Cisco Cisco IOS Software Release 12.4(2)T Dépliant

Pagina di 50
© 2008 Cisco Systems, Inc. All rights reserved.
25
Per IPSec Tunnel Quality of Service (QoS)
ƒ Quality of Service (QoS)
shapes and applies bandwidth guarantees 
to mission critical application traffic in VPN networks
ƒ QoS classification happens before encryption
ƒ Shaping/queuing happens at the physical interface 
ƒ QoS policy is possible in both tunnel and physical interface
ƒ
Enhancement simplifies QoS enablement in VPN networks 
ƒ Dynamic QoS on hub device ensures optimal spoke to hub traffic flow
ƒ More efficient use of internal resources such as Crypto Engines in VPN 
gateways
Hierarchical queuing per tunnel 
QoS policy classification
QoS policy policing, marking
S
A cla
s
sifi
cation
Crypto
Engine
Tunnel 1 - data
Tunnel 1 - voice
Deri
ved
Interfac
e QoS policy
Tunnel 1
policy
Data
Voice
Tunnel 2
policy
Data
Voice
Tunnel 2
policy
Data
Voice
Tunnel 2 - data
Tunnel 2 - voice
Tunnel 3 - data
Tunnel 3 - voice
Physical
Interface
Cisco IOS 
Security
9
Quality of 
Service