Hi All There is a little bit in the archive about shorewall and IMQ. http://www.mail-archive.com/shorewall- users@lists.sourceforge.net/msg08109.html Where Pablo gave a bit of info about putting the bits needed into the init script and and the shorewall start and stop files The same site that I will be converting to shorewall currently runs a brute force ingress script using IMQ. It basically just throws away packets if the exceed a configured bandwidth. It also gives a bit of priority to ssh, https, vnc and nagios traffic and really works well. I used the howto at http://tldp.org/HOWTO/ADSL-Bandwidth-Management-HOWTO/ plus a few extra tweaks. What are the chances of keeping my IMQ stuff? Okay I know that IMQ is not in the kernel or in iptables either and both need to be patched. Even with Gentoo emerge this is quite easy with iptables. I just manually run ebuild IMQ has had it''s ups and downs but the dev guys seem quite on the ball currently. Patches for the latest 3.1.x kernel as well as the latest iptables. Only reason I seem to have read a few years back was a personality clash that resulted in IMQ becoming a black sheep. Black sheep or not it works like a wiz. Cheers Ang -- Angela Williams angierfw at gmail dot com Linux/Networking Hacker Blog http://angierfw.wordpress.com Smile! Jesus Loves You! ------------------------------------------------------------------------------ Keep Your Developer Skills Current with LearnDevNow! The most comprehensive online learning library for Microsoft developers is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3, Metro Style Apps, more. Free future releases when you subscribe now! http://p.sf.net/sfu/learndevnow-d2d
On 02/02/2012 03:36 AM, Angela Williams wrote:> > What are the chances of keeping my IMQ stuff? >The commands shown in Pablo''s email should still work. Regards, -Tom -- Tom Eastep \ When I die, I want to go like my Grandfather who Shoreline, \ died peacefully in his sleep. Not screaming like Washington, USA \ all of the passengers in his car http://shorewall.net \________________________________________________ ------------------------------------------------------------------------------ Keep Your Developer Skills Current with LearnDevNow! The most comprehensive online learning library for Microsoft developers is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3, Metro Style Apps, more. Free future releases when you subscribe now! http://p.sf.net/sfu/learndevnow-d2d
Hi All On Thursday 02 February 2012 at 16:26 Tom Eastep :-> On 02/02/2012 03:36 AM, Angela Williams wrote: > > What are the chances of keeping my IMQ stuff? > > The commands shown in Pablo''s email should still work.Thanks Tom! I will post my results once I have it up and running. I will get the basic done first and then add the extras. Openvpn and IMQ. Openvpn seems to be a no brainer really. My old script largely ignored is and just made tun+ part of the local lan. Only security was routes on the windows boxes the raidwarriors needed access to, Baan/SSA and Exchange. Cheers Ang -- Angela Williams angierfw at gmail dot com Linux/Networking Hacker Blog http://angierfw.wordpress.com Smile! Jesus Loves You! ------------------------------------------------------------------------------ Keep Your Developer Skills Current with LearnDevNow! The most comprehensive online learning library for Microsoft developers is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3, Metro Style Apps, more. Free future releases when you subscribe now! http://p.sf.net/sfu/learndevnow-d2d