From mboxrd@z Thu Jan 1 00:00:00 1970 From: Afshin Tajvidi Date: Sat, 02 Jun 2007 10:31:50 +0000 Subject: Re: [LARTC] u32 classifier Message-Id: <1180780310.2387.2.camel@mahler.onetec> List-Id: References: In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable To: lartc@vger.kernel.org Hi Maybe you have to review your IMQ behavior and choose CONFIG_IMQ_BEHAVIOR_AA or CONFIG_IMQ_BEHAVIOR_AB during the kernel compilation (and not CONFIG_IMQ_BEHAVIOR_BA or CONFIG_IMQ_BEHAVIOR_BB) Regards Afshin On Sat, 2007-06-02 at 06:19 -0300, terraja-based wrote: > Hi folks...!!! > =20 > =20 > I=B4ve a problem that i did not solve it. > i want to limit the DOWNLOAD to my hosts (upstream traffic for the > firewall) using IMQ,=20 > =20 > If i classify by PORT (source or destination) all seems to be fine, > but...BUT...if i want to restrict by IP addresss (internal IP address) > i can=B4t do it, because my hosts go to Internet toward the firewall > using NAT, so after NAT my IP address in Internet is not my internal > address, because the NAT acction change my source and internal IP > address. > =20 > So...so...so...how can i limit the traffic by IP address using TC, > IMQ, U32..etc...????? > =20 > Can i modify some field in the TCP header with u32 filter?, i did read > the TCP RFC and nothing, i can=B4t guess how can solve it... > Please, HELPPPPPPP ME...!!! >=20 >=20 > --=20 > terraja-based=20 > _______________________________________________ > LARTC mailing list > LARTC@mailman.ds9a.nl > http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc --=20 Afshin Tajvidi IT Technical Architect _______________________________________________ LARTC mailing list LARTC@mailman.ds9a.nl http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc