OK. I have a VLAN that I have created for guests of the company and for certain limited users. I am trying to police their traffic in both directions, but am finding that their upload speeds do not seem to be limited at all. Here is the relevant config, with IP addresses changed:
class-map match-any ISOLATED_OUT
match access-group name ISOLATED_QOS_OUT
class-map match-any ISOLATED_IN
match access-group name ISOLATED_QOS_IN
policy-map ISOLATED_POLICING_IN
class ISOLATED_IN
police cir 512000 bc 16000 pir 1024000 be 32000 conform-action transmit exceed-action drop violate-action drop
policy-map ISOLATED_POLICING_OUT
class ISOLATED_OUT
police cir 512000 bc 16000 pir 1024000 be 32000 conform-action transmit exceed-action drop violate-action drop
interface Vlan60
description VLAN 60 - ISOLATED
ip address 192.168.100.254 255.255.255.0
ip access-group ISOLATED_VLAN_IN in
ip access-group ISOLATED_VLAN_OUT out
ip helper-address 192.168.0.1
ip helper-address 192.168.0.2
service-policy input ISOLATED_POLICING_IN
service-policy output ISOLATED_POLICING_OUT
ip access-list extended ISOLATED_QOS_IN
permit ip 192.168.100.0 0.0.0.255 any
deny ip any any
ip access-list extended ISOLATED_QOS_OUT
permit ip any 192.168.100.0 0.0.0.255
deny ip any any
What am I missing to limit VLAN 60 users's upload speeds? Download speeds are being limited just fine.