Congestion control queues packets from one port into multiple queues and schedules the packets
based on queue priorities. It is advisable to configure congestion control.
Security policies involve system security, user security, and service security, securing services
from different aspects.
NOTE
It is advisable to enable a required service security feature according to the service type. For details, see
Principle of Security Data Plan
Procedure
l
Configure link aggregation.
Configure upstream ports 0/19/0 and 0/19/1 of the master subrack as a link aggregation
group (LAG). Each member port in the LAG is allocated packets based on the source MAC
address, and works in LACP static aggregation mode.
huawei(config)#
link-aggregation 0/19 0-1 ingress workmode lacp-static
Configure upstream ports 1/0/0 and 1/0/1 of the GE remote extended subrack as an LAG.
Each member port in the LAG is allocated packets based on the source MAC address, and
works in manual aggregation mode. Ports 1/0/0 and 1/0/1 are connected to ports 0/3/0
(extending port) and 0/3/1 respectively on the ETHB extending board of the master subrack.
NOTICE
Pay attention to the following when configuring link aggregation for GE remote extended
subracks:
l
Only intra-ETHB extending board aggregation in manual aggregation mode is
supported.
l
For the uplink aggregation configuration on the master subrack, the ETHB extending
port (which is specified during the offline pre-deployment of an extended subrack or
where an extended subrack is automatically discovered) must be configured as the
master port of an LAG. However, the extended subrack has no requirements on the
master port of an LAG.
l
Before adding/deleting a port to/from an LAG, if the port is connected to a peer device,
run the
shutdown
command to deactivate the slave port of the LAG or remove the fiber
from the slave port to prevent a loopback. (Note that ports on the ETHB board support
the
shutdown
command, but upstream ports of the extended subrack do not.) After the
LAG is configured, re-activate the port or reconnect the fiber to the slave port.
huawei(config)#
link-aggregation 1/0 0-1 egress-ingress
huawei(config)#
link-aggregation 0/3 0 0/3 1 egress-ingress
l
Configure queue scheduling.
According to "
11.2.2 Principle of QoS Data Plan
", all packets are scheduled in strict
priority queue mode and mapped into different queues based on priorities.
huawei(config)#
queue-scheduler strict-priority
huawei(config)#
cos-queue-map cos0 0 cos4 4 cos5 5 cos6 6
l
Configure system security.
–
Enable deny of service (DoS) anti-attack on the master subrack.
SmartAX MA5600T/MA5603T/MA5608T Multi-service
Access Module
Commissioning and Configuration Guide
11 FTTB and FTTC Solution Configuration
Issue 01 (2014-04-30)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
1060