при выполнение команды sh ip cache flow
SrcIf SrcIPaddress DstIf DstIPaddress Pr SrcP DstP Pkts
Fa0/0.109 10.10.10.33 Null 80.254.111.ххх 11 0411 0035 3
Fa0/0.111 10.10.10.41 Null 80.254.111.ххх 11 041A 0035 3
или так бывает
Fa0/0.109 10.10.10.33 Null 80.254.111.ххх 11 0502 0035 1
Fa0/0.107 10.10.10.25 Fa0/0.31 90.156.144.136 06 0D8E 0050 5
Fa0/0.107 10.10.10.25 Fa0/0.31 90.156.144.136 06 0D8D 0050 5
или так бывает
Fa0/0.107 10.10.10.25 Null 80.254.111.ххх 11 044D 0035 3
Fa0/0.111 10.10.10.41 Null 80.254.111.ххх 11 041A 0035 4
Fa0/0.107 10.10.10.25 Null 80.254.111.ххх 11 0401 0035 1
Fa0/0.111 10.10.10.41 Fa0/0.31 81.19.88.11 06 080C 0050 2
вот что в конфиге
interface Loopback0
ip address 192.168.101.1 255.255.255.0
ip route-cache policy
ip route-cache flow
nterface FastEthernet0/0.31
description Donpac
bandwidth 2048
encapsulation dot1Q 31
ip address 80.254.118.ххх 255.255.255.252
ip access-group inside in
ip nat outside
ip flow ingress
rate-limit input access-group 2 2048000 2700 2700 conform-action transmit exceed-action drop
ip policy route-map MAP
так сделаны подинтерфейсы
interface FastEthernet0/0.109
description ADSL sub9
encapsulation dot1Q 109
ip address 10.10.10.34 255.255.255.252
ip nat inside
ip flow ingress
!
interface FastEthernet0/0.110
description ADSL sub 110
encapsulation dot1Q 110
ip address 10.10.10.38 255.255.255.252
ip nat inside
ip flow ingress
!
interface FastEthernet0/0.111
description sub111
encapsulation dot1Q 111
ip address 10.10.10.42 255.255.255.252
ip nat inside
ip flow ingress
ip nat pool Inet 80.254.118.ххх 80.254.118.ххх netmask 255.255.255.252
ip nat inside source list 1 pool Inet overload
ip nat inside source list 2 pool Inet overload
ip nat inside source list 3 pool Inet overload
ip nat inside source list 4 pool Inet overload
ip nat inside source list 5 pool Inet overload
ip nat inside source list 6 pool Inet overload
ip classless
ip route 0.0.0.0 0.0.0.0 80.254.118.ххх
ip flow-export version 5
ip flow-export destination 192.168.0.9ххх ххх
no ip http server
ip http access-class 23
ip http authentication local
ip http timeout-policy idle 60 life 86400 requests 10000
!
access-list 1 permit 192.168.8.55
access-list 2 permit 192.168.100.0 0.0.0.255
access-list 3 permit 192.168.0.0 0.0.0.255
access-list 4 permit 10.10.10.0 0.0.0.255
access-list 5 permit 10.10.20.0 0.0.0.255
access-list 6 permit 10.10.30.0 0.0.0.255
access-list 101 permit ip any 10.10.10.0 0.0.0.255
access-list 101 permit ip any 10.10.20.0 0.0.0.255
access-list 101 permit ip any 10.10.30.0 0.0.0.255
access-list 101 permit ip any 192.168.100.0 0.0.0.255
access-list 101 permit ip any 192.168.0.0 0.0.0.255
access-list 101 deny ip any any
dialer-list 1 protocol ip permit
route-map MAP permit 10
match ip address 101 102 105 106
set interface Loopback0
Помогите решить такую проблему : Получается так что у меня неопределённого трафика 400-800мб -это очень много !!