on address and port.  These classes are referenced in a policy-map where you can police the traffic. That means that all traffic above the given policing-rate is dropped.

All in all, this will be a nightmare to configure. Given that the ASA 5520 is approaching EOL, it's time to look for a replacement. The Cisco Meraki MX appliances are really powerful when it comes to traffic control like you want to do it. 

--
If you found this post helpful, please give it Kudos. If my answer solves your problem, please click Accept as Solution so others can benefit from it.

I see, luckily we're on the part where we thought of migrating to a NGFW. 

Thanks though for the input.

Jeff

Jefferson Co
Review Cisco Networking for a $25 gift card