PARA QUEM USA HOTSPOT

Mostrando 1 a 1 de 1 registros

2012-10-14 11:45:07
wellington nogueira de sousa

Ola venho dar minha contribuição depois de longos dias de dor de cabeça tentando colocar o cache speedr em paralelo com o mk, vamos as configuracoes. MANGLE

vamos as seguintes redes

172.16.90.2/16 - ip do cache 192.168.99.0/24 - ip dos clientes em hotspot (troque pelo ip do seu cliente)

Obs.: vale lembrar que essa configuracao pode nao subir corretamente se vc copiar e colar, pq depende da versao que vc esta usando o mk. portanto se vc copiar e colar, verifique regra por regra, digo isso pq fiz isso em outro mk e nao estava dando certo, e era puramente a questao de versao.

MK versao 4.5 RB433

MANGLE

/ip firewall mangle add action=mark-connection chain=prerouting comment="if addrlist = speedr-redirect -> mark connection [connmarkspeedr-redirect]" disabled=no dst-address-list=!intranet dst-port=80 new-connection-mark=connmarkspeedr-redirect passthrough=no protocol=tcp src-address-list=speedr-redirect

NAT

/ip firewall nat add action=dst-nat chain=dstnat comment="if [connmarkspeedr-redirect]-> redirect [172.16.90.2 tcp.dst=3128]" connection-mark=connmarkspeedr-redirect disabled=no dst-address-list=!intranet protocol=tcp to-addresses=172.16.90.2 to-ports=3128

ADDRESS-LIST

/ip firewall address-list add address=192.168.99.0/24 comment="" disabled=no list=intranet

/ip firewall address-list add address=192.168.99.0/24 comment="Regra webcache" disabled=no list=speedr-redirect

MASQUERADE INTRANET

/ip firewall nat add action=masquerade chain=srcnat comment="Masquerade intranet" disabled=no dst-address=!172.16.90.2 src-address-list=intranet

MASQUERADE SPEEDR

/ip firewall nat add action=masquerade chain=srcnat comment="Masquerade speedr" disabled=no dst-address-list=!intranet src-address=172.16.90.2


REGRAS CACHE FULL

MANGLE /ip firewall mangle add action=mark-packet chain=postrouting comment="dscp->12 => [packet_speedr_HIT]" disabled=no dscp=12 new-packet-mark=packet_speedr_HIT passthrough=no /ip firewall mangle add action=mark-packet chain=postrouting comment="dscp->10 => [packet_speedr_HIT]" disabled=no dscp=10 new-packet-mark=packet_speedr_HIT passthrough=no /ip firewall mangle add action=mark-packet chain=postrouting comment="dscp->48 => [packet_speedr_HIT]" disabled=no dscp=48 new-packet-mark=packet_speedr_HIT passthrough=no

QUEUE TREE /queue tree add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=8000000 max-limit=8000000 name="webcache HIT" packet-mark=packet_speedr_HIT parent=global-out priority=8 queue=default

ah so mais uma coisa, nesse forum tudo que se faz aqui o povo cobra, gente vamos parar de ser "espertalhão" e vamos ajudar, ate porque nem mesmo vc que sabe tudo, pagou por tudo.

obg

espero ter ajudado.

2012-10-14 11:46:43
wellington nogueira de sousa

License Level: 2

ah nao sou "ex" pert em mk sou estou tentando ajudar....

Mostrando 1 a 1 de 1 registros

To reply this post or create new ones you must login

Forgot Password?

*emphasis   **more emphasis**

(4 spaces)code

> quote

* List item
* Another list item

1. Ordered list item
2. Other ordered list item

# Fist level title (##, ###, ####)

[Link's Text](http://address.com)