[LARTC] Re: wondershaper and dmzs

2007-03-30 Thread Bruno Wolff III
On Fri, Mar 30, 2007 at 10:10:57 -0400,
  seph <[EMAIL PROTECTED]> wrote:
> Bruno Wolff III <[EMAIL PROTECTED]> writes:
> 
> >> Can I do this with tc, or is the entire interface shaped? It seems
> >> like I might be able to create a more explicate filter, but I'm having
> >> trouble getting it to work.
> >
> > You can filter on the destination ip address.
> 
> Yes, I'd found that. And I can successfully right filters that match
> my dmz, and send things into the bulk bucket (1:30 in wondershaper),
> but I can't figure out how to not get them limited.

That doesn't sound right. I haven't looked at the commands generated
by word shaper, but it seems like you should have a new bucket for
your unlimited traffic. 'bulk' suggests a bucket that has low priority,
not no limit.

You might have to filter the traffic a level higher. If the qdisc you are
filtering already has some total limit, making a new class below it, won't
escape that.

> I think I need to use a filter to send them to the root, or to a
> non-existent class. But I tried both of those, and neither seemed to
> work.

I don't believe you can do that.
___
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc


Re: [LARTC] wondershaper and dmzs

2007-03-29 Thread Bruno Wolff III
On Thu, Mar 29, 2007 at 12:16:20 -0400,
  seph <[EMAIL PROTECTED]> wrote:
> 
> Can I do this with tc, or is the entire interface shaped? It seems
> like I might be able to create a more explicate filter, but I'm having
> trouble getting it to work.

You can filter on the destination ip address.
___
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc


Re: [LARTC] ip route config question, forcing src address

2007-03-07 Thread Bruno Wolff III
On Tue, Mar 06, 2007 at 16:32:50 -0600,
  Kumar Gala <[EMAIL PROTECTED]> wrote:
> 
> What I'd like is to have it so that the src address is always 172.17.31.84
> for both 172.17.31.0/24 & 128.0.0.0/16.

ip addr add dev eth0 172.17.31.84/24
ip addr add dev eth0 172.17.31.84 peer 128.0.0.0/16
___
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc


[LARTC] lartc doc and Jamal's iproute2 notes

2007-01-29 Thread Bruno Wolff III
There are some notes written by Jamal that come with the iproute2 source
that describe some very significant features that are not even hinted at
in the lartc document.

They aren't real easy to run across if you don't know they exist and even
when I did first see them, I wasn't sure if they represented the current
state of things. I also ran across IMQ and it took me a while to realize that
was a dead end.

It would be nice if at least the part on ingress filtering references them.
The pipe action and ifb devices provide a way to overcome a lot of the
ingress filtering limitations mentioned in the lartc document.

The random action and packet mirroring action are probably of interest to
people as well.

It would have saved me a fair amount of time if these had been included as
part of the lartc document.
___
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc


Re: [LARTC] LARTC Wiki

2007-01-23 Thread Tiago Bruno Espírito Santo Silva
I think that wiki is not the same thing, and...after all...is not the 
LARTC official wiki...
Isn't the LARTC mailing list more popular? I think it is...and a wiki is 
the way to go...imho



Alex Samad wrote:

On Tue, Jan 23, 2007 at 03:53:23PM +, Andrew Beverley wrote:
  

I'm not aware of one, and I think it's an excellent idea.

There's some great software available for LARTC, and some of the
documentation is very good, but unfortunately it's all a bit disparate.
A wiki would be a great start.

I'd be happy to host one and transfer stuff into it unless someone else
has a better idea/offer?

Andy Beverley



Last time there was talk of a wiki this address was given


http://linux-net.osdl.org/index.php/Main_Page   



This link below gives the details on how to setup a multi link connection
http://lartc.org/howto/lartc.rpdb.multiple-links.html   
 

Alex   

  

On Tue, 2007-01-23 at 12:46 -0300, Marco Aurelio wrote:


Hi all,

Since the mail list receives a lot of repeated subjects (for example:
"i have two adsl lines..."), maybe these specific issues should be
treated on the LARTC Guide, or maybe if we had an wiki?

Is there a LARTC Wiki?

If not, what do you think about creating one?

Thanks

--
Marco 
___

LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc
  

___
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc





___
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc



___
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc


Re: [LARTC] heavy VBR traffic with HTB

2005-10-02 Thread Tiago Bruno Espírito Santo Silva


Ed W wrote:

> Andy Furniss wrote:
>
>> Tiago Bruno Espírito Santo Silva wrote:
>>
>>> Hello!
>>>
>>> I made a simple configuration with HTB, 10% http and 90% Video, where
>>> http can share the available bandwidth left from video.
>>>
>>> But :(... i think HTB it's not very fast and it can't adapt quickly to
>>> the great variation of the MPEG 4 VBR (700M film), and some times it
>>> jerks a bit in great variations of bandwidth. I'm making a download to
>>> have always 100% bandwidth utilization (or near). This setup is running
>>> on a controlled home lan.
>>>
>>> Have any one tried something like that? am i missing some thing?
>>>
>>> Please some one tell me something.
>>
>>
>>
>> You rates/ceils are probably too high you need to allow for overheads
>> - seeing your script would help.
>
>
>
> Actually he said he ws *downloading*, and so he probably doesn't have
> control over the incoming stream.
>
> Remember that you can only really control outgoing rates properly -
> incoming streams you control indirectly and all you can do is ignore
> the sender for a while and hope he stops sending you stuff so
> quickly... So this is probably your problem - HTB reacts instantly,
> but the sender keeps sending stuff for perhaps several seconds until
> you stop answering him and then backs off - there is a reaction lag
> and there is not much you can do about it really.
>
> Ed W


Thanks for the responses!

Well i'm out this days but i'll try to test again when i go back home,
I'll send the scripts later this week.

I have 3 PCs, something like this:

A<===>R<===>B

Where R is the router with 2 ethernet cards...so i have in A a http
server (tcp) and VLC streaming (udp) to B, i think i can control the
outgoing traffic from A to B in the "R"outer.

You are saying to me that with this configuration if the rates/ceils are
well chosen, the video streaming must work with no jerks even if the
bandwidth is at 100% (or near).


Thanks for your help
Tiago



___
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc


[LARTC] heavy VBR traffic with HTB

2005-10-01 Thread Tiago Bruno Espírito Santo Silva
Hello!

I made a simple configuration with HTB, 10% http and 90% Video, where
http can share the available bandwidth left from video.

But :(... i think HTB it's not very fast and it can't adapt quickly to
the great variation of the MPEG 4 VBR (700M film), and some times it
jerks a bit in great variations of bandwidth. I'm making a download to
have always 100% bandwidth utilization (or near). This setup is running
on a controlled home lan.

Have any one tried something like that? am i missing some thing?

Please some one tell me something.

thanks
Tiago

PS: sorry my English :(

___
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc


[LARTC] Need advices setting up a Proxy arp and DHCRelay router

2004-11-26 Thread Tiago Bruno Espírito Santo Silva
Hello Every One!
I need some advices with a problem i have.
   I'm working in a room from a department where the connection to the 
Internet is given by a NAT router and the IPs are given by a DHCP server.
There are no firewall in the department so i'm trying to make a Firewall 
and a traffic shaper for all the PCs in my room.
Because i don't have access to the DHCP server from my department and i 
can not use a NAT in my room because all the IPs have to be public in 
all the department, i have thought in use a Proxy ARP router with a 
DHCRelay...BUT there are problems like i can´t predict what are the IPs 
given by the DHCP server and i can not make routes in the router to say 
that the IPs X, Y and Z are behind the router.

So..It is possible to have a proxy arp router with a dhcrelay without 
knowing what are the IPs given to my firewalled computers?

The information i need i can see it when i make execute "arp -a" it 
lists the MACs IPs and the device where they are. I add the routes by 
hand, but How can i use it to update automatically the route table?

Other problem, the DHCRelay works fine and it forwards all the DHCP 
requests/replays BUT i don't know why the winXP clients DENIES the 
replays and don't accept the IPs given. With the Linux BOXs there are no 
problem. I saw it with ethereal.

Thanks in advance.
Tiago
 

___
LARTC mailing list / [EMAIL PROTECTED]
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/


Re: [LARTC] shaping without delay

2004-10-31 Thread Tiago Bruno Espírito Santo Silva
Minimize having a good CPU...every thing that travels lost some 
time...even in the wire or in the air :) or in the vacum the 
comunications with the MARS have biig delays :)
Stef Coene wrote:

On Saturday 30 October 2004 23:13, Avidianto Widodo wrote:
 

Hi,
How can I configure shaping bandwidth on htb/cbq without delay or latency?
Please give some example.
   

You can not shape without delay or latency.  You can only try to minimize the 
delay or latency for certain connections.

Stef
 


___
LARTC mailing list / [EMAIL PROTECTED]
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/


[LARTC] CBQ's weird behavior

2002-06-09 Thread Bruno

Hi there, 

I'm using Linux (Debian), kernel version 2.4.17 on Pentium III
based PC and have a NIC 3com EtherLink 10/100 PCI (3c905b) on eth0
interface.
I've done some tests on CBQ. The class hierarchy was pretty simple
- I've created only one class (100kbit/s) except root class and it was
"bounded isolated". (Commands are shown at the end of this message.) I'
ve used an UDP traffic generator, which has been generating (in this
example) UDP packets with interpacket time of 20 miliseconds and sending
them from  "host A" to "host B". 
For all tests I did the number of generated packets was 5000. For 
different packet sizes I got these results:

p_size (bytes)  10   50   100  200  300   400   
g (kbit/s)  20,8 36,8 56,8 96,8 136,8 176,8 
m (kbit/s)  20,7997  36,7995  56,7993  96,7987  105,2356  104,0127  
num_of_rec_p5000 5000 5000 5000 3947  3043  


p_size (bytes)  500   800   1000
g (kbit/s)  216,8 336,8 416,8
m (kbit/s)  105,7655  103,6437  102,9431
num_of_rec_p5000  5000  5000



p_size ... generated packet size

g ... bit-rate at which packets are sent to the interface ("host A"),
calculated from the following formula:
 g=p_size+UDP header (bit)/generated_interpacket_time (s)
(generated_interpacket_time in shown example was 20 ms)

m ... packets are received at this rate ("host B"), calculated from the
following formula:
 m=p_size+UDP header (bit)/measured_interpacket_time (s)
(measured_interpacket_time is average value of all received packets'
interpacket time)

num_of_rec_p ... number of received packets (on "host B") 



-> My first problem is that I can't figure out why (for the packet size
greater than a 400 bytes) the packets that should be dropped go overlimit
and don't get dropped by qdisc or class?
For the packets smaller (or equal) than a 400 bytes this works normal.
-> The second one is: Why the class isn't limited exactly as I defined
(100 kbit/s)?



Hardware configuration was as follows:

["host A" eth0]--[ switch ]-[eth0 "host B"]
192.168.19.203  192.168.19.204



CBQ definition in my example was: (the commands were started on "host A")


tc qdisc add dev eth0 root handle 1: cbq bandwidth 100Mbit avpkt 1000

tc class add dev eth0 parent 1:0 classid 1:10 cbq bandwidth 100Mbit rate 
100kbit allot 1514 avpkt 1000 prio 5 bounded isolated

tc filter add dev eth0 parent 1: protocol ip prio 5 u32 match ip src 
192.168.19.203/24 classid 1:10



Have I done anything wrong? Anyone has an idea? Please HELP ME.
I will be really greatful if anyone can solve this.

Thank You in advance!

Bruno

-
Bruno Jurcic,

Faculty of Electrical Engineering and Computing, University of Zagreb
Department of Telecommunications

e-mail:[EMAIL PROTECTED] ([EMAIL PROTECTED])

___
LARTC mailing list / [EMAIL PROTECTED]
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/