In manlge we have several options to filter traffic.
Example:
;;; http (browsing) conn. mrk
chain=prerouting action=mark-connection new-connection-mark=normal-traffic passthrough=yes protocol=tcp dst-port=80
;;; All normal` marked con. traffic get packet mark "MED"
chain=prerouting action=mark-packet new-packet-mark=MED passthrough=no connection-mark=normal-traffic
As we see I only use one connection marker.
But I see some examples and in router exists "connection state" as well. How, and when to use these?
Should I mark a connection first with "Connection state=new" and then have a second filter just looking to existing connections with "Connection state=established"?
Any advices on this with explanation why please?
[my QoS works fine at this moment I believe but to avoid future problems due growth of traffic flow I want to optimize my QoS as much as possible]