Configuring an ACE IP DSCP

Configure ACE IP DSCP entries to have the filter look for packets with specific DSCP markings.

Before you begin

  • The ACL exists.

  • The ACE exists.

Procedure

  1. In the navigation tree, expand the following folders: Configuration > Security > Data Path.
  2. Click Advanced Filters (ACE/ACLs).
  3. Click the ACL tab.
  4. Select the appropriate ACL.
  5. Click ACE.
  6. Select the appropriate ACE.
  7. Click IP.
  8. Click the DSCP tab.
  9. Click Insert.
  10. Specify the operation type.
  11. In the List box, enter the count for the DSCP values.
  12. Click Insert.

DSCP field descriptions

Use the data in the following table to use the DSCP tab.

Name

Description

AclId

Specifies the ACL ID.

AceId

Specifies the ACE ID.

Oper

The eq and mask parameters specify an operator for a field match condition: equal to or mask. The mask operator is an implied eq on the mask bits.

List

Specifies a count for the number of discrete ranges entered for the DSCP values. Entries include 0–256, disable, phbcs0, phbcs1, phbaf11, phbaf12, phbaf13, phbcs2, phbaf21, phbaf22, phbaf23, phbcs3, phbaf31, phbaf32, phbaf33, phbcs4, phbaf41, phbaf42, phbaf43, phbcs5, phbef, phbcs6, and phbcs7.

OperMask

Specifies the mask value.