Create a data plane policing (DPP) policy and configure its traffic rates, policing actions, and sharing mode for a Layer 2 interface.
Before you begin
Identify the interface policy group and interface profile that are associated with the Layer 2 interface.
To apply the DPP policy, add it to an interface policy group and associate the policy group with an interface profile.
Procedure
-
On the menu bar, choose .
-
In the Navigation pane, choose .
-
Right-click Data Plane Policing and choose Create a Data Plane Policing Policy .
-
In the Create a Data Plane Policing Policy dialog box, enter a policy name in the Name field.
-
For Administrative State , choose Enabled .
-
For Policer Mode , choose Bit Policer or Packet Policer .
-
For Type , choose 1 Rate 2 Color or 2 Rate 3 Color .
Switch models with names that end in -EX or -FX, such as the N9K-C93180YC-FX, and later switch models do not support 2 Rate 3 Color.
Note
Selecting 2 Rate 3 Color on an unsupported switch generates a fault.
-
For Conform Action , choose the action to apply to conforming traffic.
-
Drop —Drops conforming packets.
-
Mark —Marks the QoS fields of conforming packets.
-
Transmit —Transmits conforming packets.
Note
The marking configuration in the following step does not apply to egress DPP.
-
If you chose Mark for Conform Action , configure the marking values.
- For Conform mark CoS , enter the class of service (CoS) value for conforming packets.
- For Conform mark dscp , enter the differentiated services code point (DSCP) value for conforming packets.
-
If you chose 2 Rate 3 Color for Type , choose the action to apply to exceeding traffic from Exceed Action .
-
Drop —Drops exceeding packets.
-
Mark —Marks the QoS fields of exceeding packets.
-
Transmit —Transmits exceeding packets.
-
If you chose Mark for Exceed Action , configure the marking values.
- For Exceed mark CoS , enter the CoS value for exceeding packets.
- For Exceed mark dscp , enter the DSCP value for exceeding packets.
-
For Violate Action , choose the action to apply to violating traffic.
-
Drop —Drops violating packets.
-
Mark —Marks the QoS fields of violating packets.
-
Transmit —Transmits violating packets.
-
If you chose Mark for Violate Action , configure the marking values.
- For Violate mark CoS , enter the CoS value for violating packets.
- For Violate mark dscp , enter the DSCP value for violating packets.
-
For Sharing Mode , choose Shared Policer .
Shared Policer applies the same policing parameters to multiple interfaces. Layer 2 interfaces do not support Dedicated Policer mode.
-
For Rate , enter the permitted traffic rate and choose the appropriate unit.
-
For Burst , enter the permitted burst allowance and choose the appropriate unit.
-
If you chose 2 Rate 3 Color for Type , configure the peak rate and excessive burst values.
- For Peak Rate , enter the peak information rate and choose the appropriate unit.
- For Excessive Burst , enter the maximum burst size before traffic exceeds the peak information rate, and choose the appropriate unit.
-
Click Submit .
The DPP policy is created and is available for assignment to a Layer 2 interface policy group.
What to do next
Add the DPP policy to the appropriate interface policy group, and associate the policy group with the interface profile for the Layer 2 interface.