I have now been able to get most of this working, but had to connect SPA122 to DEFAULT VLAN (GE3).
Added traffic selectors for this and some high priority (Q2) devices. Added QoS rules for these but if I added these to the default WAN_POLICY only those explicitly mentioned could access the WAN.
I then created a a new WAN POLICY without the default QoS rules, just the new ones, and this works!
However, I need to prioritise incoming traffic but only Q1 seems to be available for incoming, so currently only SPA122 has a rule (to mark Cos). Everything else is a free for all.
I have three devices I need to give Q2 on incoming traffic, so is there a way to do this, or is the traffic precedence 'inherited' from outgoing rules?
The documentation, both shipped CD and ESD, is not very clear on this. In fact, there are places where it is just plain wrong.
Otherwise, all seems to be going well. It is handling marginal circuits and LB better than my old router.
One last point. I need to report on WAN availability. I am remote logging to a Linux system to analyse syslog, but cannot find definitive log entries to determine WAN State (DNS LInk detection). Only physical port availability is shown explicitly (Line status - which also correctly triggers email alerts). I can see nothing similar for WAN State.
I use Splunk to analyse the logs, so could use fairly complex search pattern, if necessary.
MTIA
;-}
P