- 15-02-2008 #1
Controle p2p limitando web cam msn.......??Pessoal fiz as seguintes regras para p2p:
/ queue tree
add name="limitar p2p1" parent=global-in packet-mark=p2p limit-at=0 \
queue=default priority=8 max-limit=200000 burst-limit=0 burst-threshold=0 \
burst-time=0s disabled=no
add name="limitar p2p2" parent=global-out packet-mark=p2p limit-at=0 \
queue=default priority=8 max-limit=200000 burst-limit=0 burst-threshold=0 \
burst-time=0s disabled=no
E quando tento usar web cam no msn fica travando e trancando toda hora, se desbilito a regra funciona blz... tem alguma maneira de tratar o trafego p2p sem afetar o trafego das webs no msn??? Help!!!
- 15-02-2008 #2
ola amigo,
a principio a regra do controle p2p não interfere no uso da webcam, mas de toda sorte, como vc fez a marcação dos pacotes
2p (packet-mark=p2p).
talvez por esse caminho possamos desvendar o misterio.
post ae a regra e veremos o que podemos fazer.
abraços
- 15-02-2008 #3
Amigo Josevaldo, desde muit grato pela atenção.
Vamos lá...
/ ip firewall mangle
add chain=prerouting p2p=all-p2p action=mark-connection \
new-connection-mark=p2p passthrough=yes comment="bloquear p2p" \
disabled=no
add chain=prerouting connection-mark=p2p action=mark-packet \
new-packet-mark=p2p2 passthrough=yes comment="" disabled=no
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=21 \
action=mark-packet new-packet-mark=semlimite passthrough=yes \
comment="Marcando Pacotes Sem Limite Conexao Rede 192.168.201.x" \
disabled=no
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=22 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=23 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=25 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=53 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=80 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=110 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=443 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=8080 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=6891-6901 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=21 \
action=mark-packet new-packet-mark=semlimite passthrough=yes \
comment="Marcando Pacotes Sem Limite Conexao rede 192.168.202.x" \
disabled=no
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=22 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=23 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=25 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=53 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=80 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=110 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=443 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=8080 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=6891-6901 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=21 \
action=mark-packet new-packet-mark=semlimite passthrough=yes \
comment="Marcando Pacotes Sem Limite Conexao rede 192.168.203.x" \
disabled=no
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=22 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=23 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=25 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=53 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=80 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=110 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=443 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=8080 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=6891-6901 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=21 \
action=mark-packet new-packet-mark=semlimite passthrough=yes \
comment="Marcando Pacotes Sem Limite Conexao rede 192.168.204.x" \
disabled=no
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=22 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=23 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=25 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=53 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=80 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=110 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=443 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=yes
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=8080 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=6891-6901 \
action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \
disabled=no
Se tiver uma maneira de otimizar todas essas regras sinta-se a vontade.....Abraços!!!
- 15-02-2008 #4
- Data de Ingresso
- Aug 2006
- Localização
- Presidente Prudente
- Idade
- 31
- Posts
- 906
- Posts de Blog
- 2
- Reputação
- 181
P2pCaro colega tenta essas regras. Desabilite o P2P queues tree e crie em queues simple. A regra do QUEUEs deve sempre estar em primeiro.
/ ip firewall mangle
add chain=foward p2p=all-p2p action=mark-connection \
new-connection-mark=p2p passthrough=yes comment="bloquear p2p" disabled=no
add chain=foward connection-mark=p2p action=mark-packet \
new-packet-mark=p2p passthrough=yes comment="" disabled=no
add chain=foward connection-mark=!p2p action=mark-packet \
new-packet-mark=Outros passthrough=yes comment="" disabled=no
/ ip queue simple
add name="P2P" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=p2p direction=both priority=6 \
queue=default/default limit-at=0/0 max-limit=512000/512000 total-queue=default time=0s-24m,sun,mon,tue,wed,thu,fri,sat \
disabled=noRodrigo Minelli
http://www.installnet.srv.br
http://suporte.installnet.srv.br
MSN.: mytinick@hotmail.com
E-Mail.: suporte@instalnet.srv.br
Suporte e Consultoria Mikrotik / Linux Debian
Gerenciador SCUT
Firewall, Cache Full, Cache DNS, Load Balance por NTH / PPC, QoS (Voip, Rádios, MSN, Audio e Video), etc...
- 15-02-2008 #5
Amigo Minelli, gato pela atenção, coloquei as regras mas não marcou os pacotes!!!!!! estranho, pois pela logica deveria funcionar...
- 15-02-2008 #6
- 15-02-2008 #7
Colega, marcou porem nao efetuou a queue....
- 18-02-2008 #8
- Data de Ingresso
- Aug 2006
- Localização
- Presidente Prudente
- Idade
- 31
- Posts
- 906
- Posts de Blog
- 2
- Reputação
- 181
p2po prerouting pode ser mudado o restante nao faca o teste.Rodrigo Minelli
http://www.installnet.srv.br
http://suporte.installnet.srv.br
MSN.: mytinick@hotmail.com
E-Mail.: suporte@instalnet.srv.br
Suporte e Consultoria Mikrotik / Linux Debian
Gerenciador SCUT
Firewall, Cache Full, Cache DNS, Load Balance por NTH / PPC, QoS (Voip, Rádios, MSN, Audio e Video), etc...
Tópicos Similares
Limitando pacotes.
Por Skylinelan no fórum MikrotikRespostas: 4Último Post: 26-10-2007, 21:43Limitando as extensões
Por andunno no fórum Samba/SMBRespostas: 0Último Post: 16-07-2007, 17:17Limitando Download
Por tianguapontocom no fórum Proxy/NAT/FirewallRespostas: 3Último Post: 25-01-2006, 01:37FTP LIMITANDO AS PASTA
Por PiTsA no fórum Adm. em GeralRespostas: 0Último Post: 26-12-2002, 01:13limitando banda com cbq
Por no fórum Proxy/NAT/FirewallRespostas: 1Último Post: 12-12-2002, 15:35
Visitantes encontraram esta pagina procurando por:
Nobody landed on this page from a search engine, yet!



LinkBack URL
About LinkBacks








Marcadores