Quality of ServiceïŒQoSïŒã¯ãããŸããŸãªã¯ã©ã¹ã®ãã©ãã£ãã¯ã«ããŸããŸãªãµãŒãã¹åªå é äœãæäŸããããã®ãã¯ãããžãŒã§ãã
ãŸããåªå é äœä»ãã¯ããµãŒãã¹ãã¥ãŒãçºçãããšãã«ã®ã¿æå³ãããããšãç解ããã®ã¯ç°¡åã§ãã ããã¯ããã«ãããŸããããªãã¯ããªãã®æš©å©ã䜿çšããŠãæåã«ãæ»ããããšãã§ããŸãã
ãã¥ãŒã¯çãå Žæã«åœ¢æãããŸãïŒéåžžããã®ãããªå Žæã¯ãããã«ããã¯ããããã«ããã¯ãšåŒã°ããŸãïŒã å žåçãªãããã¯ãã¯ãå°ãªããšã100 Mbit / sã®é床ã§ãããã¯ãŒã¯ã«æ¥ç¶ãããã³ã³ãã¥ãŒã¿ãŒããã¹ãŠãããã€ããŒãžã®ãã£ãã«ã䜿çšããã€ã³ã¿ãŒããããªãã£ã¹ãžã®ã¢ã¯ã»ã¹ã§ããã100 Mbit / sãè¶ ããããšã¯ãã£ãã«ãªããå€ãã®å Žåãã€ãã¹1-2-10 Mbit / sã«ãªããŸãã ãŸã£ããã
第äºã«ãQoSã¯äžèœè¬ã§ã¯ãããŸããããããã¯ããçããããšãã€ã³ã¿ãŒãã§ã€ã¹ã®ç©çãããã¡ããã£ã±ãã«ãªãããšãå€ãããã®ã€ã³ã¿ãŒãã§ã€ã¹ãä»ããŠçµäºãããã¹ãŠã®ããã±ãŒãžãé 眮ãããŸãã ãããŠãæ°ããå°çããããã±ãŒãžã¯ã䜿ããããŠãç Žæ£ãããŸãã ãã®ãããã€ã³ã¿ãŒãã§ã€ã¹äžã®ãã¥ãŒãå¹³åããŠãã®æ倧ãµã€ãºã®20ïŒ ãè¶ ããå ŽåïŒCiscoã«ãŒã¿ãŒã§ã¯ãæ倧ãã¥ãŒãµã€ãºã¯éåžž128-256ãã±ããã§ãïŒããããã¯ãŒã¯ã®èšèšãæ éã«æ€èšããè¿œå ã®ã«ãŒããé 眮ãããããããã€ããŒã«åž¯åãæ¡åŒµããå¿ èŠããããŸãã
æè¡ã®æ§æèŠçŽ ãåãæ±ã£ãŠã¿ãŸããã
ïŒããã«ã«ããã®äžãããããïŒ
ããŒãã³ã°ã ããŸããŸãªãããã¯ãŒã¯ãããã³ã«ïŒã€ãŒãµããããIPãATMãMPLSãªã©ïŒã®ããããŒãã£ãŒã«ãã«ã¯ããã©ãã£ãã¯ã®ããŒãã³ã°å°çšã®ç¹å¥ãªãã£ãŒã«ãããããŸãã ãã¥ãŒå ã®åŸç¶ã®ããåçŽãªåŠçã®ããã«ãã©ãã£ãã¯ãããŒã¯ããå¿ èŠããããŸãã
ã€ãŒãµããã ãµãŒãã¹ã¯ã©ã¹ïŒCoSïŒãã£ãŒã«ãã¯3ãããã§ãã ãã©ãã£ãã¯ãç°ãªãããŒãã³ã°ã®8ã€ã®ãããŒã«åå²ã§ããŸã
IP 2ã€ã®æšæºããããŸãïŒå€ããã®ãšæ°ãããã®ã§ãã å€ããã®ã«ã¯ãToSãã£ãŒã«ãïŒ8ãããïŒãããããããã3ããããIP PrecedenceãšåŒã°ããŠããŸããã ãã®ãã£ãŒã«ãã¯CoSã€ãŒãµãããããããŒãã£ãŒã«ãã«ã³ããŒãããŸããã
åŸã«æ°ããæšæºãå®çŸ©ãããŸããã ToSãã£ãŒã«ãã¯DiffServã«ååãå€æŽãããDifferencial Service Code PointïŒDSCPïŒãã£ãŒã«ãã«è¿œå ã®6ããããå²ãåœãŠãããŸããããã®ãã£ãŒã«ãã§ã¯ããã®ã¿ã€ãã®ãã©ãã£ãã¯ã«å¿ èŠãªãã©ã¡ãŒã¿ãŒãéä¿¡ã§ããŸãã
ããŒã¿ã®ã©ãã«ä»ãã¯ããã®ããŒã¿ã®ãœãŒã¹ã«æãè¿ããã®ã«ããŸãã ãã®ãããã»ãšãã©ã®IPé»è©±ã¯ãé³å£°ãã±ããèªäœã®IPããããŒã«DSCP = EFãŸãã¯CS5ãã£ãŒã«ããè¿œå ããŸãã å€ãã®ã¢ããªã±ãŒã·ã§ã³ã¯ãããã±ãŒãžãæåã«åŠçãããããšãæåŸ ããŠãç¬èªã«ãã©ãã£ãã¯ãããŒã¯ããŸãã ããšãã°ããã¢ããŒãã¢ãããã¯ãŒã¯ã¯ãããã眪ãã«ããŸãã
ãã¥ãŒ
åªå é äœä»ããã¯ãããžãŒã䜿çšããªããŠããããã¯ãã¥ãŒããªãããšãæå³ããŸããã ããã«ããã¯ã§ã¯ãã©ã®ãããªå Žåã§ããã¥ãŒãçºçããæšæºã®FIFOïŒå å ¥ãå åºãïŒã¡ã«ããºã ãæäŸãããŸãã ãã®ãããªãã¥ãŒã¯ãæããã«ããã±ãããããã«ç Žæ£ããã«ãããã¡ã«éä¿¡ããåã«ãã±ãããä¿åããããšãèš±å¯ããŸãããé³å£°ãã©ãã£ãã¯ãªã©ã®èšå®ãæäŸããŸããã
éžæããã¯ã©ã¹ã«çµ¶å¯Ÿåªå 床ãæå®ããå ŽåïŒã€ãŸãããã®ã¯ã©ã¹ããã®ãã±ãããåžžã«æåã«åŠçãããïŒããã®ãã¯ãããžãŒã¯åªå 床ãã¥ãŒã€ã³ã°ãšåŒã°ããŸãã ã€ã³ã¿ãŒãã§ã€ã¹ã®ç©ççºä¿¡ãããã¡ã«ãããã¹ãŠã®ãã±ããã¯2ã€ã®è«çãã¥ãŒã«åå²ãããç¹æš©ãã¥ãŒããã®ãã±ããã¯ç©ºã«ãªããŸã§éä¿¡ãããŸãã ãã®å Žåã«ã®ã¿ã2è¡ç®ã®ãã±ãããéä¿¡ããå§ããŸãã ãã®æè¡ã¯åçŽã§ãããªãç²éã§ãã éåªå ãã©ãã£ãã¯åŠçã¯åžžã«åæ¢ããŸãã Ciscoã«ãŒã¿ã§ã¯ãäœæã§ããŸã
åªå é äœã®ç°ãªã4è¡ã ãããã¯å³å¯ãªéå±€ã«åŸããŸããåªå 床ã®äœããã¥ãŒããã®ãã±ããã¯ãåªå 床ã®é«ããã¥ãŒããã¹ãŠç©ºã«ãªããŸã§åŠçãããŸããã
ãã§ã¢ãã¥ãŒã€ã³ã° ã ãã©ãã£ãã¯ã®åã¯ã©ã¹ãåãæš©å©ãæäŸã§ããããã«ããæè¡ã éåžžã¯äœ¿çšãããŸãã ãµãŒãã¹ã®è³ªã®æ¹åãšããç¹ã§ã¯ã»ãšãã©ææããããŸããã
åçåãã¥ãŒã€ã³ã°ïŒWFQ ïŒã ããŸããŸãªã¯ã©ã¹ã®ãã©ãã£ãã¯ã«ããŸããŸãªæš©å©ãä»äžããæè¡ïŒããŸããŸãªãã¥ãŒã®ãéã¿ãã¯ç°ãªããšèšããŸãïŒããåæã«ãã¹ãŠã®ãã¥ãŒã«ãµãŒãã¹ãæäŸããŸãã ãæã§ãã¯æ¬¡ã®ããã«ãªããŸãããã¹ãŠã®ãã±ããã¯ãinã䜿çšããŠè«çãã¥ãŒã«åå²ãããŸãã
åºæºãšããŠãIP Precedenceãã£ãŒã«ãã åããã£ãŒã«ããåªå 床ãèšå®ããŸãïŒããè¯ãïŒã ããã«ãã«ãŒã¿ãŒã¯ãã©ã®ãã¥ãŒããã©ã®ãã±ãããéä¿¡ããã®ããéããããèšç®ããŠéä¿¡ããŸãã
圌ã¯ãããåŒã§èããŸãïŒ
dT =ïŒtïŒiïŒ-tïŒ0ïŒïŒ/ïŒ1 + IPPïŒ
IPP-IP Precedenceãã£ãŒã«ãå€
tïŒiïŒ-ã€ã³ã¿ãŒãã§ã€ã¹ã«ãããã±ããã®å®éã®éä¿¡ã«å¿ èŠãªæéã L /é床ãšããŠèšç®ã§ããŸããããã§ãLã¯ãã±ããé·ãSpeedã¯ã€ã³ã¿ãŒãã§ãŒã¹è»¢éé床ã§ãã
ãã®ãã¥ãŒã¯ããã€ã³ãããŒãã€ã³ãã€ã³ã¿ãŒãã§ã€ã¹ïŒHDLCãŸãã¯PPPã«ãã»ã«åïŒãé€ããã¹ãŠã®Ciscoã«ãŒã¿ã€ã³ã¿ãŒãã§ã€ã¹ã§ããã©ã«ãã§æå¹ã«ãªã£ãŠããŸãã
WFQã«ã¯ããã€ãã®æ¬ ç¹ããããŸãããã®ãããªãã¥ãŒã€ã³ã°ã¯ã以åã«ã¿ã°ä»ãããããã±ããã䜿çšãããã©ãã£ãã¯ã¯ã©ã¹ãšå²ãåœãŠããã垯åãåå¥ã«æ±ºå®ããããšã¯ã§ããŸããã ããã«ãååãšããŠã誰ãIP Precedenceãã£ãŒã«ãã«ããŒã¯ãä»ããŠããªãããããã±ããã¯ããŒã¯ãããŸããã ãã¹ãŠã1ã€ã®ãã¥ãŒã«åé¡ãããŸãã
WFQã®éçºã¯ã ã¯ã©ã¹ããŒã¹ã®åçåãã¥ãŒã€ã³ã°ïŒCBWFQ ïŒã§ããã ãã®ãã¥ãŒã§ã¯ã管çè ãããŸããŸãªåºæºã«åŸã£ãŠãã©ãã£ãã¯ã¯ã©ã¹ãèªåã§èšå®ããŸããããšãã°ãACLããã³ãã¬ãŒããšããŠäœ¿çšãããããããã³ã«ããããŒãåæãããããŸãïŒNBARãåç §ïŒã 次ã«ããããã®ã¯ã©ã¹ã«ã€ããŠ
ãéã¿ãã決å®ããããã¥ãŒã®ãã±ããã¯éã¿ã«æ¯äŸããŠåŠçãããŸãïŒããå€ãã®éã¿-ãã®ãã¥ãŒããã®ãã±ããã¯åäœæéãããããå€ããªããŸãïŒ
ãã ãããã®ãããªãã¥ãŒã¯ãæãéèŠãªãã±ããïŒéåžžã¯é³å£°ãŸãã¯ä»ã®å¯Ÿè©±åã¢ããªã±ãŒã·ã§ã³ã®ãã±ããïŒã®å³å¯ãªéä¿¡ãæäŸããŸããã ãããã£ãŠãåªå 床ãšã¯ã©ã¹ããŒã¹ã®åçåãã¥ãŒã€ã³ã°ã®ãã€ããªãã-PQ-CBWFQ㯠ã äœé 延ãã¥ãŒã€ã³ã°ïŒLLQïŒãšããŠãç¥ãããŠããŸã ã ãã®ãã¯ãããžãŒã§ã¯ãæ倧4ã€ã®åªå 床ãã¥ãŒãèšå®ããCBWFQã¡ã«ããºã ã«åŸã£ãŠæ®ãã®ã¯ã©ã¹ãåŠçã§ããŸãã
LLQã¯ãæã䟿å©ã§æè»æ§ããããé »ç¹ã«äœ¿çšãããã¡ã«ããºã ã§ãã ãã ããã€ã³ã¿ãŒãã§ã€ã¹ã§ã®ã¯ã©ã¹èšå®ãããªã·ãŒèšå®ãããã³ããªã·ãŒæœè¡ãå¿ èŠã§ãã
èšå®ã«ã€ããŠã¯åŸã§è©³ãã説æããŸãã
ãããã£ãŠããµãŒãã¹å質ãæäŸããããã»ã¹ã¯2ã€ã®æ®µéã«åããããšãã§ããŸãã
ããŒãã³ã° ã ãœãŒã¹ã«è¿ãã
ãã±ããåŠç ã ããããã€ã³ã¿ãŒãã§ãŒã¹äžã®ç©çãã¥ãŒã«å ¥ããããããè«çãã¥ãŒã«åå²ãããããã®è«çãã¥ãŒã«ããŸããŸãªè«çãªãœãŒã¹ãæäŸããŸãã
QoSãã¯ãããžãŒã¯ãªãœãŒã¹ã倧éã«æ¶è²»ããããã»ããµãŒã«éåžžã«å€§ããªè² è·ããããŸãã ãããŠãããŒãããã»ã©ãããããŒãæ·±ã調ã¹ãŠããã±ãŒãžãåé¡ããå¿ èŠããããŸãã æ¯èŒã®ããã«ïŒã«ãŒã¿ãŒãã»ãšãã©ã¢ããªã±ãŒã·ã§ã³ã¬ãã«ã«ã¹ããªãŒã ãã¹ãã³ããã®ã§ã¯ãªããIPãã±ããããããŒã調ã¹ãŠããã®3 IPPããããåæããæ¹ãã¯ããã«ç°¡åã§ãã©ã®çš®é¡ã®ãããã³ã«ãå ¥ã£ãŠããããå€æããŸãïŒNBARãã¯ãããžãŒïŒ
ãã©ãã£ãã¯ã®ä»¥éã®åŠçãç°¡çŽ åããQoSã«é¢é£ãããã¹ãŠã®ããããŒãä¿¡ãããããããä¿¡é Œå¢çããäœæããããã«ã次ã®ããšãã§ããŸãã
1.ã¢ã¯ã»ã¹ã¬ãã«ïŒã¯ã©ã€ã¢ã³ããã·ã³ã«è¿ãïŒã®ã¹ã€ãããšã«ãŒã¿ãŒã§ãã±ããããã£ããããã¯ã©ã¹ã«åæ£ãã
2.ããªã·ãŒã§ãã¢ã¯ã·ã§ã³ãšããŠãããããŒãç¬èªã®æ¹æ³ã§åæç»ããããããé«ãã¬ãã«ã®QoSããããŒã®å€ãããäœãããããŒã«è»¢éããŸãã
ããšãã°ãã«ãŒã¿ãŒã§ã¯ãã²ã¹ãWiFiãã¡ã€ã³ããã®ãã¹ãŠã®ãã±ããããã£ãããïŒéæšæºã®QoSããããŒã䜿çšã§ããã³ã³ãã¥ãŒã¿ãŒããœãããŠã§ã¢ãå¶åŸ¡ãããŠããªãå¯èœæ§ããããšæ³å®ïŒãIPããããŒãããã©ã«ãã®ãã®ã«å€æŽããã¬ãã«3ããããŒïŒDSCPïŒããã£ãã«ããããŒã«ãããã³ã°ããŸãã¬ãã«ïŒCoSïŒã
ããã«ãã¹ã€ããã¯ãªã³ã¯å±€ã©ãã«ã®ã¿ã䜿çšããŠãã©ãã£ãã¯ãå¹æçã«åªå é äœä»ãã§ããŸãã
LLQã»ããã¢ãã
ãã¥ãŒãèšå®ããã«ã¯ãã¯ã©ã¹ãæ§æãããããã®ã¯ã©ã¹ã«å¯ŸããŠåž¯åå¹ ãã©ã¡ãŒã¿ãŒã決å®ããäœæãããæ§é å šäœãã€ã³ã¿ãŒãã§ã€ã¹ã«é©çšããå¿ èŠããããŸãã
ã¯ã©ã¹ã®äœæïŒ
ã¯ã©ã¹ãããNAME
ãããïŒ
ã¢ã¯ã»ã¹ã°ã«ãŒãã¢ã¯ã»ã¹ã°ã«ãŒã
ä»»æã®ãã±ãã
ã¯ã©ã¹ãããã¯ã©ã¹ããã
cos IEEE 802.1Q / ISLãµãŒãã¹ã¯ã©ã¹/ãŠãŒã¶ãŒãã©ã€ãªãªãã£å€
å®å ã¢ãã¬ã¹å®å ã¢ãã¬ã¹
å»æ£ã¯ã©ã¹ã®å»æ£åäœèå¥å
IPïŒv4ïŒããã³IPv6ãã±ããã®dscp Match DSCP
ãããŒãããŒããŒã¹ã®QoSãã©ã¡ãŒã¿ãŒ
fr-deãã¬ãŒã ãªã¬ãŒDEãããã®äžèŽ
fr-dlci fr-dlciã§ã®äžèŽ
input-interfaceç §åããå ¥åã€ã³ã¿ãŒãã§ã€ã¹ãéžæããŸã
ip IPåºæã®å€
MPLSãã«ããããã³ã«ã©ãã«ã¹ã€ããã³ã°åºæã®å€
ãã®è©ŠåçµæãåŠå®ããªã
ãã±ããã¬ã€ã€ãŒ3ãã±ããé·
IPïŒv4ïŒããã³IPv6ãã±ããã§ã®åªå äžèŽåªå é äœ
ãããã³ã« protocol
qos-group Qos-group
éä¿¡å ã¢ãã¬ã¹éä¿¡å ã¢ãã¬ã¹
äžèŽããVLAN VLAN
ã¯ã©ã¹å ã®ãã±ããã¯ãããŸããŸãªå±æ§ã§äžŠã¹æ¿ããããšãã§ããŸããããšãã°ãACLããã³ãã¬ãŒããšããŠæå®ããããDSCPãã£ãŒã«ãã§æå®ããããç¹å®ã®ãããã³ã«ã匷調衚瀺ãããã§ããŸãïŒNBARãã¯ãããžãŒãæå¹ïŒ
ããªã·ãŒã®äœæïŒ
ããªã·ãŒãããããªã·ãŒ
ã¯ã©ã¹NAME1
ïŒ
垯åå¹
å§çž®ãæå¹ã«ãã
ãã¹ãŠã®ãã±ãããããããããŸã
log IPv4ããã³ARPãã±ããããã°ã«èšé²ããŸã
netflow-sampler NetFlowã¢ã¯ã·ã§ã³
èŠå¯èŠå¯
ãã®ã¯ã©ã¹ã®å³æ Œãªã¹ã±ãžã¥ãŒãªã³ã°åªå 床
ããŒã«ããããã®ãã¥ãŒå¶éãã¥ãŒæ倧ãããå€
random-detectããããããªã·ãŒãšããŠRandom Early Detectionãæå¹ã«ãã
ãµãŒãã¹ããªã·ãŒã®èšå®ãããŒ
QoSå€ãèšå®ããŸã
ã·ã§ãŒãã³ã°ãã©ãã£ãã¯ã·ã§ãŒãã³ã°
æ¿æ²»ã®ã¯ã©ã¹ããšã«ãã¹ããªããã®åªå éšåãéžæã§ããŸãã
ããªã·ãŒãããããªã·ãŒ
ã¯ã©ã¹NAME1
åªå ïŒ
[8-2000000]ããããã /ç§
ç·åž¯åå¹ ã®ããŒã»ã³ã
ãããŠããã®ã¯ã©ã¹ã®ããã±ãŒãžã¯ãå°ãªããšããã®éšåãåžžã«ä¿¡é Œã§ããŸãã
ãŸãã¯ããã®ã¯ã©ã¹ãCBWFQå ã§æã€ãéã¿ãã説æããŸã
ããªã·ãŒãããããªã·ãŒ
ã¯ã©ã¹NAME1
垯åå¹ ïŒ
[8-2000000]ããããã /ç§
ç·åž¯åå¹ ã®ããŒã»ã³ã
æ®ãã®åž¯åå¹ ã®æ®ãã® ïŒ
ã©ã¡ãã®å Žåãã䜿çšå¯èœãªåž¯åå šäœã®çµ¶å¯Ÿå€ãšå²åã®äž¡æ¹ãæå®ã§ããŸã
åççãªçåãçããŸããã«ãŒã¿ãŒã¯ã©ã®ããã«ããŠåž¯åå šäœãç¥ãã®ã§ããïŒ çãã¯å¹³å¡ã§ãïŒã€ã³ã¿ãŒãã§ã€ã¹ã®åž¯åå¹ ãã©ã¡ãŒã¿ããã æ瀺çã«æ§æãããŠããªãå Žåã§ããäœããã®å€ãå¿ èŠã§ãã sh intã³ãã³ãã§ç¢ºèªã§ããŸãã
ãŸããããã©ã«ãã§ã¯ã¬ãŒã³å šäœã管çããã®ã§ã¯ãªãã75ïŒ ã®ã¿ã管çããããšã«æ³šæããå¿ èŠããããŸãã ä»ã®ã¯ã©ã¹ã«æ瀺çã«åé¡ãããªãããã±ãŒãžã¯ãclass-defaultã«åé¡ãããŸãã ãã®èšå®ã¯ãããã©ã«ãã¯ã©ã¹ã«å¯ŸããŠæ瀺çã«èšå®ã§ããŸãã
ããªã·ãŒãããããªã·ãŒ
ã¯ã©ã¹class-default
垯åå¹ ããŒã»ã³ã10
ïŒUPDãOlegDã«æè¬ïŒ
ã€ã³ã¿ãŒãã§ã€ã¹äžã®ã³ãã³ãã«ããã䜿çšå¯èœãªæ倧垯åãããã©ã«ãã®75ïŒ ããå€æŽã§ããŸããæ倧äºçŽåž¯åå¹ [ããŒã»ã³ã]
ã«ãŒã¿ãŒã¯ã管çè ã誀ã£ãŠçŸåšãããå€ãã®ã¬ãŒã³ãå²ãåœãŠãªãããšãç±å¿ã«ç£èŠãããã®ãããªè©Šã¿ãèªããŸãã
æ¿æ²»ã¯ãæžãããŠãã以äžã®ããšãã¯ã©ã¹ã«äžããªãããã§ãã ãã ãããã®ç¶æ³ã¯ããã¹ãŠã®è¡ããã£ã±ãã®å Žåã«ã®ã¿çºçããŸãã ããããã空ã®å Žåãããã«å²ãåœãŠãããå¡ãã€ã¶ãããè¡ã¯ããã®ãééãã«æ¯äŸããŠåå²ãããŸãã
ãã®æ§é å šäœã¯æ¬¡ã®ããã«æ©èœããŸãã
ãã±ãããåªå 床ã®ããã¯ã©ã¹ããæ¥ãå Žåãã«ãŒã¿ãŒã¯ãããã®ãã±ããã®è»¢éã«çŠç¹ãåãããŸãã ãŸãã ãã®ãããªåªå 床ãã¥ãŒã¯è€æ°ååšããå Žåãããããããã®éã§åž¯åã¯æå®ãããå²åã«æ¯äŸããŠåå²ãããŸãã
ãã¹ãŠã®åªå ãã±ãããçµäºãããšããã«ãCBWFQãã¥ãŒãéå§ãããŸãã ã«ãŠã³ãããŠã³ããšã«ããã®ã¯ã©ã¹ã®èšå®ã§æå®ããããã±ããã®å²åãåãã¥ãŒãããã¹ã¯ãŒãããããŸãã ãã¥ãŒã®äžéšã空ã®å Žåããããã®åž¯åã¯ããŒãããããã¥ãŒéã®ã¯ã©ã¹ã®ãéã¿ãã«æ¯äŸããŠåå²ãããŸãã
ã€ã³ã¿ãŒãã§ã€ã¹äžã®ã¢ããªã±ãŒã·ã§ã³ïŒ
int s0 / 0
ãµãŒãã¹ããªã·ãŒ[å ¥å|åºå]ããªã·ãŒ
ãããã蚱容é床ãè¶ ããã¯ã©ã¹ããããã±ãŒãžãå³å¯ã«ã«ããããå¿ èŠãããå Žåã¯ã©ãããŸããïŒ çµå±ã垯åå¹ ãæå®ãããšããã¥ãŒãããŒãããããšãã«ã¯ã©ã¹éã§åž¯åãåé ãããã ãã§ãã
ãã®åé¡ã解決ããããã«ããã©ãã£ãã¯ã®ããªã·ãŒã¯ã©ã¹ã«ãã¯ãããžãŒããããŸã
ããªã¹[é床] [ããŒã¹ã]é©åã¢ã¯ã·ã§ã³[ã¢ã¯ã·ã§ã³]è¶ éã¢ã¯ã·ã§ã³[ã¢ã¯ã·ã§ã³]
ããã«ãããåžæã®å¹³åé床ïŒé床ïŒãæ倧ããµãŒãžããããªãã¡ åäœæéãããã«éä¿¡ãããããŒã¿ã®éã ãæåºãã倧ããã»ã©ãå®éã®äŒéé床ãæãŸããå¹³åãã倧ããéžè±ããå¯èœæ§ããããŸãã ãŸã瀺ãããŠããŸãïŒéåžžã®ãã©ãã£ãã¯ã®ã¢ã¯ã·ã§ã³ãè¶ ããªã
å¹³åé床ãè¶ ãããã©ãã£ãã¯ã«å¯ŸããŠæå®ãããé床ãšã¢ã¯ã·ã§ã³ã ã¢ã¯ã·ã§ã³ã¯æ¬¡ã®ããã«ãªããŸã
èŠå¯100000 8000é©åã¢ã¯ã·ã§ã³ïŒ
ãããããã±ããããããã
ã¬ãŒããé©åç¯å²å ã§ããå Žåã®è¶ éã¢ã¯ã·ã§ã³ã¢ã¯ã·ã§ã³
é©å+è¶ éããŒã¹ã
set-clp-transmit atm clpãèšå®ããŠéä¿¡ããŸã
set-discard-class-transmit set discard-classããã³éä¿¡
set-dscp-transmit dscpãèšå®ããŠéä¿¡ãã
set-frde-transmit FR DEãèšå®ããŠéä¿¡ãã
set-mpls-exp-imposition-transmitã¿ã°èšå®ã§expãèšå®ããŠéä¿¡ããŸã
set-mpls-exp-topmost-transmitæäžäœã©ãã«ã«expãèšå®ããŠéä¿¡ããŸã
set-prec-transmitæžãæããã±ããã®åªå é äœãšéä¿¡
set-qos-transmit qos-groupãèšå®ããŠéä¿¡ãã
éä¿¡ãã±ãã
å€ãã®å Žåãå¥ã®åé¡ããããŸãã é ããã£ãã«ãæã€è¿é£ãžã®ãããŒãå¶éãããšããŸãã
ã©ã®ãã±ããããã€ããŒã«å°éãããäœéãåŽã®ãã£ãã«ã®èŒ»èŒ³ã«ããç Žæ£ããããã±ãããæ£ç¢ºã«äºæž¬ããã«ã¯ããé«éãåŽã§äºåã«ãã¥ãŒãåŠçããåé·ãã±ãããç Žæ£ããããªã·ãŒãäœæããå¿ èŠããããŸãã
ãããŠãããã§éåžžã«éèŠãªããšã1ã€ãããŸãããã®åé¡ã解決ããã«ã¯ããé ãããã£ãã«ããšãã¥ã¬ãŒãããå¿ èŠããããŸãã ãã®ãšãã¥ã¬ãŒã·ã§ã³ã§ã¯ããã±ãããé çªã«åæ£ãããã ãã§ã¯äžååã§ããããäœéãã€ã³ã¿ãŒãã§ã€ã¹ã®ç©çãããã¡ããšãã¥ã¬ãŒãããå¿ èŠããããŸãã åã€ã³ã¿ãŒãã§ã€ã¹ã«ã¯ãã±ããã¬ãŒãããããŸãã ã€ãŸã ã€ã³ã¿ãŒãã§ã€ã¹ãŠãããããšã«ãåã€ã³ã¿ãŒãã§ã€ã¹ã¯Nåãè¶ ãããã±ãããéä¿¡ã§ããŸããã éåžžãç©çã€ã³ã¿ãŒãã§ã€ã¹ãããã¡ã¯ãè€æ°ã®ãŠãããã®ã€ã³ã¿ãŒãã§ã€ã¹ã«å¯ŸããŠã€ã³ã¿ãŒãã§ã€ã¹ã®ãèªåŸçãªãåäœãä¿èšŒããããã«èšç®ãããŸãã ãããã£ãŠãGigabitEthernetãªã©ã®ç©çãããã¡ãŒã¯ãã·ãªã¢ã«ã€ã³ã¿ãŒãã§ã€ã¹ãããæ°åå倧ãããªããŸãã
ããããèŠããããšã®äœãåé¡ã«ãªã£ãŠããŸããïŒ é«ééä¿¡åŽã®ãããã¡ãåä¿¡ãããã¡ãããå€§å¹ ã«å€§ããå Žåã«äœãèµ·ãããã詳ããèŠãŠã¿ãŸãããã
ç°¡åã«ããããã«1ã¿ãŒã³ãããŸãã ãé«éãåŽã§ã¯ãäœãããã¬ãŒãããšãã¥ã¬ãŒãããŸãã ããã¯ãããªã·ãŒããã±ãŒãžã«è©²åœãããã®ããã¥ãŒã«èç©ããå§ããããšãæå³ããŸãã ãªããªã ç©çãããã¡ã倧ããå Žåãè«çãã¥ãŒã¯å°è±¡çã§ãã äžéšã®ã¢ããªã±ãŒã·ã§ã³ïŒTCPãä»ããŠåäœããïŒã¯ãäžéšã®ãã±ãããåä¿¡ãããŠããªããšããéç¥ãé ããŠåä¿¡ããé·ããŠã£ã³ããŠãµã€ãºãé·æéä¿æããåä¿¡åŽãããŒãããŸãã ããã¯ãäŒéé床ãåä¿¡é床以äžã®çæ³çãªå Žåã«èµ·ãããŸãã ãã ãããã¹ãã€ã³ã¿ãŒãã§ãŒã¹ã¯ä»ã®ããã±ãŒãžãšãšãã«ããŒãããããšãã§ããŸãã
ãŸããåä¿¡åŽã®å°ããªãã¥ãŒã§ã¯ãã»ã³ã¿ãŒããéä¿¡ããããã¹ãŠã®ãã±ãããå容ã§ããŸããã è¿œå ã®éä¿¡ã䌎ãæ倱ãå§ãŸããŸãããéä¿¡ãããã¡ãŒã«ã¯ã以åã«èç©ããããã¢ã€ãã«ãéä¿¡ããããã±ããã®ãå°ŸãããŸã æ®ã£ãŠããŸãã åä¿¡åŽã§ã¯ã以åã®ããã±ãŒãžãåŸ ããªãã£ããããåŸã®ããã±ãŒãžã¯åã«ç¡èŠãããŸãã
ãããã£ãŠãäœéã®è¿é£ãžã®äŒéé床ãäœäžãããåé¡ãæ£ãã解決ããããã«ãç©çãããã¡ãŒãå¶éããå¿ èŠããããŸãã
ããã¯ããŒã ã«ãã£ãŠè¡ãããŸã
圢ç¶å¹³å[é床]
ããŠãä»æãèå³æ·±ãã®ã¯ãç©çãããã¡ãŒããšãã¥ã¬ãŒãããããšã«å ããŠããã®äžã«è«çãã¥ãŒãäœæããå¿ èŠãããå Žåã¯ã©ãã§ããããïŒ ããšãã°ãé³å£°ã«åªå é äœãä»ããŸããïŒ
ãã®ããã«ããããããã¹ããããããªã·ãŒãäœæãããŸããããã¯ãã¡ã€ã³ããªã·ãŒã®å éšã«é©çšããã芪ããååŸãããã®ãè«çãã¥ãŒã«åå²ããŸãã
äžèšã®åçã«åºã¥ããŠããããããªäŸãäœãæãæ¥ãŸããã
COãšãªã¢ãŒãã®éã§ãã€ã³ã¿ãŒããããä»ããŠæç¶å¯èœãªé³å£°ãã£ãã«ãäœæããèšç»ãç«ãŠãŸãããã ç°¡åã«ããããã«ããªã¢ãŒããããã¯ãŒã¯ïŒ172.16.1.0/24ïŒã«COïŒ10.0.0.0/8ïŒãšã®æ¥ç¶ã®ã¿ãèšå®ããŸãã ãªã¢ãŒãã®ã€ã³ã¿ãŒãã§ãŒã¹é床ã¯1 Mb / sã§ããããã®é床ã®25ïŒ ãé³å£°ãã©ãã£ãã¯ã«å²ãåœãŠãããŸãã
次ã«ãæåã«äž¡åŽã§åªå ãã©ãã£ãã¯ã¯ã©ã¹ãéžæãããã®ã¯ã©ã¹ã®ããªã·ãŒãäœæããå¿ èŠããããŸãã COã§ã¯ããªãã£ã¹éã®ãã©ãã£ãã¯ãèšè¿°ããã¯ã©ã¹ãããã«äœæããŸã
COã§ïŒ
ã¯ã©ã¹ãããRTP
äžèŽãããã³ã«rtp
ããªã·ãŒãããRTP
ã¯ã©ã¹RTP
åªå 床25
ip access-list extended CO_REMOTE
permit ip 10.0.0.0 0.255.255.255 172.16.1.0 0.0.0.255
ã¯ã©ã¹ãããCO_REMOTE
äžèŽããã¢ã¯ã»ã¹ãªã¹ãCO_REMOTE
ãªã¢ãŒãã§ã¯ãå¥ã®æ¹æ³ã§è¡ããŸããããšãéãæ¯æžããããã«NBARã䜿çšã§ããªããšããŠããRTPã®ããŒããæ瀺çã«èšè¿°ããå¿ èŠãããã ãã§ãã
ip access-listæ¡åŒµRTP
èš±å¯udp 172.16.1.0 0.0.0.255ç¯å²16384 32768 10.0.0.0 0.255.255.255ç¯å²16384 32768
ã¯ã©ã¹ãããRTP
äžèŽããã¢ã¯ã»ã¹ãªã¹ãRTP
ããªã·ãŒãããQoS
ã¯ã©ã¹RTP
åªå 床25
次ã«ãCOã§ãäœéã€ã³ã¿ãŒãã§ã€ã¹ãã·ãã¥ã¬ãŒããããã¹ããããããªã·ãŒãé©çšããŠé³å£°ãã±ããã«åªå é äœãä»ããå¿ èŠããããŸã
ããªã·ãŒãããQoS
ã¯ã©ã¹CO_REMOTE
圢ç¶å¹³å1,000,000
ãµãŒãã¹ããªã·ãŒRTP
ã€ã³ã¿ãŒãã§ãŒã¹ã«ããªã·ãŒãé©çšããŸã
int g0 / 0
ãµãŒãã¹ããªã·ãŒåºåQoS
ãªã¢ãŒãã§ã¯ãã€ã³ã¿ãŒãã§ãŒã¹é床ã«å¿ããŠåž¯åå¹ ãã©ã¡ãŒã¿ãŒïŒkbit / sïŒãèšå®ããŸãã 25ïŒ ãèæ ®ãããã®ã¯ãã®ãã©ã¡ãŒã¿ãŒããã§ããããšãæãåºãããŠãã ããã ãããŠãããªã·ãŒãé©çšããŸãã
int s0 / 0
垯åå¹ 1000
ãµãŒãã¹ããªã·ãŒåºåQoS
ã¹ã€ããã®æ©èœãã«ããŒããªããã°ã話ã¯å®å šã§ã¯ãããŸããã çŽç²ãªL2ã¹ã€ããã¯ããã±ãããæ·±ã調ã¹ãŠãåãåºæºã«åŸã£ãŠã¯ã©ã¹ã«åé¡ã§ããªãããšã¯æããã§ãã
ã«ãŒãã£ã³ã°å¯èœãªã€ã³ã¿ãŒãã§ã€ã¹äžã®ããã¹ããŒããªL2 / 3ã¹ã€ããïŒã€ãŸããã€ã³ã¿ãŒãã§ã€ã¹VLANäžããŸãã¯no switchportã³ãã³ãã䜿çšããŠããŒãã第2ã¬ãã«ããåé€ãããå ŽåïŒã§ãã«ãŒã¿ãŒã§æ©èœããåãèšèšãé©çšãããããŒããŸãã¯ã¹ã€ããå šäœãæ©èœããå ŽåL2ã¢ãŒãïŒ2950/60ã¢ãã«ã«åœãŠã¯ãŸãïŒã§ã¯ããã©ãã£ãã¯ã¯ã©ã¹ã®ããªã·ã³ã°è¡šç€ºã®ã¿ã䜿çšã§ããåªå 床ãŸãã¯åž¯åå¹ ã¯äœ¿çšã§ããŸããã
çŽç²ã«ä¿è·ã®èŠ³ç¹ããèŠããšãQoSã®åºæ¬ãç解ããããšã§ãã¯ãŒã ã«ãã£ãŠåŒãèµ·ããããããã«ããã¯ããã°ããé²ãããšãã§ããŸãã ãåãã®ããã«ãã¯ãŒã èªäœã¯äŒæ段éã§éåžžã«æ»æçã§ããã倧éã®åœã®ãã©ãã£ãã¯ãäœæããŸãã å®éããµãŒãã¹æåŠïŒDoSïŒæ»æã
ããã«ãã¯ãŒã ã¯å€ãã®å Žåãæäœã«å¿ èŠãªããŒãïŒTCP / 135,445.80ãªã©ïŒã«åºãããŸããã«ãŒã¿ãŒã®ãããã®ããŒããåçŽã«éããã®ã¯ç¡è¬ã§ãããããã£ãŠããããè¡ãã®ã¯ãã人éçã§ãã
1.ãããã¯ãŒã¯ãã©ãã£ãã¯ã«é¢ããçµ±èšãåéããŸãã NetFlowãNBARããŸãã¯SNMPã
2.éåžžã®ãã©ãã£ãã¯ã®ãããã¡ã€ã«ãç¹å®ããŸããã€ãŸãã çµ±èšã«ãããšãå¹³åããŠãHTTPãããã³ã«ã¯70ïŒ ä»¥äžãICMP-5ïŒ ä»¥äžãªã©ãåããŸãã ãã®ãããªãããã¡ã€ã«ã¯ãæåã§äœæããããNBARã«ãã£ãŠèç©ãããçµ±èšãé©çšããŠäœæã§ããŸããããã«ãautoqos
ã³ãã³ãã䜿çšããŠãã¯ã©ã¹ãããªã·ãŒãèªåçã«äœæããã€ã³ã¿ãŒãã§ã€ã¹ã«é©çšããããšãã§ããŸã:) 3.次ã«ãéå žåçãªãããã¯ãŒã¯ãã©ãã£ãã¯ã®åž¯åãå¶éã§ããŸããéæšæºããŒãã«ããææãçªç¶ãã£ããããå Žåãã²ãŒããŠã§ã€ã«å€§ããªåé¡ã¯çºçããŸãããããŒããããã€ã³ã¿ãŒãã§ãŒã¹ã§ã¯ãææã¯å²ãåœãŠãããéšåãè¶ ããããšã¯ãããŸããã4.ã³ã³ã¹ãã©ã¯ãïŒclass-map-policy-map-service-policyïŒãäœæããããšã§ããã©ãã£ãã¯ã®ã¯ã©ã¹ãæåã§äœæãããã®ã¯ã©ã¹ã®åž¯åå¹ ãå€§å¹ ã«å¶éããããšã«ããããã©ãã£ãã¯ã®éå®åããŒã¹ãã®åºçŸã«ãã°ãã察å¿ã§ããŸããã»ã«ã²ã€ã»ãã§ããã