Shaping traffic within a SSL VPN session
Is this possible? Multiple remote agents doing reservations, PC-based VoIP with H.323. It doesn't seem there is any way to prioritize traffic within a session. Best I can think of is from the internal server IP to SSL VPN to do some QoS on that. In the same vein, trying to prioritize SSL VPN overall. It appears a access rule from WAN to SSL VPN with a guaranteed bandwidth for overall SSL VPN traffic is possible.
Category: SSL VPN
0
Answers
You can add bandwidth profiles to the access rules, but that's not really prioritization. Is your VoIP DSCP tagged before it gets encapsulated in SSLVPN? Not that it really matters because IIRC SSLVPN traffic is not DSCP tagged with any kind of priority.
So you may have to end up opening up some ports to the presumably onsite VoIP server just so DSCP tagging can occur end to end... but thats assuming the ISPs dont strip DSCP and adhere to it...