Friday, April 27, 2018

ISP Policing causing issues for egress traffic, how can I fix this?

We have a 100M DIA on GigE and have been having issues with Internet performance ever since we turned it up a few weeks ago. The carrier claims that everything is great on the circuit and has provided a rfc2544 report that confirms.

I'm pretty sure the problem now is the difference in circuit speed vs CIR. We're using an ASR1001X and I've tried to put a very basic traffic shaping policy on the egress interface and that didn't work.

policy-map fair-queue class class-default fair-queue policy-map shape-100m class class-default shape average 100000000 service-policy fair-queue interface GigabitEthernet0/0/5 bandwidth 100000 ip address x.x.x.x 255.255.255.252 load-interval 30 no negotiation auto service-policy output shape-100m 

I've also attempted to tune the shaping bandwidth down as low at 50M and still had issues.

Symptoms are reasonable download speed (80-100M) but upload speed is 0-10M at best and generally starts out around 10M and by the end of the test is in the Kbps range.

What am I doing wrong here? Are there questions I should be asking the carrier about their policing config that would help with setting up the shaping?

This connection is basically only used for a couple of small web servers and office users to browse the web.

So far I've mitigated the problems slightly by forcing the LAN side of the router to 100/Full, but that's not a solution.

Any help on this would be greatly appreciated.



No comments:

Post a Comment