Вот еще видео пособия для микротика- настройка DDNS и другие.
http://www.youtube.com/watch?v=wYVgC3xMIo0
http://www.youtube.com/watch?v=wYVgC3xMIo0
/ ip firewall mangle add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=20-21 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=513-65535 dst-port=22 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=23 action=mark-packet\ new-packet-mark=speed-hight passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=25 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=53 dst-port=53 action=mark-packet\ new-packet-mark=speed-super passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=53 action=mark-packet\ new-packet-mark=speed-super passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=80 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=8080 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=110 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=119 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=143 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=161-162 action=mark-packet\ new-packet-mark=speed-hight passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=443 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=465 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=993 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=995 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=1723 action=mark-packet\ new-packet-mark=speed-hight passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=3128 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=5900-5901 action=mark-packet\ new-packet-mark=speed-hight passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=5190 action=mark-packet\ new-packet-mark=speed-hight passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=6881-6889 action=mark-packet\ new-packet-mark=speed-low passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp src-port=1024-65535 dst-port=8291 action=mark-packet\ new-packet-mark=speed-super passthrough=no comment="" \ disabled=no add chain=prerouting protocol=tcp action=mark-connection action=mark-packet\ new-packet-mark=speed-low passthrough=no comment="" \ disabled=no add chain=prerouting p2p=all-p2p action=mark-packet\ new-packet-mark=speed-low passthrough=no comment="" \ disabled=yes add chain=prerouting protocol=udp src-port=1024-65535 dst-port=53 action=mark-packet\ new-packet-mark=speed-super passthrough=no comment="" \ disabled=no add chain=prerouting protocol=udp src-port=1024-65535 dst-port=123 action=mark-packet\ new-packet-mark=speed-super passthrough=no comment="" \ disabled=no add chain=prerouting protocol=udp src-port=1024-65535 dst-port=1701 action=mark-packet\ new-packet-mark=speed-hight passthrough=no comment="" \ disabled=no add chain=prerouting protocol=udp src-port=36725 dst-port=1024-65535 action=mark-packet\ new-packet-mark=speed-normal passthrough=no comment="" \ disabled=no add chain=prerouting protocol=udp action=mark-packet\ new-packet-mark=speed-low passthrough=no comment="" \ disabled=no add chain=prerouting protocol=icmp icmp-options=8:0-255 action=mark-packet\ new-packet-mark=speed-super passthrough=no comment="" \ disabled=no add chain=prerouting protocol=gre action=mark-packet\ new-packet-mark=speed-hight passthrough=no comment="" \ disabled=no add chain=prerouting action=mark-packet\ new-packet-mark=speed-low passthrough=no comment="" \ disabled=no ############################################################################# / queue tree add name="SPEED" parent=global-total packet-mark="" limit-at=0 \ queue=hotspot-default priority=8 max-limit=0 burst-limit=0 \ burst-threshold=0 burst-time=0s disabled=no add name="SUPER" parent=SPEED packet-mark=speed-super limit-at=0 \ queue=hotspot-default priority=2 max-limit=0 burst-limit=0 \ burst-threshold=0 burst-time=0s disabled=no add name="HIGHT" parent=SPEED packet-mark=speed-hight limit-at=0 \ queue=hotspot-default priority=4 max-limit=0 burst-limit=0 \ burst-threshold=0 burst-time=0s disabled=no add name="NORMAL" parent=SPEED packet-mark=speed-normal limit-at=0 \ queue=hotspot-default priority=6 max-limit=0 burst-limit=0 \ burst-threshold=0 burst-time=0s disabled=no add name="LOW" parent=SPEED packet-mark=speed-low limit-at=0 \ queue=ethernet-default priority=8 max-limit=0 burst-limit=0 \ burst-threshold=0 burst-time=0s disabled=no ############################################################################## ^d1:[a|r]d2:id20:.*:y1:[q|r]e - регулярное выражение для отлова р2р траффика в layer7 по протоколу udp для того что бы какому-то сервису поменять приоритет нужно в маркерах поменять new-packet-mark= на speed-low | speed-normal | speed-hight | speed-super
/ip firewall mangle add chain=forward src-address=192.168.11.0/24 dst-address=0.0.0.0 action=mark-connection new-connection-mark=users-con-up /ip firewall mangle add connection-mark=users-con-up action=mark-packet new-packet-mark=users-up chain=forward /ip firewall mangle add chain=forward src-address=0.0.0.0 dst-address=192.168.11.0/24 action=mark-connection new-connection-mark=users-con-down /ip firewall mangle add connection-mark=users-con-down action=mark-packet \ new-packet-mark=users-down chain=forward /queue type add name=pcq-download kind=pcq pcq-classifier=dst-address /queue type add name=pcq-upload kind=pcq pcq-classifier=src-address /queue tree add name=Download parent=Local max-limit=10240000 burst-limit=200000 burst-time=10 /queue tree add parent=Download queue=pcq-download packet-mark=users-down /queue tree add name=Upload parent=Public max-limit=160000 burst-limit=200000 burst-time=10 /queue tree add parent=Upload queue=pcq-upload packet-mark=users-up
Комментарий