|
|||||||
| Wiki | Classificados | Galeria | Reviews | Jogos | Grupos Sociais | RSS Feeds | FAQ | Termos de Uso | Sobre |
| Registrar | Fotos | Membros | Calendário | Pesquisar | Postados Hoje | Marcar Fóruns Como Lidos |
Quer ver menos banners de publicidade ? Entao Cadastre-se!
![]() |
|
|
LinkBack | Ferramentas do Tópico |
|
|
#1 (permalink) |
|
Pessoal fiz as seguintes regras para p2p:
/ queue tree add name="limitar p2p1" parent=global-in packet-mark=p2p limit-at=0 \ queue=default priority=8 max-limit=200000 burst-limit=0 burst-threshold=0 \ burst-time=0s disabled=no add name="limitar p2p2" parent=global-out packet-mark=p2p limit-at=0 \ queue=default priority=8 max-limit=200000 burst-limit=0 burst-threshold=0 \ burst-time=0s disabled=no E quando tento usar web cam no msn fica travando e trancando toda hora, se desbilito a regra funciona blz... tem alguma maneira de tratar o trafego p2p sem afetar o trafego das webs no msn??? Help!!! |
![]() Registrado em: Apr 2007
Localização: Rio Grande do Sul
Posts: 96
Agradeceu: 3
Agradecido 12 vez(es) em 10 Posts
Reputação: 32
![]() |
|
|
|
|
#3 (permalink) |
|
Amigo Josevaldo, desde muit grato pela atenção.
Vamos lá... / ip firewall mangle add chain=prerouting p2p=all-p2p action=mark-connection \ new-connection-mark=p2p passthrough=yes comment="bloquear p2p" \ disabled=no add chain=prerouting connection-mark=p2p action=mark-packet \ new-packet-mark=p2p2 passthrough=yes comment="" disabled=no add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=21 \ action=mark-packet new-packet-mark=semlimite passthrough=yes \ comment="Marcando Pacotes Sem Limite Conexao Rede 192.168.201.x" \ disabled=no add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=22 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=23 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=25 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=53 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=80 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=110 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=443 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=8080 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.201.0/26 protocol=tcp dst-port=6891-6901 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=21 \ action=mark-packet new-packet-mark=semlimite passthrough=yes \ comment="Marcando Pacotes Sem Limite Conexao rede 192.168.202.x" \ disabled=no add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=22 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=23 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=25 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=53 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=80 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=110 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=443 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=8080 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.202.0/26 protocol=tcp dst-port=6891-6901 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=21 \ action=mark-packet new-packet-mark=semlimite passthrough=yes \ comment="Marcando Pacotes Sem Limite Conexao rede 192.168.203.x" \ disabled=no add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=22 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=23 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=25 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=53 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=80 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=110 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=443 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=8080 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.203.0/26 protocol=tcp dst-port=6891-6901 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=21 \ action=mark-packet new-packet-mark=semlimite passthrough=yes \ comment="Marcando Pacotes Sem Limite Conexao rede 192.168.204.x" \ disabled=no add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=22 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=23 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=25 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=53 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=80 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=110 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=443 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=yes add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=8080 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no add chain=forward src-address=192.168.204.0/26 protocol=tcp dst-port=6891-6901 \ action=mark-packet new-packet-mark=semlimite passthrough=yes comment="" \ disabled=no Se tiver uma maneira de otimizar todas essas regras sinta-se a vontade.....Abraços!!! |
![]() Registrado em: Apr 2007
Localização: Rio Grande do Sul
Posts: 96
Agradeceu: 3
Agradecido 12 vez(es) em 10 Posts
Reputação: 32
![]() |
|
|
|
|
#4 (permalink) |
|
Caro colega tenta essas regras. Desabilite o P2P queues tree e crie em queues simple. A regra do QUEUEs deve sempre estar em primeiro.
/ ip firewall mangle add chain=foward p2p=all-p2p action=mark-connection \ new-connection-mark=p2p passthrough=yes comment="bloquear p2p" disabled=no add chain=foward connection-mark=p2p action=mark-packet \ new-packet-mark=p2p passthrough=yes comment="" disabled=no add chain=foward connection-mark=!p2p action=mark-packet \ new-packet-mark=Outros passthrough=yes comment="" disabled=no / ip queue simple add name="P2P" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=p2p direction=both priority=6 \ queue=default/default limit-at=0/0 max-limit=512000/512000 total-queue=default time=0s-24m,sun,mon,tue,wed,thu,fri,sat \ disabled=no
__________________
Rodrigo Minelli http://www.installnet.srv.br MSN.: mytinick@hotmail.com E-Mail.: r.minelli@terra.com.br install@instalnet.srv.br Suporte e Consultoria Mikrotik Firewall Completo, Cache Full de Sites e Arquivos, Cache DNS, Autenticação com Página de Bloqueio, Load Balance por NTH, Rotas, QoS Completo (Voip, Rádios, MSN, Audio e Video), etc... |
![]() |
|
|
|
|
#6 (permalink) | |
|
Citação:
Acabei me esquecendo, muda o connection-mark para p2p_conn para diferenciar do mark-packet que de ficar como p2p. Última edição por 2KILLER2; 15-02-2008 às 12:38. |
![]() Registrado em: Oct 2006
Posts: 72
Agradeceu: 0
Agradecido 14 vez(es) em 6 Posts
Reputação: 35
![]() |
|
|
|
|
|
#8 (permalink) |
|
o prerouting pode ser mudado o restante nao faca o teste.
__________________
Rodrigo Minelli http://www.installnet.srv.br MSN.: mytinick@hotmail.com E-Mail.: r.minelli@terra.com.br install@instalnet.srv.br Suporte e Consultoria Mikrotik Firewall Completo, Cache Full de Sites e Arquivos, Cache DNS, Autenticação com Página de Bloqueio, Load Balance por NTH, Rotas, QoS Completo (Voip, Rádios, MSN, Audio e Video), etc... |
![]() |
|
|
![]() |
| Ferramentas do Tópico | |
|
|
Tópicos Similares
|
||||
| Tópico | Tópico Iniciado Por | Fórum | Respostas | Última Mensagem |
| Limitando pacotes. | Skylinelan | Mikrotik | 4 | 26-10-2007 20:43 |
| Limitando as extensões | andunno | Samba/SMB | 0 | 16-07-2007 17:17 |
| Limitando Download | tianguapontocom | Proxy/NAT/Firewall | 3 | 24-01-2006 23:37 |
| FTP LIMITANDO AS PASTA | PiTsA | Adm. em Geral | 0 | 25-12-2002 23:13 |
| limitando banda com cbq | Proxy/NAT/Firewall | 1 | 12-12-2002 13:35 | |