policing based on nbar

From: Igor M. (imanassypov@rogers.com)
Date: Thu Sep 11 2008 - 16:07:00 ART


Hi all,

If I want to match on a bunch of mime types in the http request header and
police that kind of traffic - would that have to be an inbound or outbound
policy, or both?
The goal is to limit the rate of downloading the specified image types...

Like so:

class-map match-all IMAGES
 match protocol http mime "*.(gif|jpg|jpeg)"
policy-map NBAR
 class IMAGES
    police 100000
int e0/0
 service-policy input NBAR

----------------------

I.M., M.Eng. P.Eng.

Network Architect

CI Investments

----------------------

Blogs and organic groups at http://www.ccie.net



This archive was generated by hypermail 2.1.4 : Sat Oct 04 2008 - 09:26:18 ART