From owner-freebsd-questions@FreeBSD.ORG Sat Feb 14 05:19:26 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id E7F8516A4CE for ; Sat, 14 Feb 2004 05:19:26 -0800 (PST) Received: from nalle.netsonic.fi (netsonic.fi [194.29.192.20]) by mx1.FreeBSD.org (Postfix) with ESMTP id 31ADB43D1D for ; Sat, 14 Feb 2004 05:19:26 -0800 (PST) (envelope-from markus.kovero@grafikansi.fi) Received: from shaggy (wlan-node.muikkuverkko.net [81.17.198.67]) by nalle.netsonic.fi (8.11.6/8.11.6) with ESMTP id i1EDJOw22101 for ; Sat, 14 Feb 2004 15:19:24 +0200 Message-Id: <200402141319.i1EDJOw22101@nalle.netsonic.fi> From: "Markus Kovero" To: Date: Sat, 14 Feb 2004 15:19:28 +0200 MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit X-Mailer: Microsoft Office Outlook, Build 11.0.5510 Thread-Index: AcPy/SxvzFvH2L/tTUG+OhMhuQlDmw== X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165 Subject: ipfw bandwidth limit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 14 Feb 2004 13:19:27 -0000 I've got 172.16.0.0/24 network that is connected to internet via vpn gre tunnel. And now I've had bit hard time doing bandwidth control, maybe I'm missing something. I've set ipfw pipes like this: ipfw add queue 1 gre from any to 172.16.0.0/24 ipfw queue 1 config weight 5 pipe 2 mask dst-ip 0x000000ff ipfw pipe 2 config bw 1500Kbit/s ipfw add queue 2 gre from 172.16.0.0/24 to any ipfw queue 2 config weight 20 pipe 3 mask src-ip 0x000000ff ipfw pipe 3 config bw 256Kbit/s net.inet.ip.fw.one_pass: 0 65100 queue 1 gre from any to 172.16.0.0/24 65200 queue 2 gre from 172.16.0.0/24 to any 00002: 1.500 Mbit/s 0 ms 50 sl. 0 queues (1 buckets) droptail mask: 0x00 0x00000000/0x0000 -> 0x00000000/0x0000 00003: 256.000 Kbit/s 0 ms 50 sl. 0 queues (1 buckets) droptail mask: 0x00 0x00000000/0x0000 -> 0x00000000/0x0000 q00001: weight 5 pipe 2 50 sl. 0 queues (64 buckets) droptail mask: 0x00 0x00000000/0x0000 -> 0x000000ff/0x0000 q00002: weight 20 pipe 3 50 sl. 0 queues (64 buckets) droptail mask: 0x00 0x000000ff/0x0000 -> 0x00000000/0x0000 It seems to have no effect on network. What I'm missing? (replacing gre-protocol with ip doesn't help) Markus Kovero