EasyManua.ls Logo

Nortel 5520 User Manual

Nortel 5520
72 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image
Ethernet Routing Switch
5510/5520/5530
Engineering
> Filters and QOS Configuration for
Ethernet Routing Switch 5500
Technical Configuration Guide
Enterprise Solutions Engineering
Document Date: April 01, 2008
Document Number: NN48500-559
Document Version: 2.0

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the Nortel 5520 and is the answer not in the manual?

Nortel 5520 Specifications

General IconGeneral
MAC Address Table Size32, 000
Uplink Ports4
StackingYes
Layer3
VLANs4094
Jumbo Frame Support9, 216 bytes
Redundant Power SupplyOptional
Power over Ethernet802.3af/at (PoE/PoE+) on select models

Summary

Overview: Ethernet Routing Switch 5500 QoS and Filtering

QoS Flow Chart

Filter Functionality

Overall Classification Functionality

Details fundamental classification limitations and capabilities on the switch.

Classifier Block Functionality

Explains how to group individual classifiers into blocks for resource management.

Port Range Functionality

Describes how to specify ranges for classification components like port numbers.

Policies

Covers policy evaluation order, actions, and system default policies for traffic management.

Queue Sets

Traffic Meter and Shaping

Actual Bucket Size

Details the relationship between bucket size, committed rate, and burst duration.

Policing Traffic

Explains how to configure traffic policing parameters like rate, burst, and actions.

Interface Shaper

Describes how to configure interface shaping for traffic egress control.

Default Nortel Class of Service

QoS Access Lists (ACL)

ACL Configuration

Outlines general ACL configuration considerations and limitations on the switch.

IP-ACL Configuration

Details how to configure IP-based Access Control Lists using CLI commands.

L2-ACL Configuration

Explains the configuration of Layer 2 Access Control Lists for MAC and VLAN criteria.

ACL-Assign Configuration

Describes how to assign configured ACLs to specific ports on the switch.

ACL Configuration Example

Provides a practical example of configuring and applying IP ACLs for traffic management.

IP Security Features

DHCP Snooping

Explains DHCP snooping for securing network access and preventing rogue servers.

Dynamic ARP Inspection

Details Dynamic ARP Inspection to prevent ARP spoofing and MITM attacks.

IP Source Guard

Describes IP Source Guard for preventing IP address spoofing using DHCP bindings.

BPDU Filtering

BPDU Filtering Configuration

Outlines the steps to configure BPDU filtering on access ports for Spanning Tree.

QoS Interface Applications

ARP Spoofing

Explains how to configure protection against ARP spoofing attacks on the switch.

DHCP Attacks

Details solutions for DHCP attacks like rogue servers and spoofing.

DoS

Covers configuration for various Denial of Service (DoS) attack mitigation applications.

BPDU Blocking

Explains how to enable BPDU blocking on interfaces to prevent network loops.

Configuration Steps – Policy Configuration

Role Combination

Describes how to group ports and assign interface classes for policy application.

Classification

Details adding IP or L2 classifier elements and creating classifier blocks.

Meters

Explains how to add and configure traffic meters for policing and shaping.

Add a New Policy

Guides on creating new policies by assigning classifiers, meters, and actions.

Configuration Examples

Pre-defined Values

Lists pre-defined values for QoS actions and IP elements used in configurations.

Configuration Example 1 – Traffic Meter Using Policies

Demonstrates configuring traffic meters and policies for specific UDP flows.

Configuration Example – IP ACL, DHCP Snooping, ARP Inspection, BPDU Filtering, and Source Guard

Comprehensive example integrating multiple security and QoS features across VLANs.

Configuration Example 3: Port Range Using ACL or Policy

Shows how to use ACLs or policies for port range filtering and traffic remarking.

Configuration Example 4 – L2 Classification Based on MAC Address

Illustrates L2 classification based on MAC addresses for service class assignment.

Configuration Example 5 – L2 and L3 Classification

Details combining L2 and L3 classification using policies for specific hosts.

Configuration Example 6 - QoS Marking with Port Role Combination set for Un-restricted using ACL's

Demonstrates DSCP mapping to egress queues on unrestricted ports using ACLs.

Configuration Example 7 – Interface Shaping

Provides an example of configuring interface shaping for specific port rates.

Software Baseline

Reference Documentation

Related product manuals