步骤一:定义标准访问控制列表
S3760>en
S3760#conf
S3760(config)#ip access-list standard vlan10 ----定义标准访问控制列表
s3760(config-std-nacl)#permit host 192.168.1.0
S3760(config)#ip access-list standard vlan20 ----定义标准访问控制列表
s3760(config-std-nacl)#permit host 192.168.2.0
步骤二:创建规则类,应用之前定义的主机范围
S3760(config)#class-map vlan10 ----创建class-map,名字为xiansu101
S3760(config-cmap)#match access-group vlan10 ----匹配IP地址
S3760(config-cmap)#exit
S3760(config)#class-map vlan20 ----创建class-map,名字为xiansu102
S3760(config-cmap)#match access-group vlan20 ----匹配IP地址
S3760(config-cmap)#exit
步骤三:创建策略类:应用之前定义的规则,配置限速大小
S3760(config)#policy-map xiansu ----创建policy-map,名字为xiansu
S3760(config-pmap)#class vlan10 ----符合class xiansu101
S3760(config-pmap-c)#police 64 64 exceed-action drop ----限制64Kbit
S3760(config-pmap)#class vlan20 ----符合class xiansu102
S3760(config-pmap-c)#police 64 64 exceed-action drop ----限速值为4000Kbit
S3760(config-pmap-c)#end
为了效果明显,限制为最小速度
步骤四:进入接口,应用之前定义的策略
S3760#conf
S3760(config)#int fa 0/6,11 ----进入接口
S3760(config-if)#service-policy input xiansu ----将该限速策略应用在这个接口上
配置文件,已经自行划分vlan配置好ip
s3760(config)#show run
Building configuration...
Current configuration : 2358 bytes
!
version RGOS 10.4(2) Release(75955)(Mon Jan 25 19:33:15 CST 2010 -ngcf31)
hostname s3760
!
!
!
!
nfpp
!
!
vlan 1
!
vlan 10
!
vlan 20
!
!
no service password-encryption
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
ip access-list standard vlan10
20 permit host 192.168.1.0
!
!
ip access-list standard vlan20
20 permit host 192.168.2.0
!
!
!
!
!
!
!
!
class-map vlan10
match access-group vlan10
class-map vlan20
match access-group vlan20
!
!
policy-map xiansu
class vlan10
police 64 64 exceed-action drop
class vlan20
police 64 64 exceed-action drop
!
interface FastEthernet 0/1
switchport access vlan 10
!
interface FastEthernet 0/2
switchport access vlan 10
!
interface FastEthernet 0/3
switchport access vlan 10
!
interface FastEthernet 0/4
switchport access vlan 10
!
interface FastEthernet 0/5
switchport access vlan 10
!
interface FastEthernet 0/6
switchport access vlan 10
service-policy input xiansu
!
interface FastEthernet 0/7
switchport access vlan 10
!
interface FastEthernet 0/8
switchport access vlan 10
!
interface FastEthernet 0/9
switchport access vlan 10
!
interface FastEthernet 0/10
switchport access vlan 10
!
interface FastEthernet 0/11
switchport access vlan 20
service-policy input xiansu
!
interface FastEthernet 0/12
switchport access vlan 20
!
interface FastEthernet 0/13
switchport access vlan 20
!
interface FastEthernet 0/14
switchport access vlan 20
!
interface FastEthernet 0/15
switchport access vlan 20
!
interface FastEthernet 0/16
switchport access vlan 20
!
interface FastEthernet 0/17
switchport access vlan 20
!
interface FastEthernet 0/18
switchport access vlan 20
!
interface FastEthernet 0/19
switchport access vlan 20
!
interface FastEthernet 0/20
switchport access vlan 20
!
interface FastEthernet 0/21
!
interface FastEthernet 0/22
!
interface FastEthernet 0/23
!
interface FastEthernet 0/24
!
interface GigabitEthernet 0/25
!
interface GigabitEthernet 0/26
!
interface VLAN 10
no ip proxy-arp
ip address 192.168.1.1 255.255.255.0
!
interface VLAN 20
no ip proxy-arp
ip address 192.168.2.1 255.255.255.0
!
!
!
!
!
!
!
!
!
!
!
!
!
!
line con 0
line vty 0 4
login
!
!
end
s3760(config)#
只是自己各种总结,不保证对错。请君自行斟酌。