DPtech FW1000 Series Firewall Products User Configuration Guide
4-177
DSCP
DiffServ uses a 6-bit differentiated services code point (DSCP) in the 8-bit Differentiated services
Field (DS field) in the IP header for packet classification purposes. The DS field and ECN field
replace the outdated IPv4 TOS field. It specifies a priority value between 0 63. When QoS
executed, router will inspect data packet priority.
IPsec VPN
Click IPsec VPN checkbox to enable IPsec VPN QoS function.
SSL VPN
Click SSL VPN checkbox to enable SSL VPN QoS function.
Customize session parameter
Classifies data packet as IP packet quintuple. IP packet quintuple includes protocol, source IP
address, destination IP address, source port, destination port.
4.17.2 Congestion avoidance
When network congestion increase, it drops packets actively and adjusts network traffic to eliminate network
overload problem.
To enter the congestion avoidance page, you can choose
Basic> Firewall > QoS> Congestion avoidance
, as
shown in Figure4-46.
Figure4-46
Congestion avoidance
错误
!
未找到引用源。
describes the details of traffic classification.
Table4-21
Traffic classification
Item
Description
Name
Enter a name for congestion avoidance policy.
Packet drop policy
Select a kind of packet drop algorithm.
In order to avoid TCP global synchronization pheromone, Random Early Detection (RED) or
Weighted Random Early Detection (WRED) can be used.
Weighted Random Early Detection (WRED): Queuing method that ensures that
high-precedence traffic has lower loss rates than other traffic during times of congestion.
Random Early Detection (RED): also known as random early discard or random early drop
is a queuing discipline for a network scheduler suited for congestion avoidance.
Enabling connection
Maximum packet drop rate
Operation