06-04-2014 12:52 PM - edited 03-04-2019 11:05 PM
Dears,
Below is the topology ,I have one question in my mind pls answer,
ASA---IR---ISP
I want to apply a QOS on internet router, my concern is how to apply a QOS on the vpn traffic that will be tunneled by ASA,as i know this traffic will not been seen by the router.
thanks
06-04-2014 03:52 PM
The Cisco ASA will preserve the QoS marking while encrypting the traffic i.e they will copy the original marking marking to the new IP Header so your Internet Router should be able to use them accordingly.
https://supportforums.cisco.com/document/100326/asa-vpn-qos-voicevideo-traffic
Manish
06-06-2014 05:26 AM
Hello.
In the proposed scenario router (QoS enabled) will start reordering IPSec packets (due to queue per class); this might impact tunnel if anti-replay feature is too strict. So, if different classes required for tunneled traffic, you'ld better to implement QoS before encryption!
PS: do you what to implement QoS for outbound only, or for inbound as well?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide