Menú principal

reglas pa rb 750gl

Publicado por marwill, Abril 21, 2014, 02:15:02 PM

Tema anterior - Siguiente tema

marwill

estaba usando estas reglas  pero las desactive porq no me dejan trabajar bien el raptor no entrega a velocidad hit cuando las tengo activa ( solo deje activa las d redirrecion)
Código (mk) [Seleccionar]

/ip firewall mangle
add action=mark-routing chain=prerouting comment=\
   "Redireccion raptor________________________________" disabled=no dst-port=\
   80 in-interface="BRIDGE LOCAL" new-routing-mark=raptor_route passthrough=\
   yes protocol=tcp
add action=mark-connection chain=forward comment="== RAPTORCACHE ==" content=\
   "X-Cache: HIT from Raptor" disabled=no new-connection-mark=\
   raptor-connection passthrough=yes
add action=mark-packet chain=forward connection-mark=raptor-connection \
   disabled=no new-packet-mark=raptor-packs passthrough=no
add action=mark-connection chain=forward comment="==SQUID - TOS 12==" disabled=\
   no dscp=12 new-connection-mark=squid-connection passthrough=yes
add action=mark-packet chain=forward connection-mark=squid-connection disabled=\
   no new-packet-mark=squid-packs passthrough=yes
add action=mark-connection chain=prerouting comment="MARCO PRIO 1" disabled=yes \
   new-connection-mark="PRIO 1" passthrough=yes protocol=icmp
add action=mark-packet chain=prerouting connection-mark="PRIO 1" disabled=yes \
   new-packet-mark="PRIO 1" passthrough=yes
add action=mark-connection chain=output disabled=yes dst-port=53 \
   new-connection-mark="PRIO 1" passthrough=yes protocol=udp
add action=mark-connection chain=prerouting disabled=yes dst-port=53 \
   new-connection-mark="PRIO 1" passthrough=yes protocol=udp
add action=jump chain=prerouting disabled=yes jump-target="TERMINO DE PROCESAR" \
   packet-mark="PRIO 1"
add action=mark-connection chain=prerouting comment=\
   "MARCO PRIO 2 , STREAMING - JUEGOS,VOIP" disabled=yes dst-port=5060-5061 \
   new-connection-mark="PRIO 2" passthrough=yes protocol=tcp
add action=mark-connection chain=prerouting disabled=yes dst-address-list=GB \
   new-connection-mark="PRIO 2" passthrough=yes
add action=mark-connection chain=prerouting disabled=yes dst-address-list=\
   Youtube new-connection-mark="PRIO 2" passthrough=yes
add action=mark-connection chain=prerouting disabled=yes dst-port=1863,5190,777 \
   new-connection-mark="PRIO 2" passthrough=yes protocol=tcp
add action=mark-packet chain=prerouting connection-mark="PRIO 2" disabled=yes \
   new-packet-mark="PRIO 2" passthrough=yes
add action=jump chain=prerouting disabled=yes jump-target="TERMINO DE PROCESAR" \
   packet-mark="PRIO 2"
add action=mark-connection chain=prerouting comment="marco prio 3 navegacion" \
   disabled=yes dst-port=80,443,8000-9000 new-connection-mark="PRIO 3" \
   passthrough=yes protocol=tcp
add action=mark-packet chain=prerouting connection-mark="PRIO 3" disabled=yes \
   new-packet-mark="PRIO 3" passthrough=yes
add action=jump chain=prerouting disabled=yes jump-target="TERMINO DE PROCESAR" \
   packet-mark="PRIO 3"
add action=mark-connection chain=prerouting comment=\
   "PRIO 4 - PUERTOS LABORALES" disabled=yes dst-port=\
   25,110,143,3389,1723,21-23 new-connection-mark="PRIO 4" passthrough=yes \
   protocol=tcp
add action=mark-packet chain=prerouting connection-mark="PRIO 4" dis
   new-packet-mark="PRIO 4" passthrough=yes
add action=jump chain=prerouting disabled=yes jump-target="TERMINO D
   packet-mark="PRIO 4"
add action=mark-connection chain=prerouting comment="MARCO PRIO 5" d
   new-connection-mark="PRIO 5" passthrough=yes protocol=tcp
add action=mark-packet chain=prerouting connection-mark="PRIO 5" dis
   new-packet-mark="PRIO 5" passthrough=yes
add action=mark-connection chain=prerouting comment="PRIO - 7 MULTID
   connection-bytes=50000000-0 disabled=yes new-connection-mark="PR
   passthrough=yes protocol=tcp
add action=mark-packet chain=prerouting connection-mark="PRIO 7" dis
   new-packet-mark="PRIO 7" passthrough=yes
add action=jump chain=prerouting disabled=yes jump-target="TERMINO D
   packet-mark="PRIO 7"
add action=mark-connection chain=prerouting comment=P2P disabled=yes
   new-connection-mark="PRIO 8" p2p=all-p2p passthrough=yes
add action=mark-packet chain=prerouting connection-mark="PRIO 8" dis
   new-packet-mark="PRIO 8" passthrough=yes
add action=jump chain=prerouting disabled=yes jump-target="TERMINO D
   packet-mark="PRIO 8"
add action=accept chain="TERMINO DE PROCESAR" disabled=yes


/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=0 max-limit=0 name=UPLOAD packet-mark="" parent=WAN priority=1
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=0 max-limit=0 name=DOWNLOAD packet-mark="" parent="BRIDGE LOCAL" priority=1
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=87k max-limit=256k name="UP-PRIO 1" packet-mark="PRIO 1" parent=UPLOAD priority=1 queue=SUBIDA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=87k max-limit=256k name="UP-PRIO 2" packet-mark="PRIO 2" parent=UPLOAD priority=2 queue=SUBIDA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=4M max-limit=100M name="UP-PRIO 3" packet-mark="PRIO 3" parent=UPLOAD priority=3 queue=SUBIDA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=87k max-limit=256k name="UP-PRIO 4" packet-mark="PRIO 4" parent=UPLOAD priority=4 queue=SUBIDA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=87k max-limit=768k name="UP-PRIO 5" packet-mark="PRIO 5" parent=UPLOAD priority=5 queue=SUBIDA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=320k max-limit=1500k name="UP-PRIO 7" packet-mark="PRIO 7" parent=UPLOAD priority=7 queue=SUBIDA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=87k max-limit=256k name="UP-PRIO 8" packet-mark="PRIO 8" parent=UPLOAD priority=8 queue=SUBIDA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=100k max-limit=2M name="PRIO 1" packet-mark="PRIO 1" parent=DOWNLOAD priority=1 queue=BAJADA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=400k max-limit=2M name="PRIO 2" packet-mark="PRIO 2" parent=DOWNLOAD priority=2 queue=BAJADA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=2M max-limit=100M name="PRIO 3" packet-mark="PRIO 3" parent=DOWNLOAD priority=3 queue=BAJADA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=200k max-limit=2M name="PRIO 4" packet-mark="PRIO 4" parent=DOWNLOAD priority=4 queue=BAJADA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=100k max-limit=2M name="PRIO 5" packet-mark="PRIO 5" parent=DOWNLOAD priority=5 queue=BAJADA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=320k max-limit=1500k name="PRIO 7" packet-mark="PRIO 7" parent=DOWNLOAD priority=7 queue=BAJADA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=yes limit-at=1k max-limit=1M name="PRIO 8" packet-mark="PRIO 8" parent=DOWNLOAD priority=8 queue=BAJADA
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 name=.RaptorCache packet-mark=raptor-packs parent=global-out priority=4 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 name=".Squid 3.x" packet-mark=squid-packs parent=global-out priority=4 queue=default

luistec

Algunas reglas no estan completas, pero por lo que se puede ver, tienes que especificar la interface de destino de las reglas, más aun cuanto tengan el puerto 80 y tambien las que no especifican ningun puerto como tu regla "MARCO PRIO 5", estas reglas interfieren en el marcado del Full cache para posteriormente ser priorizados en el queue tree.

Saludos.

tonyvzla

Cita de: luistec en Abril 21, 2014, 03:19:52 PM
Algunas reglas no estan completas, pero por lo que se puede ver, tienes que especificar la interface de destino de las reglas, más aun cuanto tengan el puerto 80 y tambien las que no especifican ningun puerto como tu regla "MARCO PRIO 5", estas reglas interfieren en el marcado del Full cache para posteriormente ser priorizados en el queue tree.

Saludos.
Que mas luis, podras hacerme alguna optimizacion del raptor y mk si estas con tiempo ahorita? saludos
En ayuda de los mas desprotegidos