我有 cisco asr 903 (ios xe) 我需要限制 google-traffic 的流量这是我的配置
ip access-list extended ip-google-traffic
permit ip 8.8.4.0 0.0.0.255 any
permit ip 8.8.8.0 0.0.0.255 any
permit ip 8.34.208.0 0.0.15.255 any
permit ip 8.35.192.0 0.0.15.255 any
permit ip 23.236.48.0 0.0.15.255 any
permit ip 23.251.128.0 0.0.31.255 any
permit ip 35.184.0.0 0.7.255.255 any
permit ip 35.192.0.0 0.7.255.255 any
permit ip 35.200.0.0 0.3.255.255 any
permit ip 35.204.0.0 0.1.255.255 any
permit ip 35.224.0.0 0.15.255.255 any
permit ip 35.240.0.0 0.7.255.255 any
class-map match-all google
match access-group name ip-google-traffic
class-map match-all GGC-OUT
match dscp af22
!
policy-map google-cap
class google
set ip dscp af22
policy-map Softlink
class GGC-OUT
police cir 5000000000
class class-default
police cir 1750000000
INTERFACE TEN 0/0/3
service instance 2528 ethernet
encapsulation dot1q 2528
rewrite ingress tag pop 1 symmetric
service-policy input google-cap
bridge-domain 2528
!
现在,当尝试应用我的客户实例的策略时,我收到 msg 错误
INTERFACE TEN 0/0/3
FiberISP-Cisco(config-if-srv)#service instance 2528 ethernet
FiberISP-Cisco(config-if-srv)#service-policy out Cust
Match DSCP in IPv4/IPv6 packets is not supported for this interfac
!
为什么?