Postado originalmente por
rrinfor
As regras eu não as tenho mais, pois á 2 meses atraz tirei o pczinho que tinha como roteador e coloquei uma RB1000, entao nao me preocupei com backup da regras, estou sem QoS no momento, mas ja determinei que vou aplicar esse recurso na minha rede a partir da segunda-feira.
Mas basicamente o que tinha era algo assim:
exemplo somente da porta 80 e 443 (trafego http e https)
HTTP:
/ip firewall mangle
add action=mark-connection chain=prerouting comment="HTTP Connection" disabled=yes dst-port=80 new-connection-mark=http_conn passthrough=yes protocol=tcp
add action=mark-packet chain=prerouting comment="HTTP Packet" connection-mark=http_conn disabled=yes new-packet-mark=http_packet passthrough=no
/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=0 max-limit=3000000 name=http-in packet-mark=http_packet parent=global-in priority=2 \
queue=default-small
/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=0 max-limit=3000000 name=http-in packet-mark=http_packet parent=global-out priority=2 \
queue=default-small
HTTPs:
/ip firewall mangle
add action=mark-connection chain=prerouting comment="HTTPs Connection" disabled=yes dst-port=443 new-connection-mark=https_conn passthrough=yes protocol=tcp
add action=mark-packet chain=prerouting comment="HTTPs Packet" connection-mark=https_conn disabled=yes new-packet-mark=https_packket passthrough=no
/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=0 max-limit=1024000 name=https-in packet-mark=https_packket parent=global-in \
priority=2 queue=default-small
/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=0 max-limit=1024000 name=https-in packet-mark=https_packket parent=global-out \
priority=2 queue=default-small
O tráfego não chegava estorando o max-limit, porem o desemprenho da rede ficava terrivel.
Abraços:ciao: