Community discussions

MikroTik App
 
jparsons
Frequent Visitor
Frequent Visitor
Topic Author
Posts: 83
Joined: Sat Feb 18, 2006 5:41 pm
Location: Maryville, TN
Contact:

P2P connection Limiting to users TCP and UDP

Mon Mar 20, 2006 4:20 pm

I have read several example here for limiting connections to cusotmers, but cannot get any to work. I am generally against limiting the cusotmer unless i need to, but these P2P clients are nasty, I watched one customer with 500 open connections both UDP and TCP on random ports, and hardly any of them were caught by the p2p-all setting in the queues or filters.
So I would like to set it up so that each customer can have X number of open tcp or udp connections, and see if that works well. and would also like to set it so that P2P clients can only upload at 64kbps and download no more than 256kbps, per customer

Anyone have some good examples I can use?
 
User avatar
sergejs
MikroTik Support
MikroTik Support
Posts: 6695
Joined: Thu Mar 31, 2005 3:33 pm
Location: Riga, Latvia
Contact:

Tue Mar 21, 2006 9:33 am

You may set limit for TCP connections (openened per user),
http://www.mikrotik.com/docs/ros/2.9/ip/filter
You can't set limit UDP connections,

Use mangle, mark p2p packets with one mark and another mark for other traffic, set queues accordingly.
 
jparsons
Frequent Visitor
Frequent Visitor
Topic Author
Posts: 83
Joined: Sat Feb 18, 2006 5:41 pm
Location: Maryville, TN
Contact:

Wed Jul 19, 2006 4:48 am

I have tcp rules that seem to be working good now, however, I was wondering..

Is there a way to limit a certain udp port from being open X number of times.

for example if a client has 500 incoming udp connections on port 32789 is can i limit port 32789 to only 10 somehow? Is there a way to mark and count the connections then limit them that way?

Thanks in advance for any advice anyone has on this...
 
User avatar
janisk
MikroTik Support
MikroTik Support
Posts: 6263
Joined: Tue Feb 14, 2006 9:46 am
Location: Riga, Latvia

Wed Jul 19, 2006 7:03 am

dont forget that there are encrypted p2p traffic, and that type cannot be detected sue to encryption - that way you need un decrypt it to detect weather it is or is not p2p packet.

for example torrent p2p networks now widely use clients that encrypt traffic, but client can choose weather it uses only encrypted, only un-encrypted or as available.

Who is online

Users browsing this forum: Bing [Bot], intania, rmenkveld and 213 guests