Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 29 Jan 2003 20:51:51 +0100
From:      Markus Weissmann <markus-weissmann@gmx.de>
To:        freebsd-ipfw@FreeBSD.ORG
Subject:   traffic shaping with ipfw?
Message-ID:  <1C6134BC-33C3-11D7-9067-000393B7748C@gmx.de>

next in thread | raw e-mail | index | archive | help
Hi Folks!

We've got a dsl-connection here with 768/128 KBit up/down.
The Probem is, when for example uploading lots of stuff, the
download goes down badly...
and more problematic: The responsiveness of ssh-connections
or the like go down to point of unuseability.

Solution as far:
create dummy_net pipe with 90% of the upload bandwith and
stuff all traffic going out there; but before, take out
out the packets with small size (those are most propably the
syn/ack and ssh packets?) and let them pass.

tun0 is the external device
---
allow udp from any to any out xmit tun0
allow icmp from any to any out xmit tun0
allow tcp from any to any { iplen 32 or iplen 33 or iplen 34 or iplen 
35 or iplen 36 or iplen 37 or iplen 38 or iplen 39 or ... iplen 62 or 
iplen 63 or iplen 64 } out xmit tun0
queue 1 ip from any to any out xmit tun0
---

any suggestions on this? (the 3rd line doesnt pleasure me too much...)
the responsiveness of ssh-sessions is only slightly improved
(hehe, a "allow tcp from any to any 22 out xmit tun0" wont do the 
trick, cause
if someone does a 'scp' I'm doomed)


thanx in advance,

Markus


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ipfw" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1C6134BC-33C3-11D7-9067-000393B7748C>