cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
302
Views
0
Helpful
3
Replies

2960 policing breaks file transfer

richwalker1988
Level 1
Level 1

Hi,

i wonder if anybody can answer this somewhat confusing situation for me, i am trying to implement inbound rate limiting on an 8 port 2960 switch,

i have configured a successfull policer to 10Mbps which is bang on using speedtest.net however when i do a file transfer through the switch from w10 PC to W10 laptop i am getting roughly 290K transfer speed, the same results using iperf as well

class-map match-all CLASS_SLAP
  match access-group name ACL_SLAP

policy-map POLICY_SLAP
 class CLASS_SLAP
  police 10485500 8000 exceed-action drop

interface FastEthernet0/8
 switchport trunk native vlan 110
 switchport mode trunk
 service-policy input POLICY_SLAP

Extended IP access list ACL_SLAP
    10 permit ip any any

interface F0/8 is the uplink to my core which has connection to both ASA and PC

Any advice would be apreciated,

Thanks

Rich

1 Accepted Solution

Accepted Solutions

Joseph W. Doherty
Hall of Fame
Hall of Fame

Disclaimer

The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.

Liability Disclaimer

In no event shall Author be liable for any damages wha2tsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.

Posting

You might be seeing the lower throughput because policers default settings might not support TCP's BDP need.

Insure your second parameter supports half the BDP.

View solution in original post

3 Replies 3

Joseph W. Doherty
Hall of Fame
Hall of Fame

Disclaimer

The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.

Liability Disclaimer

In no event shall Author be liable for any damages wha2tsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.

Posting

You might be seeing the lower throughput because policers default settings might not support TCP's BDP need.

Insure your second parameter supports half the BDP.

Many Thanks Joseph,

with some testing i have found that police 10485500 395000 exceed-action drop does the trick for 10Mbps

many thanks for your advice

Rich

Review Cisco Networking for a $25 gift card