Displaying 20 results from an estimated 200 matches similar to: "connmark on ifb interfaces"
2006 Jan 02
0
tc lockup
A few days ago I had a very big problem with tc. On the machine tc is used in
many ways:
- from crontab to load night-time and day-time bandwidth (at 1am and 8am)
- from crontab to get statistics for qdiscs on WAN interfaces (every minute)
- from perl/php database for changing user bandwidth (sometimes)
What happened:
At 1am the night-time bandwidth should be loaded. tc hanged up, and also
2005 Aug 15
0
imq custom device numbers
I made some changes to IMQ, so it is now possible to have custom numbers for
IMQ devices. Useful when working with VLANs. You can get it at
http://tuxpowered.net/. Readme is on the website.
--
| pozdrawiam / greetings | powered by Trustix, Gentoo and FreeBSD |
| Kajetan Staszkiewicz | JID: vegeta@chrome.pl |
| Vegeta | IMQ devnames: http://tuxpowered.net
2006 Jan 08
2
HTB - not borrowing, not exceeding rate
Hello!
I have a quite complicated setup. In my network on each interface there is
bandwidth limitation for each user. Booth outgoing (on interface itself) and
incoming (attached IMQ) traffic. There is main HTB class which limits
bandwidth for whole interface and HTB subclasses for each user. Filtering is
done with hashing filters. This setup was working correctly.
But now in the network I
2007 May 31
5
IFB & 802.1q
Hello
What I''m looking for is how to configure the Linux QoS module to do
global rate limitation for two (or more) 802.1q pseudo network devices.
I naturally suppose there is a possibility with IFB. I don''t want to use
IMQ because it''s not integrated to my kernel v2.6.21.1 and I didn''t find
IMQ patches for it nor for the iptables package I use (v1.3.7).
2006 Aug 08
4
Info about IFB
Hi, I''m looking for info about IFB devices and how I can use it to
incomming traffic shapping.
Has IFB any web about it?
Do any body known where I can find more info about it?
I found this:
http://linux-net.osdl.org/index.php/IFB
But I can''t stand fine how to use it to allow many ifb''s devices or how
to use it with "tc actions".
Any help?
Thanks
--
2007 Feb 12
0
Little problem with ifb. How to catch server traffic on IFB...
I''ve network with NATed hosts.
I want to catch only all traffic going from my server, but I don''t want
catch NATed traffic from LAN.
I need only traffic going from/to my server (traffic from INPUT, OUTPUT
chain in iptables) (like SSH, postfix, WWW or proxy).
This is throw all traffic from my LAN to IFB:
$TC qdisc add dev $iface_lan handle ffff: ingress
$TC qdisc add dev
2009 May 29
5
CONNMARK target and connmark match support in Ubuntu kernel
Hi,
as per the shorewall MultiISP documentation ( http://www1.shorewall.net/MultiISP.html
), it says
"Use of this feature requires that your kernel and iptables include
CONNMARK target and connmark match support (Warning: Standard Debian™
and Ubuntu™ kernels are lacking that support!)."
it means MultiISP wont work properly if i am using Ubuntu server. if
yes whats the
2007 May 10
0
connmark and masquerading
Hi all, and thx for all previous repplies to my questions!!!
Here is another one bit trouble: is it possible maintain commark
information after that a packet crossed the forwarding chain with
masquerading?
Best wishes,
Diego
--
Diego Giardinetto
Skype Name: cpuzorro
MSN: cpuoverload@hotmail.it
2007 May 10
0
FW: Load balancing using connmark
-----Original Message-----
From: Salim S I [mailto:salim.si@cipherium.com.tw]
Sent: Thursday, May 10, 2007 5:22 PM
To: ''Francis Brosnan Blazquez''
Subject: RE: [LARTC] Load balancing using connmark
"I think the main advantage of shorewall solution is that it applies
connmark to incoming packets from the wan as you point, leaving load
balancing to outgoing connections to the
2006 Sep 20
0
Ipp2p with connmark
Hi,
I want to classify with ipp2p packets that I''ve captured with tcpdump.
I send the packets with tcpreply.
I had to create a bridge interface in order to enable the listening
interface in promiscous mode
and to classify the traffic mirrored to that.
In this mode the traffic pass through the prerouting chain of the mangle
table (on bridge).
I want to used connmark for recognized flows,
2005 Dec 09
0
Use of CONNMARK in Multiple Internet Links
What are the pros and cons of using CONNMARK along with the Multiple ISP
Links and Load Balancing method as suggested in the HOWTO and with
Julian''s patches for Dead Gateway Detection ? I have been observing
excellent results without the CONNMARK rules. How is the performance
affected if CONNMARK is used ?
Thanks,
Manish
2004 Jul 07
1
connmark+connbytes
Hello!
Maybe someone needs connmark and connbytes working together?
See attached file compatible with pom-ng-20040621 (I called it
connmarkbytes :)).
Kind Regards,
Tomasz Chilinski
2003 Jun 16
3
Questions regarding CONNMARK
Hi there, i have some questions regarding CONNMARK and STRING modules for
netfilter.
I have a stateful firewall doing contraking, because i have two dsl
connections doing load balancing. I have found a way to discriminate KaZaA
traffic flowing via port 80 from normal HTTP traffic using the string match.
I want to mark a kazaa connection and filter ir to a specific qdisc.
I have been looking
2008 Apr 11
0
Is iptables -j CONNMARK not available in CentOS4??
Hi,
I'm running CentOS 4 with most of the latest updates, but am having trouble
with iptables and the CONNMARK target. Is it available in the CentOS 4
kernel?
Running on i386:
kernel: 2.6.9-67.0.4.ELsmp
iptables: v1.2.11
# iptables -t mangle -A PREROUTING -j CONNMARK --set-mark 1
iptables: No chain/target/match by that name
I see I do have the CONNMARK lib in
2011 May 16
0
Netfilter connmark module libxt_statistic.so
Hello Everyone, I'm making an load balance ,on output packages IP from
my firewall to Internet, with netfilter connmark and statistic match
modules. it's necessary those two modules togethers to do the load
balance on connection state.
well I'm using CentOS 5.6 and I've searching on Internet but haven't
found any package RPM that.this package come with iptables 1.4.x
version
2014 Aug 07
2
[Bug 968] New: CONNMARK failing open silently?
https://bugzilla.netfilter.org/show_bug.cgi?id=968
Summary: CONNMARK failing open silently?
Product: netfilter/iptables
Version: unspecified
Platform: x86_64
OS/Version: Ubuntu
Status: NEW
Severity: normal
Priority: P5
Component: nf_conntrack
AssignedTo: netfilter-buglog at lists.netfilter.org
2004 Sep 24
2
CONNMARK problem
Hello everybody.
i have the folowing problem:
i have this in the top of PREROUTING chain in mangle table
iptables -t mangle -A PREROUTING -j CONNMARK --set-mark 0 # rule 1
iptables -t mangle -A PREROUTING -m connmark --mark 5 # rule 2
iptables -t mangle -A PREROUTING -m connmark --mark 6 # rule 3
i think when packet is passing trough my POSTROUTING in mangle table
2005 Nov 24
1
ftp connmark
I saw this snippet from
Daniel Chemko dchemko@smgtec.com
Mon, 31 May 2004 09:30:43 -0700
# Egress marking (mostly for QOS operations)
iptables -t mangle -A POSTROUTING -j CONNMARK --restore-mark
iptables -t mangle -A POSTROUTING -m mark ! --mark 0 -j ACCEPT
iptables -t mangle -A POSTROUTING -o ${if_inet} --dport 21 -j MARK
--set-mark 0x111
iptables -t mangle -A POSTROUTING -j CONNMARK
2007 Oct 11
0
SK-9E21D + vlan + ifb
Hello!
Scenario: kernel 2.6.22.9, SysKonnect SK-9E21D, vlan, redirecting for
packets arriving on than vlan to ifb.
Using tcpdump on ifb iinterface I see the following:
03:30:17.322484 5a:71:6f:15:00:17 > 00:00:5a:71:00:00, ethertype Unknown
(0xcb69), length 1522:
0x0000: 2000 0800 4500 05dc 3a2f 4000 3c06 d868 ....E...:/@.<..h
0x0010: c299 9143 c3e6 0ec1 0050 0f2a
2007 Oct 28
0
IFB replacemnt for IMQ
Hello,
I want to use IFB instead of imq, but i don''t know how to redirect traffic
from eth2.101 to ifb0 and traffic from eth1.301 to ifb1 so I can applied
QoS.
With IMQ i use iptables -j IMQ --to-dev 0.
Is it possible to apply tc rules on ifb1 both download/upload ?
thx
_______________________________________________
LARTC mailing list
LARTC@mailman.ds9a.nl