User ManualTable of ContentsDOCUMENT UPDATES5CONVENTIONS5OVERVIEW: ETHERNET ROUTING SWITCH 5500 QOS AND FILTERING6QOS FLOW CHART9FILTER FUNCTIONALITY10OVERALL CLASSIFICATION FUNCTIONALITY10CLASSIFIER BLOCK FUNCTIONALITY10PORT RANGE FUNCTIONALITY11POLICIES12QUEUE SETS14TRAFFIC METER AND SHAPING19ACTUAL BUCKET SIZE20POLICING TRAFFIC20INTERFACE SHAPER22DEFAULT NORTEL CLASS OF SERVICE24QOS ACCESS LISTS (ACL)25ACL CONFIGURATION25IP SECURITY FEATURES30DHCP SNOOPING30DYNAMIC ARP INSPECTION30IP SOURCE GUARD31BPDU FILTERING32BPDU FILTERING CONFIGURATION32QOS INTERFACE APPLICATIONS33ARP SPOOFING34DHCP ATTACKS35DOS36BPDU BLOCKING37CONFIGURATION STEPS – POLICY CONFIGURATION38ROLE COMBINATION38CLASSIFICATION39METERS41ADD A NEW POLICY42CONFIGURATION EXAMPLES4312.1 PRE-DEFINED VALUES4312.2 CONFIGURATION EXAMPLE 1 – TRAFFIC METER USING POLICIES44FILTERING, AND SOURCE GUARD5012.4 CONFIGURATION EXAMPLE 3: PORT RANGE USING ACL OR POLICY5912.5 CONFIGURATION EXAMPLE 4 – L2 CLASSIFICATION BASED ON MAC ADDRESS6212.6 CONFIGURATION EXAMPLE 5 – L2 AND L3 CLASSIFICATION64RESTRICTED USING ACL’S6612.8 CONFIGURATION EXAMPLE 7 – INTERFACE SHAPING69SOFTWARE BASELINE70REFERENCE DOCUMENTATION70Figure 1: QoS System Diagram6Figure 2: QoS Flow Chart9Figure 3: Arp Spoofing Example34Figure 4: IP ACL, DHCP Snooping, ARP Inspection, and Source Guard50Figure 5: L2 Classification Based on MAC Address Example62Figure 6: DSCP Mapping via Un-restricted Port Role66Table 1: Default QoS Action7Table 2: Example of Valid Port Ranges11Table 3: Default Policy Drop Action12Table 4: Ethernet Routing Switch 5500 Resource Sharing14Table 5: Ethernet Routing Switch 5500 Egress CoS Queuing15Table 6: Meter and Shaping Range and Granularity19Table 7: Actual Bucket Size in Bytes20Table 8: Meter Bucket Size and Duration22Table 9: Default Nortel CoS Markings24Table 10: QoS Applications – Number of Classifiers Used33Size: 449 KBPages: 72Language: EnglishOpen manual