Hi all,
I bougth this device to do traffic shapping for about 1000 subscribers and 240 Mbps. At the moment just mangle to analize how to priorize and when I put on mangle rules crashes after 3 days.
I've tried to be as light as posible (no layer7) but still crash. Procesors not mor than 30%. Ports wan and lan configured in bridge. RouterOS 6.13 and mangle like this:
jan/04/1970 12:11:56 by RouterOS 6.13
software id = xxxxxxxxx
/ip firewall mangle
add action=mark-connection chain=prerouting comment="CONEXION ICMP"
connection-mark=no-mark new-connection-mark=ICMP protocol=icmp
add action=mark-packet chain=prerouting comment="|-->ICMP DWUP"
connection-mark=ICMP new-packet-mark=1 packet-mark=no-mark passthrough=no
add action=mark-connection chain=prerouting comment="CONEXION DNS tcp"
connection-mark=no-mark in-bridge-port=ether2_LAN new-connection-mark=DNS
port=53 protocol=tcp
add action=mark-connection chain=prerouting comment="CONEXION DNS udp"
connection-mark=no-mark in-bridge-port=ether2_LAN new-connection-mark=DNS
packet-mark=no-mark port=53 protocol=udp
add action=mark-packet chain=prerouting comment="|-->DNS DWUP"
connection-mark=DNS new-packet-mark=2 packet-mark=no-mark passthrough=no
add action=mark-connection chain=prerouting comment="CONEXION -> MOR SIP"
connection-mark=no-mark dscp=26 dst-address=XXX.XXX.XXX.XXX in-bridge-port=
ether2_LAN new-connection-mark=MOR-SIP packet-mark=no-mark
add action=mark-connection chain=prerouting comment="CONEXION -> MOR RTP"
connection-mark=no-mark dscp=46 dst-address=XXX.XXX.XXX.XXX in-bridge-port=
ether2_LAN new-connection-mark=MOR-RTP packet-mark=no-mark
add action=mark-connection chain=prerouting comment="CONEXION <- MOR SIP"
connection-mark=no-mark dscp=26 in-bridge-port=ether1_WAN
new-connection-mark=MOR-SIP packet-mark=no-mark src-address=XXX.XXX.XXX.XXX
add action=mark-connection chain=prerouting comment="CONEXION <- MOR RTP"
connection-mark=no-mark dscp=46 in-bridge-port=ether1_WAN
new-connection-mark=MOR-RTP packet-mark=no-mark src-address=XXX.XXX.XXX.XXX
add action=mark-packet chain=prerouting comment="|-->VoIP SIP"
connection-mark=MOR-SIP new-packet-mark=1 packet-mark=no-mark
passthrough=no
add action=mark-packet chain=prerouting comment="|-->VoIP RTP"
connection-mark=MOR-RTP new-packet-mark=1 packet-mark=no-mark
passthrough=no
add action=mark-connection chain=prerouting comment="CONEXION TODO"
connection-mark=!TRAFICO_PESADO new-connection-mark=TODO
add action=mark-connection chain=prerouting comment="CONEXION PESADA TCP"
connection-bytes=6000000-0 connection-mark=TODO connection-rate=4M-100M
new-connection-mark=TRAFICO_PESADO protocol=tcp
add action=mark-connection chain=prerouting comment="CONEXION PESADA UDP"
connection-bytes=8000000-0 connection-mark=TODO connection-rate=3M-100M
new-connection-mark=TRAFICO_PESADO protocol=udp
add action=mark-connection chain=prerouting comment="CONEXION >450 TCP"
connection-bytes=450000000-0 connection-mark=TRAFICO_PESADO
new-connection-mark=TRAFICO_600 protocol=tcp
add action=mark-connection chain=prerouting comment="CONEXION >450 UDP"
connection-bytes=450000000-0 connection-mark=TRAFICO_PESADO
new-connection-mark=TRAFICO_600 protocol=udp
add action=mark-packet chain=prerouting comment="|-->TRAFICO PESADO DW"
connection-mark=TRAFICO_PESADO in-bridge-port=ether1_WAN new-packet-mark=
2 passthrough=no
add action=mark-packet chain=prerouting comment="|-->TRAFICO PESADO UP"
connection-mark=TRAFICO_PESADO in-bridge-port=ether2_LAN new-packet-mark=
2 passthrough=no
add action=mark-packet chain=prerouting comment="|-->TRAFICO LIGERO DW"
connection-mark=TODO in-bridge-port=ether1_WAN new-packet-mark=2
passthrough=no
add action=mark-packet chain=prerouting comment="|-->TRAFICO LIGERO UP"
connection-mark=TODO in-bridge-port=ether2_LAN new-packet-mark=2
passthrough=no
add action=mark-packet chain=prerouting comment="|-->TRAFICO 600 DW"
connection-mark=TRAFICO_600 in-bridge-port=ether1_WAN new-packet-mark=3
passthrough=no
add action=mark-packet chain=prerouting comment="|-->TRAFICO 600 UP"
connection-mark=TRAFICO_600 in-bridge-port=ether2_LAN new-packet-mark=3
passthrough=no
maybe not enought hardware? Procesors and memory looks ok... Could I provide more info?