Community discussions

 
User avatar
raftak
newbie
Topic Author
Posts: 44
Joined: Wed Feb 20, 2008 1:58 pm
Location: ""with the source""

3.14 No mangle postrouting!???

Thu Oct 16, 2008 10:20 am

Hi, I have a problem with the package marked "POSTROUTING" for "queue tree"-download, when trying to mark in 5 routers the traffic does not work, in an x86, yes, why?. I tried with "prerouting, forward, POSTROUTING, but it is still not functioning in the mangle POSTROUTING.
In x86.v.3.14, work fine:
add action=mark-connection chain=prerouting comment="Conexiones HTTP-UP " \

disabled=no dst-port=80 new-connection-mark=http-up passthrough=yes \

protocol=tcp src-address=10.1.3.0/24

add action=mark-packet chain=prerouting comment=HTTP-UP-Packet \

connection-mark=http-up disabled=no new-packet-mark=http-up passthrough=\

no

add action=mark-connection chain=postrouting comment=HTTP-Down disabled=no \

dst-address=10.1.3.0/24 new-connection-mark=http-down passthrough=yes \

protocol=tcp src-port=80

add action=mark-packet chain=postrouting comment=HTTP-Down-packet \

connection-mark=http-down disabled=no new-packet-mark=http-down \

passthrough=no

add action=mark-connection chain=prerouting comment=HTTPS-UP disabled=no \

dst-port=443 new-connection-mark=https-up passthrough=yes protocol=tcp \

src-address=10.1.3.0/24

add action=mark-packet chain=prerouting comment=HTTPS-UP connection-mark=\

https-up disabled=no new-packet-mark=https-up passthrough=no

add action=mark-connection chain=postrouting comment=HTTPS-Down disabled=no \

dst-address=10.1.3.0/24 new-connection-mark=https-down passthrough=yes \

protocol=tcp src-port=443

add action=mark-packet chain=postrouting comment=HTTPS-DOWN connection-mark=\

https-down disabled=no new-packet-mark=https-down passthrough=no

########################################################################
My other routers are= 1-x86, 5-rb-333, all with 3.14 version.
Now I do same config for all routers, (change ip add) and don't work never, sometimes after remove all rules of mangle work postrouting marking all network(chain=postrouting dst-add=10.1.3.0/24 action=mark-packet.....) but mangle services(80,443,1863,etc) is to 0 counters!!!

I need resolve it, QoS is very important in my network i have 500 customer wireless.

I hope any advice.
 
User avatar
raftak
newbie
Topic Author
Posts: 44
Joined: Wed Feb 20, 2008 1:58 pm
Location: ""with the source""

Re: 3.14 No mangle postrouting!???

Fri Oct 17, 2008 9:38 am

Nobody? I will try to better explain the problem if my English is not understood.
I can not mark POSTROUTING in 5 routers, does not work! I therefore can not create queues for "Download" with "queue tree."

Can someone show how you are marking in "POSTROUTING"?

THANK YOU.
 
User avatar
Chupaka
Forum Guru
Forum Guru
Posts: 8318
Joined: Mon Jun 19, 2006 11:15 pm
Location: Minsk, Belarus
Contact:

Re: 3.14 No mangle postrouting!???

Fri Oct 17, 2008 7:00 pm

hmmm... did not read carefully, but...
you cannot have two connection marks on one (although bi-ditectional in its nature) tcp connection. you should mark connection with 'http' mark, and then mark packets of 'http' connection with 'http-up' and 'http-dowm' marks
Russian-speaking forum: https://forum.mikrotik.by/. Welcome!

For every complex problem, there is a solution that is simple, neat, and wrong.

MikroTik. Your life. Your routing.
 
User avatar
raftak
newbie
Topic Author
Posts: 44
Joined: Wed Feb 20, 2008 1:58 pm
Location: ""with the source""

Re: 3.14 No mangle postrouting!???

Sat Oct 18, 2008 7:40 pm

I have already solved the problem. Thank for your help.
Regards,
 
theredia
just joined
Posts: 2
Joined: Wed Oct 22, 2008 6:52 pm

Re: 3.14 No mangle postrouting!???

Wed Oct 22, 2008 6:54 pm

I have already solved the problem. Thank for your help.
Regards,
How did you solve it?

Regards,
Tomás
 
User avatar
raftak
newbie
Topic Author
Posts: 44
Joined: Wed Feb 20, 2008 1:58 pm
Location: ""with the source""

Re: 3.14 No mangle postrouting!???

Mon Nov 10, 2008 3:22 pm

hello I solved with : http://wiki.mikrotik.com/wiki/Mangle%2C ... lmost_done
I did not understand the use of PREROUTING and POSTROUTING.

Regards,
 
titius
Member
Member
Posts: 338
Joined: Mon Oct 17, 2005 11:43 am
Location: Titel Serbia

Re: 3.14 No mangle postrouting!???

Fri Nov 21, 2008 1:42 am

IMHO marking only packets is not the right way.

Correct me if I'm wrong . . .
 
theredia
just joined
Posts: 2
Joined: Wed Oct 22, 2008 6:52 pm

Re: 3.14 No mangle postrouting!???

Fri Nov 21, 2008 3:15 am

IMHO marking only packets is not the right way.

Correct me if I'm wrong . . .
Well, I thing you're wrong :-)
In old times, wen connection tracking was only for NAT and ESTABLISHED, RELATED conditions, packet marking was the only way. It's not the wrong way, I'ts just a more processor intensive one :-).

BTW, I couldn't solve it, neither with packet nor connection marking, for a heavily congested 2 Mbit link (more than 1000 simultaneous ESTABLISHED connections, 2k on peeks. Conectiosn keeped starbving with any possible configuration. Support wasn't helpfull at all) My solution was openwrt (works better than RouterOS even without QoS enabled).

Cheers!

Who is online

Users browsing this forum: Google [Bot], MSN [Bot] and 117 guests