Question
Best practices for traffic shaping?
OK. Read the posts. Read the docs. Traffic shaping seems to be more art than science. I was hoping that those who have successfully shaped their traffic could help fill in the gaps. I' m interested in traffic shaping all sites for certain groups of users so that the group can never use, say, more than 5mbps for all traffic. This is tricky because the users need a Protection Profile. And, also interested in traffic shaping sites like Itunes for all users, which seems simple since no Protection Profile is needed for this. Can anyone comment on the issues below? 1. Docs say that for traffic shaping to work well, total bandwidth available must be assigned to outgoing WAN interface via CLI. Anyone doing this? 2. Posts on the forums say that traffic shaping does not work properly if assigned to policies that have Protection Profiles associated with them? Can anyone add more specifics of what happens? This really limits effective shaping if this is true. 3. Seems like the most reliable way to traffic shape is to create policies based on individual IP addresses and then apply a shaper policy. Is this what most people are doing to limit Youtube, Itunes, etc.? Have not had a lot of luck using FQDN to limit traffic. 4. For best results, docs say that all traffic policies must be shaped with low, medium, high priorities. Everyone doing this? Any other best practices suggestions? Thanks for help/suggestions.
