[ SlackList ] [ WkikiSlack ] |
Dnia Thu, 24 Feb 2005 19:52:06 +0100, demeus <demeus@go2.pl> napisał:
> Witam ponownie :)
> Moglby ktos fachowszym okiem zerknac co zepsulem :)
> Ponizej znajduje sie efekt moich skryptow napisanych na
> podstawie: http://www.inet.one.pl/download/config/+20050106.tar.gz
> Po zaladowaniu skryptu calkowicie zamiera mi ruch wychodzacy
> i nic nie trafia do kolejek ruchu wychodzacego
> bede wdzieczny za wszelkie sugestie
ok problem czesciowo usuniety "poprawne" skrypty wg mnie powinne wygladac
tak:
iptables -t mangle -A POSTROUTING -s 192.168.5.11 -d 0/0 -j MARK
--set-mark 0x101
iptables -t mangle -A POSTROUTING -s 192.168.5.11 -d 0/0 -j RETURN
iptables -t mangle -A POSTROUTING -s 192.168.2.50 -d 0/0 -j MARK
--set-mark 0x102
iptables -t mangle -A POSTROUTING -s 192.168.2.50 -d 0/0 -j RETURN
iptables -t mangle -A POSTROUTING -s 192.168.2.10 -d 0/0 -j MARK
--set-mark 0x103
iptables -t mangle -A POSTROUTING -s 192.168.2.10 -d 0/0 -j RETURN
iptables -t mangle -A POSTROUTING -s 192.168.2.42 -d 0/0 -j MARK
--set-mark 0x104
iptables -t mangle -A POSTROUTING -s 192.168.2.42 -d 0/0 -j RETURN
iptables -t mangle -A POSTROUTING -s 192.168.1.10 -d 0/0 -j MARK
--set-mark 0x105
iptables -t mangle -A POSTROUTING -s 192.168.1.10 -d 0/0 -j RETURN
iptables -t mangle -A POSTROUTING -s 192.168.1.11 -d 0/0 -j MARK
--set-mark 0x105
iptables -t mangle -A POSTROUTING -s 192.168.1.11 -d 0/0 -j RETURN
tc qdisc add dev eth1 root handle 1:0 hfsc
tc class add dev eth1 parent 1:0 classid 1:1 hfsc ls m2 1966kbit ul m2
2027kbit
tc class add dev eth1 parent 1:1 classid 1:101 hfsc ls m2 18kbit ul m2
128kbit
tc qdisc add dev eth1 parent 1:101 sfq perturb 10
tc filter add dev eth1 parent 1:0 protocol ip prio 4 u32 match ip dst
192.168.5.11 flowid 1:101
tc class add dev eth1 parent 1:1 classid 1:102 hfsc ls m2 18kbit ul m2
256kbit
tc qdisc add dev eth1 parent 1:102 sfq perturb 10
tc filter add dev eth1 parent 1:0 protocol ip prio 4 u32 match ip dst
192.168.2.50 flowid 1:102
tc class add dev eth1 parent 1:1 classid 1:103 hfsc ls m2 18kbit ul m2
256kbit
tc qdisc add dev eth1 parent 1:103 sfq perturb 10
tc filter add dev eth1 parent 1:0 protocol ip prio 4 u32 match ip dst
192.168.2.10 flowid 1:103
tc class add dev eth1 parent 1:1 classid 1:104 hfsc ls m2 18kbit ul m2
256kbit
tc qdisc add dev eth1 parent 1:104 sfq perturb 10
tc filter add dev eth1 parent 1:0 protocol ip prio 4 u32 match ip dst
192.168.2.42 flowid 1:104
tc class add dev eth1 parent 1:1 classid 1:105 hfsc ls m2 18kbit ul m2
512kbit
tc qdisc add dev eth1 parent 1:105 sfq perturb 10
tc filter add dev eth1 parent 1:0 protocol ip prio 4 u32 match ip dst
192.168.1.10 flowid 1:105
tc filter add dev eth1 parent 1:0 protocol ip prio 4 u32 match ip dst
192.168.1.11 flowid 1:105
tc qdisc add dev eth0 root handle 1:0 hfsc
tc class add dev eth0 parent 1:0 classid 1:1 hfsc ls m2 1966kbit ul m2
2027kbit
tc class add dev eth0 parent 1:1 classid 1:101 hfsc ls m2 18kbit ul m2
512kbit
tc qdisc add dev eth0 parent 1:101 sfq perturb 10
tc filter add dev eth0 parent 1:0 protocol ip prio 4 handle 0x101 fw
flowid 1:101
tc class add dev eth0 parent 1:1 classid 1:102 hfsc ls m2 18kbit ul m2
512kbit
tc qdisc add dev eth0 parent 1:102 sfq perturb 10
tc filter add dev eth0 parent 1:0 protocol ip prio 4 handle 0x102 fw
flowid 1:102
tc class add dev eth0 parent 1:1 classid 1:103 hfsc ls m2 18kbit ul m2
512kbit
tc qdisc add dev eth0 parent 1:103 sfq perturb 10
tc filter add dev eth0 parent 1:0 protocol ip prio 4 handle 0x103 fw
flowid 1:103
tc class add dev eth0 parent 1:1 classid 1:104 hfsc ls m2 18kbit ul m2
512kbit
tc qdisc add dev eth0 parent 1:104 sfq perturb 10
tc filter add dev eth0 parent 1:0 protocol ip prio 4 handle 0x104 fw
flowid 1:104
tc class add dev eth0 parent 1:1 classid 1:105 hfsc ls m2 18kbit ul m2
512kbit
tc qdisc add dev eth0 parent 1:105 sfq perturb 10
tc filter add dev eth0 parent 1:0 protocol ip prio 4 handle 0x105 fw
flowid 1:105
lecz dalej wystepuje problem :/
nawet po zalozeniu samej kolejki:
tc qdisc add dev eth1 root handle 1:0 hfsc
tc class add dev eth1 parent 1:0 classid 1:1 hfsc ls m2 1966kbit ul m2
2027kbit
lacze jest ograniczane do ok 50-10Kb/s i ruch powoli zamiera
aktualnie jeste w trakcie akutalizowania jaja iptables i paru innych
niuansow
w systemie licze ze to pomoze...
chyba ze ktos ma inne propozycje
-- pozdrawiam demeusReceived on Fri Feb 25 00:16:26 2005