On 12/17/2014 4:52 PM, jone...@teksavvy.com wrote:

>   To DSCP-mark the packets of a tunnel (not the packets inside) then
> the egress interface by which the tunnel is going would be added to TC
> as a device, a default TC class created, then a single rule with
> whichever DSCP value configured, basically.  Does this sound OK ?

Yes.

> Is there any catch with working with tunnels ?

Not so long as you mark the packet after encapsulation.
> 
>   About tcrules and DSCP, what is the planned life of DSCP inside
> tcrules before it gets obsoleted in favor of the mangle config file ?
> 

At least another year.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Download BIRT iHub F-Type - The Free Enterprise-Grade BIRT Server
from Actuate! Instantly Supercharge Your Business Reports and Dashboards
with Interactivity, Sharing, Native Excel Exports, App Integration & more
Get technology previously reserved for billion-dollar corporations, FREE
http://pubads.g.doubleclick.net/gampad/clk?id=164703151&iu=/4140/ostg.clktrk
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to