10-11-2016 04:07 AM - edited 03-08-2019 07:45 AM
Hi,
i wonder if anybody can answer this somewhat confusing situation for me, i am trying to implement inbound rate limiting on an 8 port 2960 switch,
i have configured a successfull policer to 10Mbps which is bang on using speedtest.net however when i do a file transfer through the switch from w10 PC to W10 laptop i am getting roughly 290K transfer speed, the same results using iperf as well
class-map match-all CLASS_SLAP
match access-group name ACL_SLAP
policy-map POLICY_SLAP
class CLASS_SLAP
police 10485500 8000 exceed-action drop
interface FastEthernet0/8
switchport trunk native vlan 110
switchport mode trunk
service-policy input POLICY_SLAP
Extended IP access list ACL_SLAP
10 permit ip any any
interface F0/8 is the uplink to my core which has connection to both ASA and PC
Any advice would be apreciated,
Thanks
Rich
Solved! Go to Solution.
10-11-2016 06:40 AM
Disclaimer
The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
Liability Disclaimer
In no event shall Author be liable for any damages wha2tsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
Posting
You might be seeing the lower throughput because policers default settings might not support TCP's BDP need.
Insure your second parameter supports half the BDP.
10-11-2016 06:40 AM
Disclaimer
The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
Liability Disclaimer
In no event shall Author be liable for any damages wha2tsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
Posting
You might be seeing the lower throughput because policers default settings might not support TCP's BDP need.
Insure your second parameter supports half the BDP.
10-11-2016 07:02 AM
Many Thanks Joseph,
with some testing i have found that police 10485500 395000 exceed-action drop does the trick for 10Mbps
many thanks for your advice
Rich
10-11-2016 07:03 AM
q
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide