1、 Access-list
Class-map Well-known-services
Map access-group 100
Access-list 100 permit tcp any any lt 1024/lt 1024 表示小于1024的端口
2、 IP precedence value
Class-map TEST
Match ip precedence (0~7)
3、 IP DSCP value
Class-map TEST 3
Match dscp 1/匹配IPv4、IPv6 dscp值为1
Match ip dscp 1/匹配IPv4 dscp值为1
Class-map Mission-Critical
Match ip dscp af31 af32 af33 cs4 /是或的关系,只要有一个就可以
4、 QoS group number
① 路由器内部使用标签,不会再网络中传递,而其他DSCP IPP会在网络中传递
② 流量进入,打上QoS group标记
③ 匹配该标记的流量,做策略。这样可以保证QoS group标记不会传递下去
Access-list 100 permit icmp host 1.1.1.1 host 2.2.2.2
Class-map QOSGROUP
Match access-group 100
Policy-map QOSGROUP1
Class QOSGROUP
Set qos-group 123
Interface f0/0
Service-policy input QOSGROUP1
Class-map 100K
Match qos-group 123
Policy-map 100L
Class 100K
Bandwidth 100
Interface f0/0
Service-policy output 100L
5、 MPLS experimental bits
Policy-map XX
Class qosgroup
Set mpls experimental topmost 5
Class-map TEST
Match mpls experimental topmost 5 /匹配EXP的顶层标签
6、 protocol(including NBAR)
class-map TEST
match protocol ……
7、 using another class map
class-map Unnown-service
match not class-map Well-Known-service /匹配除了class-map Well-Known-service以外的全部
8、 Frame relay DE bit
Class-map TEST
Match fr-de
9、 IEEE 802.1Q/ISL CoS/priority values、
Class-map TEST
Match cos (0~7)
10、 input interface
class-map match-any Ethernets
match ipput-interface e0/0
match input-interface e0/1 /匹配这两个接口中的一个的流量即可
access-list 100 permit ip 192.167.1.0 0.0.0.255 any
class-map match-all C1
match access-group 100
match ip precedence 5 /同时满足这两个需求
11、source MAC address
class-map MAC
match source-address mac aaaa.bbbb.cccc.dddd
12、destination MAC address
class-map MAC
match destination-address mac aaaa.bbbb.cccc.dddd
13、RTP(UDP)port range
Match ip rtp starting-port-number port-range
Class-map RTP
Match ip rtp 16384 16384/匹配的是16384到16384+16384之间的接口
14、any packet
Class-map ALL-services
Match any