Indice   FAQ  
Iscriviti  Login
Indice RouterOS RouterOS

code e radiusmanager

Tutto su questo sistema operativo linux based - Configurazioni, dubbi, problematiche &....

Re: code e radiusmanager

Messaggioda roma88 » mer 27 ott 2010, 16:55

come dice parabolino, posta l'export della tua configurazione a partire da mangle, secondo me c'è qualche inghippo pure li, posta anche quello delle htb queue type.
Ci tengo a far presente alla comunità che ho inviato una email all'assistenza della dmasoft per chiedere che venga sviluppata un po meglio l'interazzione tra le code semplici e il tree. mi hanno risposto che nella prossima versione in uscita tra qualche mese ci sarà qualcosa che gestisca questa parte del QoS.
certificato MTCNA - MTCTCE
roma88
Mikrotik-User 8° Liv
Mikrotik-User 8° Liv
 
Messaggi: 100
Iscritto il: mar 10 ago 2010, 17:00

Re: code e radiusmanager

Messaggioda parabolino » mer 27 ott 2010, 17:00

le queue type non ci interessano in questo caso
...non è importante sapere tutto, è importante sapere dove cercare!!! E ricorda che CE+CE NON fa CE!
parabolino
MikroTIK Guru
MikroTIK Guru
 
Messaggi: 643
Iscritto il: ven 6 nov 2009, 14:47

Re: code e radiusmanager

Messaggioda roma88 » mer 27 ott 2010, 17:20

scusami parabolino per la domanda, ma perche pensi che non possa servire le queue type?
Creando la mia configurazione mi sono accorto che per dedicare una banda ad ogni singola connnessione, un po come fa simple queues, bisogna aggire impostando i limiti di banda nelle PCQ. quindi lo trovo importante che posti anche questo.
Forse sbaglio io.
certificato MTCNA - MTCTCE
roma88
Mikrotik-User 8° Liv
Mikrotik-User 8° Liv
 
Messaggi: 100
Iscritto il: mar 10 ago 2010, 17:00

Re: code e radiusmanager

Messaggioda raffaelema » mer 27 ott 2010, 17:21

ecco gli export
Codice: Seleziona tutto
/queue tree
    name=TOT-GL_IN parent=global-in priority=5
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=\
    3500k name=P1--GL_IN parent=TOT-GL_IN priority=1
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=0-512-GL_IN packet-mark=0bytes parent=P1--GL_IN priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=ICMP-GL_IN packet-mark=icmp parent=P1--GL_IN priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=POP3-GL_IN packet-mark=pop3 parent=P1--GL_IN priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=SMTP-GL_IN packet-mark=smtp parent=P1--GL_IN priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IMAP-GL_IN packet-mark=imap parent=P1--GL_IN priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=HTTP-GL_IN packet-mark=http parent=P1--GL_IN priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=SSL-GL_IN packet-mark=ssl parent=P1--GL_IN priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=MSN-MESSENGER-GL_IN packet-mark=msn-messenger parent=P1--GL_IN priority=1 \
    queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=P3-GL_IN parent=TOT-GL_IN priority=3
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=1Mbyte-GL_IN packet-mark=1Mbyte parent=P3-GL_IN priority=3 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=P4-GL_IN parent=TOT-GL_IN priority=4
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=3Mbyte-GL_IN packet-mark=3Mbyte parent=P4-GL_IN priority=4 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=1M \
    name=P5-GL_IN parent=TOT-GL_IN priority=5
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=6Mbyte-GL_IN packet-mark=6Mbyte parent=P5-GL_IN priority=5 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=1M \
    name=P6-GL_IN parent=TOT-GL_IN priority=6
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=30Mbyte-GL_IN packet-mark=30Mbyte parent=P6-GL_IN priority=6 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=500k \
    name=P7-GL_IN parent=TOT-GL_IN priority=7
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=Youtube-GL_IN packet-mark=Youtube parent=P7-GL_IN priority=7 queue=\
    Youtube_down
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=60Mbyte-GL_IN packet-mark=60Mbytes parent=P7-GL_IN priority=7 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=500k \
    name=P8-GL_IN parent=TOT-GL_IN priority=8
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=Infinite-GL_IN packet-mark=Infinite parent=P8-GL_IN priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=GRE-GL_IN packet-mark=gre parent=P8-GL_IN priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IPSEC-ESP-GL_IN packet-mark=ipsec-esp parent=P8-GL_IN priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IPSEC-AH-GL_IN packet-mark=ipsec-ah parent=P8-GL_IN priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=100k \
    name=P2P-GL_IN packet-mark=p2p parent=P8-GL_IN priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IPENCAP-GL_IN packet-mark=ipencap parent=P8-GL_IN priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IPIP-GL_IN packet-mark=ipip parent=P8-GL_IN priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=500k \
    name=UDP-GL_IN parent=TOT-GL_IN priority=1
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=UDP-100-GL_IN packet-mark=udp-100 parent=UDP-GL_IN priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=UDP-500-GL_IN packet-mark=upd-500 parent=UDP-GL_IN priority=3 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=UDP-Other-GL_IN packet-mark=upd-other parent=UDP-GL_IN priority=8 queue=\
    default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=5M max-limit=5M \
    name=TOT-GL_OUT parent=global-out priority=5
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=P1-GL_OUT parent=TOT-GL_OUT priority=1
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=0-512-GL_OUT packet-mark=0bytes parent=P1-GL_OUT priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=ICMP-GL_OUT packet-mark=icmp parent=P1-GL_OUT priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=POP3-GL_OUT packet-mark=pop3 parent=P1-GL_OUT priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=SMTP-GL_OUT packet-mark=smtp parent=P1-GL_OUT priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IMAP-GL_OUT packet-mark=imap parent=P1-GL_OUT priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=HTTP-GL_OUT packet-mark=http parent=P1-GL_OUT priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=SSL-GL_OUT packet-mark=ssl parent=P1-GL_OUT priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=MSN-MESSENGER-GL_OUT packet-mark=msn-messenger parent=P1-GL_OUT priority=1 \
    queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=P3-GL_OUT parent=TOT-GL_OUT priority=3
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=1Mbyte-GL_OUT packet-mark=1Mbyte parent=P3-GL_OUT priority=3 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=P4-GL_OUT parent=TOT-GL_OUT priority=4
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=3Mbyte-GL_OUT packet-mark=3Mbyte parent=P4-GL_OUT priority=4 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=2M \
    name=P5-GL_OUT parent=TOT-GL_OUT priority=5
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=6Mbyte-GL_OUT packet-mark=6Mbyte parent=P5-GL_OUT priority=5 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=400k \
    name=P6-GL_OUT parent=TOT-GL_OUT priority=6
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=30Mbyte-GL_OUT packet-mark=30Mbyte parent=P6-GL_OUT priority=6 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=400k \
    name=P7-GL_OUT parent=TOT-GL_OUT priority=7
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=Youtube-GL_OUT packet-mark=Youtube parent=P7-GL_OUT priority=7 queue=\
    Youtube_down
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=60Mbyte-GL_OUT packet-mark=60Mbytes parent=P7-GL_OUT priority=7 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=300k \
    name=P8-GL_OUT parent=TOT-GL_OUT priority=8
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=Infinite-GL_OUT packet-mark=Infinite parent=P8-GL_OUT priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=GRE-GL_OUT packet-mark=gre parent=P8-GL_OUT priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IPSEC-ESP-GL_OUT packet-mark=ipsec-esp parent=P8-GL_OUT priority=8 queue=\
    default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IPSEC-AH-GL_OUT packet-mark=ipsec-ah parent=P8-GL_OUT priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=100k \
    name=P2P-GL_OUT packet-mark=p2p parent=P8-GL_OUT priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IPENCAP-GL_OUT packet-mark=ipencap parent=P8-GL_OUT priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=IPIP-GL_OUT packet-mark=ipip parent=P8-GL_OUT priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=500k \
    name=UDP-GL_OUT parent=TOT-GL_OUT priority=1
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=UDP-100-GL_OUT packet-mark=udp-100 parent=UDP-GL_OUT priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=UDP-500-GL_OUT packet-mark=upd-500 parent=UDP-GL_OUT priority=3 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=UDP-Other-GL_OUT packet-mark=upd-other parent=UDP-GL_OUT priority=3 queue=\
    default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=SPEEDTEST-GL_IN packet-mark=speedtest parent=P1--GL_IN priority=1 queue=\
    default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=SPEEDTEST-GL_OUT packet-mark=speedtest parent=P1-GL_OUT priority=1 queue=\
    default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=SPEEDTEST-LOCAL packet-mark=speedtest parent=P1 priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 \
    name=SPEEDTEST-WAN packet-mark=speedtest parent=P1-W priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=100k \
    name=utorrent-gl-in packet-mark=utorrent parent=P8-GL_IN priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=100k \
    name=utorrent-gl-out packet-mark=utorrent parent=P8-GL_OUT priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=2M \
    name=dns_gl_in packet-mark=dns parent=P1--GL_IN priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=2M max-limit=2M \
    name=dns_gl_out packet-mark=dns parent=P1-GL_OUT priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=2M max-limit=2M \
    name=dns-local packet-mark=dns parent=P1 priority=1 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=2M max-limit=2M \
    name=dns-wan packet-mark=dns parent=P1-W priority=1 queue=default






/ip firewall mangle
add action=accept chain=output comment="accept proxy - no limit's" disabled=no dscp=4
add action=mark-connection chain=prerouting comment=dns disabled=no dst-port=53 new-connection-mark=dns_conn passthrough=yes protocol=udp
add action=mark-packet chain=prerouting comment="" connection-mark=dns_conn disabled=no new-packet-mark=dns passthrough=no
add action=mark-packet chain=prerouting comment=pop3 disabled=no dst-port=110 new-packet-mark=pop3 passthrough=no protocol=tcp
add action=mark-packet chain=prerouting comment=smtp disabled=no dst-port=25 new-packet-mark=smtp passthrough=no protocol=tcp
add action=mark-packet chain=prerouting comment=imap disabled=no dst-port=143 new-packet-mark=imap passthrough=no protocol=tcp
add action=mark-connection chain=prerouting comment=Youtube disabled=no new-connection-mark=Youtube_conn passthrough=yes src-address-list=Youtube
add action=mark-packet chain=prerouting comment="" disabled=no new-packet-mark=Youtube passthrough=no src-address-list=Youtube
add action=mark-packet chain=prerouting comment=icmp disabled=no new-packet-mark=icmp passthrough=no protocol=icmp
add action=mark-packet chain=prerouting comment=gre disabled=no new-packet-mark=gre passthrough=no protocol=gre
add action=mark-packet chain=prerouting comment=ipsec-esp disabled=no new-packet-mark=ipsec-esp passthrough=no protocol=ipsec-esp
add action=mark-packet chain=prerouting comment=ipsec-ah disabled=no new-packet-mark=ipsec-ah passthrough=no protocol=ipsec-ah
add action=mark-packet chain=prerouting comment=ipencap disabled=no new-packet-mark=ipencap passthrough=no protocol=ipencap
add action=mark-packet chain=prerouting comment=ipip disabled=no new-packet-mark=ipip passthrough=no protocol=ipip
add action=mark-packet chain=prerouting comment=ssl disabled=no dst-port=443 new-packet-mark=ssl passthrough=no protocol=tcp
add action=mark-connection chain=prerouting comment=torrent disabled=no layer7-protocol=bittorrent new-connection-mark=utorrent_conn p2p=bit-torrent passthrough=yes
add action=mark-packet chain=prerouting comment="" disabled=no layer7-protocol=bittorrent new-packet-mark=utorrent passthrough=no
add action=mark-packet chain=prerouting comment="" connection-mark=udp-100_conn disabled=no new-packet-mark=udp-100 packet-size=0-100 passthrough=no protocol=udp
add action=mark-packet chain=prerouting comment="" connection-mark=upd-500_conn disabled=no new-packet-mark=upd-500 packet-size=100-500 passthrough=no protocol=udp
add action=mark-packet chain=prerouting comment="" connection-mark=upd-other_conn disabled=no new-packet-mark=upd-other passthrough=no
add action=mark-connection chain=prerouting comment=p2p disabled=no new-connection-mark=conn_p2p p2p=all-p2p passthrough=yes
add action=mark-connection chain=forward comment="" disabled=no new-connection-mark=conn_p2p p2p=all-p2p passthrough=yes
add action=mark-packet chain=prerouting comment="" connection-mark=conn_p2p disabled=no new-packet-mark=p2p p2p=all-p2p passthrough=no
add action=mark-packet chain=forward comment="" connection-mark=conn_p2p disabled=no new-packet-mark=p2p p2p=all-p2p passthrough=no
add action=mark-packet chain=prerouting comment="" disabled=no dst-port=80 new-packet-mark=http passthrough=no protocol=tcp
add action=mark-packet chain=prerouting comment="" connection-bytes=1-512000 disabled=no new-packet-mark=0bytes passthrough=no
add action=mark-packet chain=prerouting comment="" connection-bytes=512000-1000000 disabled=no new-packet-mark=1Mbyte passthrough=no
add action=mark-packet chain=prerouting comment="" connection-bytes=1000000-3000000 disabled=no new-packet-mark=3Mbyte passthrough=no
add action=mark-packet chain=prerouting comment="" connection-bytes=3000000-6000000 disabled=no new-packet-mark=6Mbyte passthrough=no
add action=mark-packet chain=prerouting comment="" connection-bytes=6000000-30000000 disabled=no new-packet-mark=30Mbyte passthrough=no
add action=mark-packet chain=prerouting comment="" connection-bytes=30000000-60000000 disabled=no new-packet-mark=60Mbytes passthrough=no
add action=mark-packet chain=prerouting comment="" connection-bytes=60000000-0 disabled=no new-packet-mark=Infinite passthrough=no



ciao
raffaelema
Mikrotik-User 9° Liv
Mikrotik-User 9° Liv
 
Messaggi: 64
Iscritto il: lun 30 nov 2009, 13:36

Re: code e radiusmanager

Messaggioda parabolino » mer 27 ott 2010, 17:23

Il tipo di cosa é importante, ma non è pertinente la problema del nostro amico ;)
Il problema è la sovrapposizione delle due tipologie di code, simple e tree.
...non è importante sapere tutto, è importante sapere dove cercare!!! E ricorda che CE+CE NON fa CE!
parabolino
MikroTIK Guru
MikroTIK Guru
 
Messaggi: 643
Iscritto il: ven 6 nov 2009, 14:47

Re: code e radiusmanager

Messaggioda roma88 » mer 27 ott 2010, 17:28

appunto, ora visto che nel conflitto tra le code simple e tree, vince tree, se non imposta dei limiti nei PCQ, gli utenti navigheranno al massimo della banda disponibile. proprio perche le simple vengono messe fuori uso dalle tree. ci sono una marea di post che parlano di questo e dopo aver fatto a cazzoti XD per capire non funzionavano assieme ho capito che nel conflitto, vinceva HTB.
certificato MTCNA - MTCTCE
roma88
Mikrotik-User 8° Liv
Mikrotik-User 8° Liv
 
Messaggi: 100
Iscritto il: mar 10 ago 2010, 17:00

Re: code e radiusmanager

Messaggioda roma88 » mer 27 ott 2010, 17:31

Vi posto il mio export delle code.
Codice: Seleziona tutto
/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=5M name=hotspot1-down parent=global-out priority=8
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=300k name=hotspot1-up parent=global-in priority=8
/queue type
set default kind=pfifo name=default pfifo-limit=50
set ethernet-default kind=pfifo name=ethernet-default pfifo-limit=50
set wireless-default kind=sfq name=wireless-default sfq-allot=1514 sfq-perturb=5
set synchronous-default kind=red name=synchronous-default red-avg-packet=1000 red-burst=20 red-limit=60 red-max-threshold=50 red-min-threshold=10
set hotspot-default kind=sfq name=hotspot-default sfq-allot=1514 sfq-perturb=5
add kind=pcq name=hotspot1-down-per-user pcq-classifier=dst-address pcq-limit=60 pcq-rate=2500000 pcq-total-limit=2000
add kind=pcq name=hotspot1-up-per-user pcq-classifier=src-address pcq-limit=40 pcq-rate=100000 pcq-total-limit=2000
add kind=pcq name=ICMP-down-per-user pcq-classifier=dst-address pcq-limit=50 pcq-rate=20000 pcq-total-limit=2000
add kind=pcq name=ICMP-up-per-user pcq-classifier=src-address pcq-limit=50 pcq-rate=10000 pcq-total-limit=2000
add kind=pcq name=SSL pcq-classifier=src-address,dst-address pcq-limit=50 pcq-rate=20000 pcq-total-limit=2000
add kind=pcq name=HTTP-Down pcq-classifier=dst-address pcq-limit=50 pcq-rate=2500000 pcq-total-limit=3000
add kind=pcq name="UDP up" pcq-classifier=src-address pcq-limit=50 pcq-rate=40000 pcq-total-limit=2000
add kind=pcq name=Up-all-traffic pcq-classifier=src-address pcq-limit=40 pcq-rate=50000 pcq-total-limit=2000
set default-small kind=pfifo name=default-small pfifo-limit=40
/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=500k name=all-traffic-down packet-mark=hotspot1-down parent=hotspot1-down \
    priority=8 queue=hotspot1-down-per-user
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=5k max-limit=50k name=ICMP-down packet-mark=ICMP-down parent=hotspot1-down priority=1 \
    queue=ICMP-down-per-user
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=100k name=all-traffic-up packet-mark=hotspot1-up parent=hotspot1-up \
    priority=6 queue=Up-all-traffic
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=5k max-limit=50k name=ICMP-up packet-mark=ICMP-up parent=hotspot1-up priority=1 queue=\
    ICMP-up-per-user
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=25k max-limit=100k name=SSL packet-mark=ssl-down parent=hotspot1-down priority=1 \
    queue=SSL
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=30k max-limit=80k name=SSL-up packet-mark=ssl-up parent=hotspot1-up priority=1 queue=\
    SSL
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=1M max-limit=5M name=HTTP-Down packet-mark=HTTP-down parent=hotspot1-down priority=5 \
    queue=HTTP-Down
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=150k max-limit=250k name=HTTP-Up packet-mark=HTTP-up parent=hotspot1-up priority=5 \
    queue=hotspot1-up-per-user
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=100k name="UDP in up" packet-mark="udp in Up" parent=hotspot1-up priority=\
    7 queue="UDP up"

certificato MTCNA - MTCTCE
roma88
Mikrotik-User 8° Liv
Mikrotik-User 8° Liv
 
Messaggi: 100
Iscritto il: mar 10 ago 2010, 17:00

Re: code e radiusmanager

Messaggioda roma88 » mer 27 ott 2010, 17:36

ovviamente il mio è un codice di base, ma ora è in funzione e mi sta funzionando veramente, senza la impostazione delle PCQ non riuscivo a dividere i limiti per utente. per farvi un esempio, ho 5 mega di banda in down, se non mettevo le pcq, ogni utente che facesse uno speed test, passava un traffico di 5 mega. Introducendo l'uso delle pcq, HTB ha impostato i valori per connessione, quindi per utente. gestendo il suo traffico ed i limiti. Accetto che forse non sarà tra i metodi più sicuri e funzionali, ma il suo risultato lo da. che ne pensate?
certificato MTCNA - MTCTCE
roma88
Mikrotik-User 8° Liv
Mikrotik-User 8° Liv
 
Messaggi: 100
Iscritto il: mar 10 ago 2010, 17:00

Re: code e radiusmanager

Messaggioda piciccia » gio 28 ott 2010, 10:38

La risposta ve l'ho già detta !!!
Se non volete sovrapporre la gestione Tree/Simple devi fare questo:

Forse l'approccio + elegante a quello che vuoi fare è assegnare via radius l'IP del cliente (quando lo riceve) ad una specifica address-list.
In questo modo puoi usarla sia sulle Tree che sulle SImple.


Tutto il resto è noia....

Saluti
C.
piciccia
MikroTIK Guru
MikroTIK Guru
 
Messaggi: 1026
Iscritto il: mar 1 giu 2010, 14:57

Re: code e radiusmanager

Messaggioda roma88 » gio 28 ott 2010, 13:56

ciao piciccia, sfruttando il tuo metodo, si riesci a gestire le simple che le tree, ma nel caso di profili diversi ti dovresti mettere li a dividere le classi di ip. Conviene?

Comuqnue vi lancio un sasso, che non risco ancora a capire e potrebbe far comodo a tanti, ma la implementazione della banda minima garantita nel mikrotik come si va a dedicare? si puo fare o no?
certificato MTCNA - MTCTCE
roma88
Mikrotik-User 8° Liv
Mikrotik-User 8° Liv
 
Messaggi: 100
Iscritto il: mar 10 ago 2010, 17:00


PrecedenteProssimo

Torna a RouterOS

Chi c’è in linea

Visitano il forum: Nessuno e 18 ospiti