Re: [netfilter][half_OT]Traffic shaping with tc and iptables

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



2011/9/8 Gáspár Lajos <swifty@xxxxxxxxxxx>:


> - If you send an e-mail then you connect from your system (from a random
> port) to a mail server (to 25)...
> Would you try with my proposed settings???

I just tried it, with rare 1Mbit, bandwidth 2 Mbit and iptables with
--dport 25 and, even if the iptables rule is matched (I can see the
packet count measuring the right size of the mail), tc seems to ignore
those packets. I know that my postfix open a connection to another mta
from a pseudo-random port to 25, but with --dport option tc does not
consider these packets. Instead, with --sport option, I don't know
why, something is filtered...

> - If you set your upload limit to 10kbit then you can send 1,25KByte per
> sec. (It is veeerrryy slooow.)

In this moment I set this speed so I can test the server with small
attachments... When the script will be definitively complete,I'll set
the real values..


2011/9/8 Nikolay Kichukov <hijacker@xxxxxxxxx>:

> tc does not require iptables to shape traffic at all. So why bothering?

I want to limit only one port, not the entire interface. I don't want
other ports (such as pop3 or imap) limited
So I used iptables for marking and then tc filter handle fw for filtering..
How should i do?
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux