You are on page 1of 4

#reemplazar TODO LO QUE DIGA (REEMPLAZAR) POR SU CONFIRUCAION.

#MODIFICAR LOS MAX LIMIT DE SUBIDA Y DESCARGA

/ip firewall layer7-protocol


add name=facebook regexp="^..+\\.(facebook.com|facebook.net|fbcdn.com|fbsbx.co\
m|fbcdn.net|fb.com|tfbnw.net).*\$"
add name=netflix regexp="^..+\\.(nflxvideo.net).*\\\$"
add name=prime regexp="^..+\\.(akamaihd.net).*\\\$"
add name=whatsapp regexp="^..+.(whatsapp.com|web.whatsapp.com).*\$"
add name=tiktok regexp="^..+.(tiktokcdn.com|tiktokv.com).*\$"

/queue type
add kind=pcq name=DW pcq-classifier=dst-address pcq-total-limit=20000KiB
add kind=pcq name=UP pcq-classifier=src-address pcq-total-limit=20000KiB

/queue tree
add burst-time=2s comment=bajada max-limit=99M name=DOWNLOAD parent=global \
queue=DW
add burst-time=2s comment=subida max-limit=90M name=UPLOAD parent=WAN(REEMPLAZAR) \
priority=1 queue=UP
add name="P1 Down" parent=DOWNLOAD priority=1 queue=DW
add name="P2 Down" parent=DOWNLOAD priority=2 queue=DW
add name="P4 Down" parent=DOWNLOAD priority=4 queue=DW
add name="P5 Down" parent=DOWNLOAD priority=5 queue=DW
add name="P6 Down" parent=DOWNLOAD priority=6 queue=DW
add name="P3 Down" parent=DOWNLOAD priority=3 queue=DW
add name="P7 Down" parent=DOWNLOAD priority=7 queue=DW
add name="P8 Down" parent=DOWNLOAD queue=DW
add name="P1 UP" parent=UPLOAD priority=1 queue=UP
add name="P2 UP" parent=UPLOAD priority=2 queue=UP
add name="P3 UP" parent=UPLOAD priority=3 queue=UP
add name="P4 UP" parent=UPLOAD priority=4 queue=UP
add name="P5 UP" parent=UPLOAD priority=5 queue=UP
add name="P6 UP" parent=UPLOAD priority=6 queue=UP
add name="P7 UP" parent=UPLOAD priority=7 queue=UP
add name="P8 UP" parent=UPLOAD queue=UP
add name="netflix up" packet-mark=netflix.pkt parent="P6 UP" priority=6 \
queue=UP
add burst-time=15s name=wow packet-mark=wow.pkt parent="P1 Down" priority=1 \
queue=DW
add name="Icmp down" packet-mark=icmp.pkt parent="P1 Down" priority=1 queue=\
DW
add burst-time=15s name="dns down" packet-mark=dns.pkt parent="P1 Down" \
priority=1 queue=DW
add name="instagram down" packet-mark=instagram.pkt parent="P6 Down" \
priority=6 queue=DW
add name="facebook down" packet-mark=facebook.pkt parent="P6 Down" priority=6 \
queue=DW
add max-limit=25M name="youtube down" packet-mark=youtube.pkt parent=\
"P4 Down" priority=4 queue=DW
add name="GAMES down" packet-mark=game.pkt parent="P5 Down" priority=5 queue=\
DW
add name="http/s down" packet-mark=https.pkt.dwn parent="P6 Down" priority=2 \
queue=DW
add name="Resto de trafico down" packet-mark=resto.pkt parent="P8 Down" \
queue=DW
add name="Icmp UP" packet-mark=icmp.pkt parent="P1 UP" priority=1 queue=UP
add name="dns UP" packet-mark=dns.pkt parent="P1 UP" priority=1 queue=UP
add name="REDES UP" parent="P8 UP" queue=UP
add name="instagram UP" packet-mark=instagram.pkt parent="P2 UP" priority=2 \
queue=UP
add name="facebook UP" packet-mark=facebook.pkt parent="P2 UP" priority=2 \
queue=UP
add name="GAMES UP" packet-mark=game.pkt parent="P3 UP" priority=3 queue=UP
add name="http/s UP" packet-mark=https.pkt parent="P5 UP" priority=5 queue=UP
add name="Resto de trafico UP" packet-mark=resto.pkt parent="P8 UP" queue=UP
add name="clasesromm down" packet-mark=classroom.pkt parent="P3 Down" \
priority=3 queue=DW
add name="skype down" packet-mark=skype.pkt parent="P2 Down" priority=2 \
queue=DW
add max-limit=30M name="zoom down" packet-mark=zoom.pkt parent="P2 Down" \
priority=2 queue=DW
add name="CLASSES VIRTUALES UP" parent="P2 UP" priority=2 queue=UP
add name="classesroom up" packet-mark=classroom.pkt parent="P1 UP" priority=1 \
queue=UP
add name="skype up" packet-mark=skype.pkt parent="P1 UP" priority=1 queue=UP
add name="zoom up" packet-mark=zoom.pkt parent="P1 UP" priority=1 queue=UP
add max-limit=15M name="netflix down" packet-mark=netflix.pkt parent=\
"P6 Down" priority=6 queue=DW
add name=prime packet-mark=prime.pkt parent="P6 Down" priority=6 queue=DW
add name=tiktok packet-mark=tiktok.pkt parent="P6 Down" priority=6 queue=DW

/ip firewall address-list


add address=192.168.9.0/24(REEMPLAZAR) list=todos
add address=192.168.10.0/24(REEMPLAZAR) list=todos
/ip firewall filter
add action=add-dst-to-address-list address-list=youtube address-list-timeout=\
12h chain=forward comment="Guarda las ip de youtube" content=youtube.com \
src-address-list=todos
add action=add-dst-to-address-list address-list=youtube address-list-timeout=\
12h chain=forward content=googlevideo.com src-address-list=todos
add action=add-dst-to-address-list address-list=youtube address-list-timeout=\
12h chain=forward content=youtu.be src-address-list=todos
add action=add-dst-to-address-list address-list=youtube address-list-timeout=\
12h chain=forward content=akamaihd.net src-address-list=todos
add action=add-dst-to-address-list address-list=instagram \
address-list-timeout=12h chain=forward comment=\
"Guarda la ip de instagram" content=instagram.com src-address-list=todos
add action=add-dst-to-address-list address-list=classesroom \
address-list-timeout=12h chain=forward comment="Marcado classes room" \
content=classroom src-address-list=todos
add action=add-dst-to-address-list address-list=skype address-list-timeout=\
12h chain=forward comment="Marcado skype" content=skype src-address-list=\
todos
add action=add-dst-to-address-list address-list=zoom address-list-timeout=12h \
chain=forward comment="Marcado zoom" content=zoom.us src-address-list=\
todos
add action=add-dst-to-address-list address-list=zoom address-list-timeout=12h \
chain=forward comment="Marcado zoom" dst-port=8801,8802 protocol=tcp \
src-address-list=todos
add action=add-dst-to-address-list address-list=wow address-list-timeout=12h \
chain=forward comment="Marcado wow" dst-address=158.69.122.200 \
src-address-list=todos
add action=add-dst-to-address-list address-list=zoom address-list-timeout=12h \
chain=forward comment="Marcado zoom" dst-port=3478,3479,8801,8802 \
protocol=udp src-address-list=todos
add action=add-dst-to-address-list address-list=tiktok address-list-timeout=\
12h chain=forward comment=tiktok layer7-protocol=tiktok src-address-list=\
todos
/ip firewall mangle
add action=mark-connection chain=prerouting comment="Marcado de ICMP" \
connection-state=new new-connection-mark=icmp.conn passthrough=yes \
protocol=icmp
add action=mark-packet chain=prerouting comment="Marcado de ICMP" \
connection-mark=icmp.conn new-packet-mark=icmp.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Marcado de DNS" \
connection-state=new dst-address=8.8.8.8 dst-port=53 new-connection-mark=\
dns.conn passthrough=yes protocol=udp
add action=mark-connection chain=prerouting comment="Marcado de DNS" \
connection-state=new dst-port=53 new-connection-mark=dns.conn \
passthrough=yes protocol=udp
add action=mark-packet chain=prerouting comment="Marcado de DNS" \
connection-mark=dns.conn new-packet-mark=dns.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Macrado de Facebook" \
connection-state=new layer7-protocol=facebook new-connection-mark=\
facebook.conn passthrough=yes
add action=mark-packet chain=prerouting comment="Macrado de Facebook" \
connection-mark=facebook.conn new-packet-mark=facebook.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Marcado de prime" \
connection-state=new layer7-protocol=prime new-connection-mark=prime.conn \
passthrough=yes
add action=mark-packet chain=prerouting comment="Marcado de prime" \
connection-mark=prime.conn new-packet-mark=prime.pkt passthrough=no
add action=mark-connection chain=forward comment="Marcado de netflix" \
connection-state=new layer7-protocol=netflix new-connection-mark=\
netflix.conn passthrough=yes
add action=mark-packet chain=prerouting comment="Marcado de netflix" \
connection-mark=netflix.conn new-packet-mark=netflix.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Marcado de whatsapp" \
connection-state=new new-connection-mark=wahtsapp.conn passthrough=yes \
port=5222,5223,5228,4244,5242,50318,59234 protocol=tcp
add action=mark-connection chain=prerouting comment="Marcado de whatsapp" \
connection-state=new new-connection-mark=wahtsapp.conn passthrough=yes \
port=3478,54395,59234,50318 protocol=udp
add action=mark-packet chain=prerouting comment="Marcado de whatsapp" \
connection-mark=wahtsapp.conn new-packet-mark=whatsapp.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Marcado de youtube" \
connection-state=new new-connection-mark=youtube.conn passthrough=yes \
src-address-list=youtube
add action=mark-packet chain=prerouting comment="Marcado de youtube" \
connection-mark=youtube.conn new-packet-mark=youtube.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Maracdo Classesroom " \
connection-state=new new-connection-mark=classroom.conn passthrough=yes \
src-address-list=classesroom
add action=mark-packet chain=prerouting comment="Maracdo Classesroom " \
connection-mark=classroom.conn new-packet-mark=classroom.pkt passthrough=\
no
add action=mark-connection chain=prerouting comment="Marcado skype" \
connection-state=new new-connection-mark=skype.conn passthrough=yes \
src-address-list=skype
add action=mark-packet chain=prerouting comment="Marcado skype" \
connection-mark=skype.conn new-packet-mark=skype.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Marcado Zoom" \
connection-state=new new-connection-mark=zoom.conn passthrough=yes \
src-address-list=zoom
add action=mark-packet chain=prerouting comment="Marcado Zoom" \
connection-mark=zoom.conn new-packet-mark=zoom.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Marcado wow" \
connection-state=new new-connection-mark=wow.conn passthrough=yes \
src-address-list=wow
add action=mark-packet chain=prerouting comment="Marcado wow" \
connection-mark=wow.conn new-packet-mark=wow.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Marcado de GAME" \
new-connection-mark=game.conn passthrough=yes port=\
40000,9300,9400,9700,7342,8005-8010,37466,36567,8822 protocol=tcp
add action=mark-connection chain=prerouting comment="Marcado de GAME" \
new-connection-mark=game.conn passthrough=yes port=\
5340-5352,6000-6152,14009-14030,18901-18909 protocol=tcp
add action=mark-connection chain=prerouting comment="Marcado de GAME" \
new-connection-mark=game.conn passthrough=yes port=\
39190,27780,29000,22100,4300,15001,15002,7341 protocol=tcp
add action=mark-connection chain=prerouting comment="Marcado de GAME" \
new-connection-mark=game.conn passthrough=yes port="7500,65010,8700,3013,7\
703,7520,7535,7752,20000-20099,12235,13748,13972,13894,11455" protocol=\
udp
add action=mark-connection chain=prerouting comment="Marcado de GAME" \
new-connection-mark=game.conn passthrough=yes port=\
14009-14030,42051-42052,40000-40050,13000-13080 protocol=udp
add action=mark-connection chain=prerouting comment="Marcado de GAME" \
new-connection-mark=game.conn passthrough=yes port=\
10000-11008,7008,9000-9099,7700,1900,17000,65050 protocol=udp
add action=mark-connection chain=prerouting comment="Marcado de GAME" \
new-connection-mark=game.conn passthrough=yes port=\
88,500,3074,3544,4500,3075,4379-4380,27000-27031,27036,7542,7608 \
protocol=udp
add action=mark-packet chain=prerouting comment="Marcado de GAME" \
connection-mark=game.conn new-packet-mark=game.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Marcado de instagram" \
connection-state=new new-connection-mark=instagram.conn passthrough=yes \
src-address-list=instagram
add action=mark-packet chain=prerouting comment="Marcado de instagram" \
connection-mark=instagram.conn new-packet-mark=instagram.pkt passthrough=\
no
add action=mark-connection chain=prerouting comment="Marcado de tiktok" \
connection-state=new new-connection-mark=tiktok.conn passthrough=yes \
src-address-list=tiktok
add action=mark-packet chain=prerouting comment="Marcado de tiktok" \
connection-mark=tiktok.conn new-packet-mark=tiktok.pkt passthrough=no
add action=mark-connection chain=prerouting comment="Marcado de WWW" \
connection-state=new dst-port=80,8080,443 new-connection-mark=https.conn \
passthrough=yes protocol=tcp
add action=mark-packet chain=prerouting comment="Marcado de WWW" \
connection-mark=https.conn new-packet-mark=https.pkt.dwn passthrough=no
add action=mark-connection chain=prerouting comment=\
"Marcado resto del trafico" connection-state=new new-connection-mark=\
resto.conn passthrough=yes
add action=mark-packet chain=prerouting comment="Marcado resto del trafico" \
connection-mark=resto.conn new-packet-mark=resto.pkt passthrough=no

You might also like