Postado originalmente por
int21
A ideia aqui é limitar o numero de downloads simultâneos por cliente por determinadas extenções pra quem tem pouca banda.
ip firewall mangle>
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.mp3
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.zip
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.rar
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.rar
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.flv
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.mp4
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.exe
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.iso
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.nrg
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.avi
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.3gp
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.mov
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.mpeg
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.mpg
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.wav
add chain=forward action=mark-connection new-connection-mark=LIMITADOS passthrough=yes in-interface=lan content=.aac
ip firewall filter
add chain=forward action=drop protocol=tcp src-address-list=192.168.x.0/24 connection-mark=LIMITADOS connection-limit=2,32