Creating Policy Lists for IP
The following example creates an IP policy list named routeForABCCorp. For information about creating the CLACLs and rate-limit profile used in this example, see the previous sections.
- Create the policy list routeForABCCorp.
host1(config)#ip policy-list routeForABCCorphost1(config-policy-list)#- Create the classification group for the CLACL named ipCLACL10 and assign the precedence to the classification group.
host1(config-policy-list)#classifier-group ipCLACL10 precedence 75host1(config-policy-list-classifier-group)#- Add a rule that specifies a group of forwarding solutions based on classifier list ipCLACL10.
host1(config-policy-list-classifier-group)#forward next-hop 192.0.2.12 order 10host1(config-policy-list-classifier-group)#forward next-hop 192.0.100.109 order 20host1(config-policy-list-classifier-group)#forward next-hop 192.120.17.5 order 30host1(config-policy-list-classifier-group)#forward interface ip 3/1 order 40- Add a rule that sets a ToS byte value of 125 for packets based on classifier list ipCLACL10.
host1(config-policy-list-classifier-group)#mark tos 125- Add a rule that uses rate-limit profile ipRLP25.
host1(config-policy-list-classifier-group)#rate-limit-profile ipRLP25- Exit Classifier Group Configuration mode for ipCLACL10, then create a new classification group for classifier list ipCLACL20. Add a rule that filters packets based on classifier list ipCLACL20.
host1(config-policy-list-classifier-group)#exithost1(config-policy-list)#classifier-group ipCLACL20 precedence 125host1(config-policy-list-classifier-group)#filter- Exit Policy List Configuration mode to save the configuration.
host1(config-policy-list-classifier-group)#exithost1(config-policy-list)#exithost1(config)#- Display the policy list.
host1#show policy-list routeForABCCorpPolicy Table------ -----IP Policy routeForABCCorpAdministrative state: enableReference count: 0Classifier control list: ipCLACL10, precedence 75forwardVirtual-router: defaultList:next-hop 192.0.2.12, order 10, rule 2 (active)next-hop 192.0.100.109, order 20, rule 3 (reachable)next-hop 192.120.17.5, order 30, rule 4 (reachable)interface ip3/1, order 40, rule 5mark tos 125rate-limit-profile ipRLP25Classifier control list: ipCLACL20, precedence 125filter