How to Configure Application Visibility and Control
Configuring Application Visibility and Control in a Wired Network
To configure application visibility and control on wired ports, follow these steps:
Configuring Visibility :
• Activate NBAR2 engine by enabling protocol-discovery on the interface using the
ip nbar
protocol-discovery
command in the interface configuration mode. See the section, "Enabling Application
Recognition on an Interface."
Configuring Control :
Configure QoS policies based on application by
1.
Creating an AVC QoS policy. See the section, "Creating AVC QoS Policy".
2.
Applying AVC QoS policy to the interface. See the section, "Applying a QoS Policy to the Switch Port".
Configuring application-based Flexible Netflow :
• Create a flow record by specifying key and non-key fields to the flow.
• Create a flow exporter to export the flow record.
• Create a flow monitor based on the flow record and the flow exporter.
• Attach the flow monitor to the interface.
Protocol-Discovery, application-based QoS and application-based FNF are all independent features. They
can be configured independently or together on the same interface at the same time.
Enabling Application Recognition on an interface
To enable application recognition on an interface, follow these steps:
SUMMARY STEPS
1.
configure terminal
2.
interface interface-id
3.
ip nbar protocol-discovery
4.
end
DETAILED STEPS
Purpose
Command or Action
Enters global configuration mode.
configure terminal
Example:
Step 1
Device#
configure terminal
System Management Configuration Guide, Cisco IOS XE Fuji 16.8.x (Catalyst 9500 Switches)
111
Configuring Application Visibility and Control in a Wired Network
How to Configure Application Visibility and Control