cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
Join Customer Connection to register!
645
Views
0
Helpful
9
Replies
siddu.s.m
Beginner

DSCP trust over uplink port-channel Cisco 4510R+E

Hi All,

 

Our organisation is planning to implement a new VoIP solution, As a part of it we have been asked to build a suitable QoS configuration to prioritize VoIP traffic.

 

We have Cisco 4510R+E with SUP8-E for user connectivity and Cisco 6807XL with Sup-2T for core connectivity.

 

I have seen we can enable Auto Qos in end user port which will trust the default QoS marking. However I am unable to find the command to carry forward the same trust marking over uplink ports (Uplink is configured with port-channel) towards my core. Is there any command or any option to carry the DSCP trust till core switch.

 

Our connectivity:

End User --> Cisco 4510R+E --(port-channel)--> Cisco 6807-XL --> WAN

 

Thanks in Advance....

 

Sid

9 REPLIES 9
Georg Pauwen
VIP Expert

Hello,

 

can you post your config ? You need to apply 'auto qos voip trust' to each physical interface participating in the port channel...

Hey,

 

Thanks for the reply...

 

However  it is not accepting command 'auto qos voip trust' in port which is part of port channel.

 

physical interface config:

 

interface TenGigabitEthernet5/1
 description Link-Core-VS6807-01##VSS##
 switchport trunk allowed vlan <vlan no>
 switchport mode trunk
 switchport nonegotiate
 logging event link-status
 udld port aggressive
 channel-group 1 mode on
 ip dhcp snooping trust

 

Port-Channel Config:

 

!
interface Port-channel1
 description Trunk-TO-Core-VS6807-01##VSS##
 switchport
 switchport trunk allowed vlan <vlan no>
 switchport mode trunk
 switchport nonegotiate
 logging event link-status
 ip dhcp snooping trust

 

Command not accepted:

 

Access_1-SW4510-01(config)#int te5/1
Access_1-SW4510-01(config-if)#auto ?
  security-port  Configure AutoSecurity

Access_1-SW4510-01(config-if)#auto

 

Command which is available:

Access_1-SW4510-01(config-if)#qos trust ?
  device  trusted device class
  extend  Extend trust through a connected device

Access_1-SW4510-01(config-if)#qos trust dev
Access_1-SW4510-01(config-if)#qos trust device ?
  cisco-phone   Cisco IP Phone
  cts           Cisco-telepresence
  ip-camera     Cisco video surveillance camera
  media-player  Cisco Digital Media Player

Access_1-SW4510-01(config-if)#qos trust exte   
Access_1-SW4510-01(config-if)#qos trust extend ?
  cos  CoS value to use for packets from the device
  <cr>

Access_1-SW4510-01(config-if)#qos trust extend

 

 

Thanks....

 

 

 

 

Hello,

 

post the full config of your 4510...

Hi,

 

Attaching config file.

I am able to apply "auto qos trust" which is generating internal policy-map.

 

We also have existing policy-map, which we can replace:

 

policy-map 1P3Q1T
 class PRIORITY-QUEUE
  priority
  police cir percent 30 bc 33 ms conform-action transmit  exceed-action drop
 class VIDEO-QUEUE
  bandwidth percent 20
 class CONTROL-QUEUE
  bandwidth percent 30
 class class-default
  bandwidth percent 20
    dbl

 

Hello,

 

Looking at your config, I cannot tell if you have 'qos' enabled globally:

 

Access_1-SW4510-01-Test(config)#qos

 

On the interfaces belonging to the port channel, you should be able to configure "qos trust dscp'...

HI,

 

I have no option to enable QoS globally.   Is there any other command to enable QoS.

 

Access_1-SW4510-01(config)#qos ?
Global QoS configuration subcommands:
  account          Additional lengths to be accounted by QoS Features
  control-packets  Enable QoS on control packets
  diffservmib      RFC3289 support for QoS policy-maps
  preserve         Preserve packet header bits
  trace            QoS trace log settings

Access_1-SW4510-01(config)#qos diffservmib ?
  <cr>

 

Access_1-SW4510-01(config)#mls ?
% Unrecognized command
NUTPS16A03-SW4510-01(config)#mls

 

...... Thanks

 

Sid

Hello,

 

which IOS are you running ? Post the output of 'show ver'...

Hi,

 

Access_1-SW4510-01-Test#sh version
Cisco IOS Software, IOS-XE Software, Catalyst 4500 L3 Switch  Software (cat4500es8-UNIVERSALK9-M), Version 03.08.06.E RELEASE SOFTWARE (fc4)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2018 by Cisco Systems, Inc.
Compiled Thu 05-Apr-18 03:55 by prod_rel_team



ROM: 15.1(1r)SG4
Access_1-SW4510-01-Test uptime is 52 minutes
Uptime for this control processor is 54 minutes
System returned to ROM by reload
System restarted at 14:34:27 GMT Wed Nov 7 2018
System image file is "bootflash:cat4500es8-universalk9.SPA.03.08.06.E.152-4.E6.bin"
Jawa Revision 3, RadTrooper Revision 0x0.0x41, Conan Revision 0x1B9E


Last reload reason: Reload Shelf CLI

License Information for 'WS-X45-SUP8-E'
    License Level: ipbase   Type: Permanent
    Next reboot license Level: ipbase

cisco WS-C4510R+E (P5040) processor (revision 2) with 4194304K bytes of physical memory.
Processor board ID FXS1749Q1MR
P5040 CPU at 2.2GHz, Supervisor 8-E
Last reset from Reload
3 Virtual Ethernet interfaces
372 Gigabit Ethernet interfaces
28 Ten Gigabit Ethernet interfaces
511K bytes of non-volatile configuration memory.

Configuration register is 0x2102

Hello,

 

below is the command reference for your IOS and Supervisor. Not all commands are available for each combination:

 

https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst4500/XE3-8-0E/15-24E/command/reference/xe-380-command/cr_toc.html