1 /* - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - */
2 /* Prometheus QoS - you can "steal fire" from your ISP */
3 /* "fair-per-IP" quality of service (QoS) utility */
4 /* requires Linux 2.4.x or 2.6.x with HTB support */
5 /* Copyright(C) 2005-2020 Michael Polak, Arachne Aerospace */
6 /* iptables-restore support Copyright(C) 2007-2008 ludva */
7 /* Credit: CZFree.Net,Martin Devera,Netdave,Aquarius,Gandalf */
8 /* - - - - - - - - - - - - - - - - - - - - - - - - - - - - - */
10 /* Modified by: xChaos, 20231028
13 Prometheus QoS is free software; you can redistribute it and/or
14 modify it under the terms of the GNU General Public License as
15 published by the Free Software Foundation; either version 2.1 of
16 the License, or (at your option) any later version.
18 Prometheus QoS is distributed in the hope that it will be useful,
19 but WITHOUT ANY WARRANTY; without even the implied warranty of
20 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
21 General Public License for more details.
23 You should have received a copy of the GNU General Public License
24 along with Prometheus Qos; if not, write to the Free Software
25 Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
27 GNU General Public License is located in file COPYING */
29 #include "cll1-0.6.2.h"
32 const char *version
= "1.0.1";
34 /* - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - */
35 /* Versions: 0.9.0 is development release, 1.0 will be "stable" */
36 /* Official Trac URL: https://dev.arachne.cz/svn/prometheus */
37 /* Official SVN URL: https://dev.arachne.cz/repos/prometheus */
38 /* BTC donations account: 19rriLx8vR19wGefPaMhakqnCYNYwjLvxq */
39 /* CZK donations account: 2900242944/2010 (transparent account) */
40 /* Warning: unofficial Github mirror is not supported by author! */
41 /* - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - */
43 const char *stats_html_signature
= "<span class=\"small\">Statistics generated by Prometheus QoS version %s<br />GPL+Copyright(C)2005-2020 Michael Polak, <a target=\"_blank\" href=\"http://www.arachne.cz/\">Arachne Labs</a></span>\n";
48 /* ======= All path names are defined here (for RPM patch) ======= */
50 const char *tc
= "/sbin/tc"; /* requires tc with HTB support */
51 const char *iptables
= "/sbin/iptables"; /* requires iptables utility */
52 const char *ip6tables
= "/sbin/ip6tables"; /* requires iptables utility */
53 const char *iptablessave
= "/sbin/iptables-save"; /* not yet required */
54 const char *iptablesrestore
= "/sbin/iptables-restore"; /* requires iptables-restore */
55 const char *ip6tablessave
= "/sbin/ip6tables-save"; /* not yet required */
56 const char *ip6tablesrestore
= "/sbin/ip6tables-restore"; /* requires iptables-restore */
57 const char *ls
= "/bin/ls"; /* this is not user configurable :-) */
59 char *config
= "/etc/prometheus/prometheus.conf"; /* main configuration file */
60 char *hosts
= "/etc/prometheus/hosts"; /* per-IP bandwidth definition file */
61 char *macrosfile
= "/etc/prometheus/prometheus.macros"; /* rewrite rules for most common tariffs */
62 char *upstreamfile
= "/etc/prometheus/upstream.interfaces"; /* list of interfaces to manage */
63 char *downstreamfile
= "/etc/prometheus/downstream.interfaces"; /* list of interfaces to manage */
64 char *qosfreefile
= "/etc/prometheus/qosfree.interfaces"; /* list of interfaces to manage */
65 char *iptablesfile
= "/var/spool/prometheus.iptables"; /* temporary file for iptables-restore*/
66 char *iptablesdump
= "/var/spool/prometheus.iptables-dump"; /* temporary file for iptables -L -v -x -n -t mangle */
67 char *ip6tablesfile
= "/var/spool/prometheus.ip6tables"; /* temporary file for ip6tables-restore*/
68 char *credit
= "/var/lib/misc/prometheus.credit"; /* credit log file */
69 char *classmap
= "/var/lib/misc/prometheus.classes"; /* credit log file */
70 char *html
= "/var/www/traffic.html"; /* hall of fame - html version */
71 char *preview
= "/var/www/preview.html"; /* hall of fame preview - html version */
72 char *json_traffic
= "/var/www/logs/traffic.json"; /* hall of fame - json version */
73 char *json_preview
= "/var/www/logs/preview.json"; /* hall of fame preview - json version */
74 char *cmdlog
= "/var/log/prometheuslog"; /* command log filename */
75 char *log_dir
= "/var/www/logs/"; /* log directory pathname, ended with slash */
76 char *log_url
= "/logs/"; /* log directory relative URI prefix (partial URL) */
77 char *html_log_dir
= "/var/www/logs/html/";
79 char *jquery_url
= "http://code.jquery.com/jquery-latest.js";
80 char *lms_url
= "/lms/?m=customerinfo&id=";
81 int use_jquery_popups
= TRUE
;
82 int row_odd_even
= 0; /*<tr class="odd/even"> */
84 /* === Configuraration file values defaults - stored in global variables ==== */
86 int filter_type
= 1; /*1 mark, 2 classify*/
87 char *final_chain
= "DROP"; /* REJECT would be better, but it is impossible in mangle */
89 char *mark_iptables
= "MARK --set-mark ";
90 int dry_run
= FALSE
; /* preview commands - use puts() instead of system() */
91 int skip_stats
= FALSE
; /* skip generating statistics */
92 char *iptablespreamble
= "*mangle\n:PREROUTING ACCEPT [0:0]\n:POSTROUTING ACCEPT [0:0]\n:INPUT ACCEPT [0:0]\n:OUTPUT ACCEPT [0:0]\n:FORWARD ACCEPT [0:0]";
93 char *ip6preamble
= "-A FORWARD -p ipv6-icmp -j ACCEPT\n-A POSTROUTING -p ipv6-icmp -j ACCEPT\n-A FORWARD -s fe80::/10 -j ACCEPT\n-A FORWARD -d ff00::/8 -j ACCEPT\n-A POSTROUTING -s fe80::/10 -j ACCEPT\n-A POSTROUTING -d ff00::/8 -j ACCEPT";
94 FILE *iptables_file
= NULL
;
95 FILE *ip6tables_file
= NULL
;
96 int enable_credit
= TRUE
; /* enable credit file */
97 int use_credit
= FALSE
; /* use credit file (if enabled)*/
98 char *title
= "Hall of Fame - Greatest Suckers"; /* hall of fame title */
99 int hall_of_fame
= TRUE
; /* enable hall of fame */
100 char *medium
= "1000Mbit"; /* 10Mbit/100Mbit ethernet */
101 //obsolete: char *lan = "eth0"; /* LAN interface */
102 //obsolete: char *lan_medium = "1000Mbit"; /* 10Mbit/100Mbit ethernet */
103 char *ip6prefix
= NULL
; /* Prefix for global /48 IPv6 subnet */
104 char *qos_leaf
= "sfq perturb 5"; /* leaf discipline */
105 char *qos_free_zone
= NULL
; /* QoS free zone */
106 char *qos_free_dst_ipset
= NULL
; /* QoS free zone - dst match ipset name, must be prepared outside prometheus */
107 char *qos_free_src_ipset
= NULL
; /* QoS free zone - src match ipset name, must be prepared outside prometheus */
108 /* int qos_proxy = TRUE; include proxy port to QoS */
109 int found_code
= FALSE
; /* show links to users in LMS information system */
110 int include_upload
= TRUE
; /* upload+download=total traffic */
111 /* char *proxy_ip = "192.168.1.1/32"; our IP with proxy port */
112 /* int proxy_port = 3128; proxy port number */
113 //obsolete: long long int line = 1024; /* WAN/ISP download in kbps */
114 //obsolete: long long int up = 1024; /* WAN/ISP upload in kbps */
115 int free_min
= 256; /* minimum guaranted bandwidth for all undefined hosts */
116 int free_max
= 512; /* maximum allowed bandwidth for all undefined hosts */
117 int overlimit_min
= 256; /* minimum guaranted bandwidth for all undefined hosts */
118 int overlimit_max
= 512; /* maximum allowed bandwidth for all undefined hosts */
119 int qos_free_delay
= 0; /* seconds to sleep before applying new QoS rules */
120 int digital_divide
= 2; /* controls digital divide weirdness ratio, 1...3 */
121 int max_nesting
= 5; /* /include/uapi/linux/pkt_sched.h: #define TC_HTB_MAXDEPTH 8 [... - 3 parent classes] */
122 //obsolete: int htb_r2q = 256; /* should work for leaf values 512 kbps to 8 Mbps */
123 int htb_quantum
= 1514; /* MTU + ethernet header */
124 int burst
= 8; /* HTB burst (in kbits) */
126 int burst_group
= 32;
127 int magic_treshold
= 8; /* reduce ceil by X*magic_treshhold kbps (hard shaping) */
128 int keywordcount
= 0;
131 FILE *log_file
= NULL
;
132 char *kwd
= "via-prometheus"; /* /etc/hosts comment, eg. #qos-64-128 */
134 const int highest_priority
= 0; /* highest HTB priority (HTB built-in value is 0) */
135 const int lowest_priority
= 7; /* lowest HTB priority /include/uapi/linux/pkt_sched.h: #define TC_HTB_NUMPRIO 8 */
136 const int idxtable_treshold1
= 24; /* this is no longer configurable */
137 const int idxtable_treshold2
= 12; /* this is no longer configurable */
138 const int idxtable_bitmask1
= 3; /* this is no longer configurable */
139 const int idxtable_bitmask2
= 3; /* this is no longer configurable */
141 struct IP
*ips
= NULL
, *networks
= NULL
, *ip
, *sharedip
;
142 struct Group
*groups
= NULL
, *group
;
143 struct Keyword
*keyword
, *defaultkeyword
=NULL
, *keywords
= NULL
;
144 struct Macro
*macro
, *macros
= NULL
;
145 struct Index
*idxs
= NULL
, *idx
, *metaindex
;
146 struct Interface
*interfaces
= NULL
, *interface
;
147 struct QosFreeInterface
*qosfreeinterfaces
= NULL
, *qosfreeinterface
;
150 #define OVERLIMIT_CLASS 4
153 /* implemented in help.c */
155 void get_traffic_statistics(const char *whichiptables
, int ipv6
);
156 /* implemented in parseiptables.c */
158 void parse_ip_log(int argc
, char **argv
);
159 /* implemented in parselog.c */
161 void parse_hosts(char *hosts
);
162 /* implemented in parsehosts.c */
164 void write_json_traffic(char *json
);
165 /* implemented in json.c */
167 void write_htmlandlogs(char *html
, char *d
, int total
, int just_preview
);
168 /* implemented in htmlandlogs.c */
170 void analyse_topology(char *traceroute
);
171 /* implemented in networks.c */
173 char *parse_datafile_line(char *str
);
174 /* implemented in utils.c */
176 time_t get_mtime(const char *path
);
177 /* implemented in utils.c */
179 const char *tr_odd_even(void)
181 row_odd_even
= 1 - row_odd_even
;
184 return "<tr class=\"even\">\n";
188 return "<tr class=\"odd\">\n";
192 /* ====== iptables indexes are used to reduce complexity to log8(N) ===== */
194 char *index_id(char *ip
, int bitmask
);
195 /* function implemented in ipv4subnets.c */
197 char *subnet_id(char *ip
, int bitmask
);
198 /* function implemented in ipv4subnets.c */
200 char *index6_id(char *ip
, int bitmask
);
201 /* function implemented in ipv6subnets.c */
203 char *subnet6_id(char *ip
, int bitmask
);
204 /* function implemented in ipv6subnets.c */
206 /* ================= Let's parse configuration file here ================ */
208 void reject_config_and_exit(char *filename
)
210 printf("Configuration file %s rejected - abnormal exit.",filename
);
214 void get_config(char *config_filename
)
218 printf("Configured keywords: ");
219 parse(config_filename
)
221 option("keyword",kwd
);
226 create(keyword
,Keyword
);
228 keyword
->asymetry_ratio
= 1; /* ratio for ADSL-like upload */
229 keyword
->asymetry_fixed
= 0; /* fixed treshold for ADSL-like upload */
230 keyword
->data_limit
= 8; /* hard shaping: apply magic_treshold if max*data_limit MB exceeded */
231 keyword
->data_prio
= 4; /* soft shaping (qos): reduce HTB prio if max*data_prio MB exceeded */
232 keyword
->fixed_limit
= 0; /* fixed data limit for setting lower HTB ceil */
233 keyword
->fixed_prio
= 0; /* fixed data limit for setting lower HTB prio */
234 keyword
->reserve_min
= 8; /* bonus for nominal HTB rate bandwidth (in kbps) */
235 keyword
->reserve_max
= 0; /* malus for nominal HTB ceil (in kbps) */
236 keyword
->default_prio
= highest_priority
+1;
237 keyword
->download_aggregation
= keyword
->upload_aggregation
= 0; /* disable by default */
238 keyword
->html_color
= "000000";
239 keyword
->ip_count
= 0;
240 keyword
->leaf_discipline
= "";
241 keyword
->allowed_avgmtu
= 0;
243 push(keyword
, keywords
);
246 defaultkeyword
= keyword
;
254 for_each(keyword
,keywords
)
256 int l
=strlen(keyword
->key
);
258 if(!strncmp(keyword
->key
,_
,l
) && strlen(_
)>l
+2)
260 char *tmptr
=_
; /* <---- l+1 ----> */
261 _
+=l
+1; /* via-prometheus-asymetry-ratio, etc. */
262 foption("asymetry-ratio", keyword
->asymetry_ratio
);
263 ioption("asymetry-treshold", keyword
->asymetry_fixed
);
264 ioption("magic-relative-limit", keyword
->data_limit
);
265 ioption("magic-relative-prio", keyword
->data_prio
);
266 loption("magic-fixed-limit", keyword
->fixed_limit
);
267 loption("magic-fixed-prio", keyword
->fixed_prio
);
268 ioption("htb-default-prio", keyword
->default_prio
);
269 ioption("htb-rate-bonus", keyword
->reserve_min
);
270 ioption("htb-ceil-malus", keyword
->reserve_max
);
271 ioption("download-aggregation", keyword
->download_aggregation
);
272 ioption("upload-aggregation", keyword
->upload_aggregation
);
273 option("leaf-discipline", keyword
->leaf_discipline
);
274 option("html-color", keyword
->html_color
);
275 ioption("allowed-avgmtu" ,keyword
->allowed_avgmtu
);
278 if(keyword
->data_limit
|| keyword
->fixed_limit
||
279 keyword
->data_prio
|| keyword
->fixed_prio
)
288 option("iptables",iptables
);
289 option("iptables-save",iptablessave
);
290 option("iptables-restore",iptablesrestore
);
291 option("ip6tables",ip6tables
);
292 option("ip6tables-save",ip6tablessave
);
293 option("ip6tables-restore",ip6tablesrestore
);
294 option("iptables-in-filename",iptablesfile
);
295 option("iptables-dump-filename",iptablesdump
);
296 option("ip6tables-in-filename",ip6tablesfile
);
297 option("hosts",hosts
);
298 option("downstream-interfaces-list-filename",downstreamfile
);
299 option("upstream-interfaces-list-filename",upstreamfile
);
300 option("qos-free-interfaces-list-filename",qosfreefile
);
301 option("macros-filename",macrosfile
);
302 option("ip6-prefix",ip6prefix
);
303 option("medium",medium
);
304 ioption("hall-of-fame-enable",hall_of_fame
);
305 ioption("digital-divide-weirdness-ratio",digital_divide
);
306 option("hall-of-fame-title",title
);
307 option("hall-of-fame-filename",html
);
308 option("json-filename",json_traffic
);
309 option("hall-of-fame-preview",preview
);
310 option("json-preview",json_preview
);
311 option("log-filename",cmdlog
);
312 option("credit-filename",credit
);
313 option("classmap-filename",classmap
);
314 ioption("credit-enable",enable_credit
);
315 option("log-traffic-directory",log_dir
);
316 option("log-traffic-html-directory",html_log_dir
);
317 option("log-traffic-url-path",log_url
);
318 option("jquery-url",jquery_url
);
319 option("lms-url",lms_url
);
320 ioption("use-jquery-popups",use_jquery_popups
);
321 option("qos-free-zone",qos_free_zone
);
322 option("qos-free-dst-ipset",qos_free_dst_ipset
);
323 option("qos-free-src-ipset",qos_free_src_ipset
);
324 ioption("qos-free-delay",qos_free_delay
);
325 /* ioption("qos-proxy-enable",qos_proxy); */
326 /* option("qos-proxy-ip",proxy_ip);*/
327 option("htb-leaf-discipline",qos_leaf
);
328 /* ioption("qos-proxy-port",proxy_port); */
329 ioption("free-rate",free_min
);
330 ioption("free-ceil",free_max
);
331 ioption("overlimit-rate",overlimit_min
);
332 ioption("overlimit-ceil",overlimit_max
);
333 ioption("htb-burst",burst
);
334 ioption("htb-burst-main",burst_main
);
335 ioption("htb-burst-group",burst_group
);
336 ioption("htb-nesting-limit",max_nesting
);
337 ioption("htb-quantum",htb_quantum
);
338 ioption("magic-include-upload",include_upload
);
339 ioption("magic-treshold",magic_treshold
);
340 option("filter-type", cnf
);
341 /* not yet implemented:
342 ioption("magic-fixed-packets",fixed_packets);
343 ioption("magic-relative-packets",packet_limit);
348 perror(config_filename
);
349 puts("Warning - using built-in defaults instead ...");
351 done
; /* ugly macro end */
354 /* leaf discipline for keywords */
355 for_each(keyword
,keywords
)
357 if(!strcmpi(keyword
->leaf_discipline
, ""))
359 keyword
->leaf_discipline
= qos_leaf
;
363 if(strcmpi(cnf
, "mark"))
367 mark_iptables
= "CLASSIFY --set-class 1:";
373 mark_iptables
= "MARK --set-mark ";
378 /* ========== This function executes, logs or also prints command ========== */
380 void safe_run(char *cmd
)
384 printf("\n=>%s\n",cmd
);
392 fprintf(log_file
,"%s\n",cmd
);
396 void iptables_save_line(char *line
, int ipv6
)
400 fprintf(ip6tables_file
,"%s\n",line
);
404 fprintf(iptables_file
,"%s\n",line
);
412 void run_iptables_restore(void)
415 string(restor
, STRLEN
);
417 /*-----------------------------------------------------------------*/
418 printf("Running %s <%s ...\n", iptablesrestore
, iptablesfile
);
419 /*-----------------------------------------------------------------*/
421 iptables_save_line("COMMIT", IPv4
);
422 fclose(iptables_file
);
429 done
; /* ugly macro end */
432 sprintf(restor
,"%s <%s",iptablesrestore
, iptablesfile
);
437 /*-----------------------------------------------------------------*/
438 printf("Running %s <%s ...\n", ip6tablesrestore
, ip6tablesfile
);
439 /*-----------------------------------------------------------------*/
440 iptables_save_line("COMMIT", IPv6
);
441 fclose(ip6tables_file
);
448 done
; /* ugly macro end */
450 sprintf(restor
,"%s <%s",ip6tablesrestore
, ip6tablesfile
);
458 char *parse_datafile_line(char *str
);
459 time_t get_mtime(const char *path
);
461 /*-----------------------------------------------------------------*/
462 /* Are you looking for int main(int argc, char **argv) ? :-)) */
463 /*-----------------------------------------------------------------*/
467 int i
=0; /* just plain old Fortran style integer :-) */
468 FILE *f
=NULL
; /* everything is just stream of bytes... */
469 char *str
, *ptr
, *d
; /* LET A$=B$ :-) */
470 char *substring
, *limit_pkts
;
473 int just_networks
= FALSE
;
474 int just_flush
= FALSE
; /* deactivates all previous actions */
476 int just_preview
= FALSE
; /* preview - generate just stats */
477 int start_shaping
= FALSE
; /* apply FUP - requires classmap file */
478 int stop_shaping
= FALSE
; /* lift FUP - requires classmap file */
479 int reduce_ceil
= 0; /* allow only rate+(ceil-rate)/2, /4, etc. */
480 int just_logs
= FALSE
; /* just parse logs */
487 Prometheus QoS - \"fair-per-IP\" Quality of Service setup utility.\n\
488 Version %s - Copyright (C)2005-2017 Michael Polak, Arachne Labs\n\
489 iptables-restore & burst tunning & classify modification by Ludva\n\
490 Credit: CZFree.Net, Martin Devera, Netdave, Aquarius, Gandalf\n\n",version
);
492 /*----- Boring... we have to check command line options first: ----*/
495 argument("-c") { nextargument(config
); }
496 argument("-h") { nextargument(althosts
);}
497 argument("-d") { run
=TRUE
; dry_run
=TRUE
; }
498 argument("-f") { run
=TRUE
; just_flush
=TRUE
; }
499 argument("-9") { run
=TRUE
; just_flush
=9; }
500 argument("-p") { run
=TRUE
; just_preview
=TRUE
; }
501 argument("-q") { run
=TRUE
; just_preview
=TRUE
; stop_shaping
=TRUE
; }
502 argument("-2") { run
=TRUE
; just_preview
=TRUE
; reduce_ceil
=2; }
503 argument("-4") { run
=TRUE
; just_preview
=TRUE
; reduce_ceil
=4; }
504 argument("-s") { run
=TRUE
; just_preview
=TRUE
; start_shaping
=TRUE
; }
505 argument("-r") { run
=TRUE
; }
506 argument("-n") { run
=TRUE
; nodelay
=TRUE
; }
507 argument("-b") { run
=TRUE
; nodelay
=TRUE
; skip_stats
=TRUE
; }
508 argument("-a") { run
=TRUE
; just_networks
=TRUE
; }
509 argument("-l") { just_logs
=TRUE
; }
510 argument("-m") { just_logs
=TRUE
; }
511 argument("-y") { just_logs
=TRUE
; }
512 argument("-?") { help(); exit(0); }
513 argument("--help") { help(); exit(0); }
514 argument("-v") { exit(0); }
515 argument("--version") { exit(0); }
520 puts("*** THIS IS JUST DRY RUN ! ***\n");
523 date(d
); /* this is typical cll1.h macro - prints current date */
525 /*-----------------------------------------------------------------*/
526 printf("Parsing configuration file %s ...\n", config
);
527 /*-----------------------------------------------------------------*/
529 /*-----------------------------------------------------------------*/
530 printf("Parsing upstream interfaces list %s ...\n", upstreamfile
);
531 /*-----------------------------------------------------------------*/
534 ptr
= parse_datafile_line(_
);
537 create(interface
, Interface
);
539 interface
->speed
= (long long)atol(ptr
);
540 /* is supplied value meaningful ?*/
541 if(interface
->speed
<= 0)
543 printf("Illegal value of %s interface bandwidth.\n", interface
->name
);
544 reject_config_and_exit(upstreamfile
);
546 interface
->is_upstream
= TRUE
;
547 interface
->chain
= "FORWARD";
548 interface
->idxprefix
= "forw";
549 push(interface
, interfaces
);
550 printf("Upstream interface %s: medium %s capacity %Ld kbps\n", interface
->name
, medium
, interface
->speed
);
553 done
; /* ugly macro end */
555 /*-----------------------------------------------------------------*/
556 printf("Parsing downstream interfaces list %s ...\n", downstreamfile
);
557 /*-----------------------------------------------------------------*/
558 parse(downstreamfile
)
560 ptr
= parse_datafile_line(_
);
563 create(interface
, Interface
);
565 interface
->speed
= (long long)atol(ptr
);
566 /* is supplied value meaningful ?*/
567 if(interface
->speed
<= 0)
569 printf("Illegal value of %s interface bandwidth.\n", interface
->name
);
570 reject_config_and_exit(downstreamfile
);
572 interface
->is_upstream
= FALSE
;
573 interface
->chain
= "POSTROUTING";
574 interface
->idxprefix
= "post";
575 push(interface
, interfaces
);
576 printf("Downstream interface %s: medium %s capacity %Ld kbps\n", interface
->name
, medium
, interface
->speed
);
579 done
; /* ugly macro end */
583 parse_ip_log(argc
,argv
);
597 if(just_flush
<9 && !skip_stats
)
599 /*-----------------------------------------------------------------*/
600 puts("Parsing iptables verbose output ...");
601 /*-----------------------------------------------------------------*/
602 get_traffic_statistics(iptables
, FALSE
);
605 /*-----------------------------------------------------------------*/
606 puts("Parsing ip6tables verbose output ...");
607 /*-----------------------------------------------------------------*/
608 get_traffic_statistics(ip6tables
, TRUE
);
612 /*-----------------------------------------------------------------*/
613 /* cll1.h - let's allocate brand new character buffer... */
614 /*-----------------------------------------------------------------*/
616 string(limit_pkts
, STRLEN
);
618 /*-----------------------------------------------------------------*/
619 printf("Parsing qos free interfaces file %s ...\n", qosfreefile
);
620 /*-----------------------------------------------------------------*/
621 load(qosfreeinterface
, qosfreeinterfaces
,
622 qosfreefile
, QosFreeInterface
, name
);
624 /*-----------------------------------------------------------------*/
625 printf("Parsing macro definition file %s ...\n", macrosfile
);
626 /*-----------------------------------------------------------------*/
629 ptr
= parse_datafile_line(_
);
632 create(macro
, Macro
);
633 macro
->rewrite_from
= _
;
634 macro
->rewrite_to
= ptr
;
636 printf("%s -> %s\n", macro
->rewrite_from
, macro
->rewrite_to
);
639 done
; /* ugly macro end */
643 /*-----------------------------------------------------------------*/
644 printf("Parsing class defintion file %s ...\n", hosts
);
645 /*-----------------------------------------------------------------*/
648 #ifdef MONITORINGTRHU_CTU
649 //special hack only to generate certain required CSV statistics for www.ctu.cz (regulation body)
650 //not required for everyday use, requires special syntax sugar in hosts file, see parsehosts.c
651 for_each(technology
, technologies
)
655 string(filename
, strlen(log_dir
) + strlen(technology
->filename
) + 5);
656 strcpy(filename
, log_dir
);
657 strcat(filename
, technology
->filename
);
658 strcat(filename
, ".csv");
659 /*-----------------------------------------------------------------*/
660 printf("Writing report file %s ...\n", filename
);
661 /*-----------------------------------------------------------------*/
662 f
= fopen(filename
, "w");
665 for_each(ip
, ips
) if(eq(technology
->filename
, ip
->technology_str
))
667 fprintf(f
,"%s,%s,%d\n", ip
->code
, ip
->ruian_id_str
, ip
->max
);
676 /*-----------------------------------------------------------------*/
677 puts("Resolving shared connections ...");
678 /*-----------------------------------------------------------------*/
679 for_each(ip
, ips
) if(ip
->sharing
)
681 for_each(sharedip
, ips
) if(eq(sharedip
->name
, ip
->sharing
))
683 sharedip
->traffic
+= ip
->traffic
;
684 sharedip
->traffic_down
+= ip
->direct
;
685 sharedip
->traffic_up
+= ip
->upload
;
687 ip
->mark
= sharedip
->mark
;
688 ip
->code
= sharedip
->code
;
689 ip
->pps_limit
= sharedip
->pps_limit
; /* no other way to do this */
691 /* Ugly hack: append IPv4 addresses of sharedip to IPv6 uplinks */
692 ptr
= strchr(ip
->addr
, '+');
693 if(ptr
&& ptr
-ip
->addr
> 1 && !sharedip
->v6
)
696 concatenate(ip
->addr
, sharedip
->addr
, ptr
);
697 ip
->name
= ip
->addr
= ptr
;
698 ptr
= strchr(ip
->addr
, '.');
702 ptr
= strchr(ptr
, '.');
711 printf("Unresolved shared connection: %s %s sharing-%s\n",
712 ip
->addr
, ip
->name
, ip
->sharing
);
716 if(enable_credit
&& just_flush
<9)
718 /*-----------------------------------------------------------------*/
719 printf("Parsing credit file %s ...\n", credit
);
720 /*-----------------------------------------------------------------*/
723 ptr
= parse_datafile_line(_
);
726 if_exists(ip
,ips
,eq(ip
->addr
,_
))
728 sscanf(ptr
,"%Lu",&(ip
->credit
));
732 done
; /* ugly macro end */
738 /*-----------------------------------------------------------------*/
739 puts("Initializing iptables and tc classes ...");
740 /*-----------------------------------------------------------------*/
742 iptables_file
= fopen(iptablesfile
, "w");
743 if(iptables_file
== NULL
)
745 perror(iptablesfile
);
748 iptables_save_line(iptablespreamble
, IPv4
);
752 ip6tables_file
= fopen(ip6tablesfile
, "w");
753 if(ip6tables_file
== NULL
)
755 perror(ip6tablesfile
);
758 iptables_save_line(iptablespreamble
, IPv6
);
759 iptables_save_line(ip6preamble
, IPv6
);
762 run_iptables_restore();
764 log_file
= fopen(cmdlog
, "w");
771 for_each(interface
, interfaces
)
773 sprintf(str
,"%s qdisc del dev %s root 2>/dev/null", tc
, interface
->name
);
777 iptables_file
=fopen(iptablesfile
,"w");
778 iptables_save_line(iptablespreamble
, IPv4
);
781 ip6tables_file
=fopen(ip6tablesfile
,"w");
782 iptables_save_line(iptablespreamble
, IPv6
);
783 iptables_save_line(ip6preamble
, IPv6
);
786 /* this doesn't seem to be way to go... about 2/3 of all packets have ACK flag set
787 maybe with --length 40:100 it would make some sense, but not enought
788 for_each(interface, interfaces)
790 sprintf(str,"-A %s -m tcp -p tcp --tcp-flags ACK ACK -o %s -j ACCEPT", interface->chain, interface->name);
791 iptables_save_line(str, IPv4);
795 if(qos_free_zone
&& *qos_free_zone
!= '0') /* this is currently supported only for IPv4 */
797 for_each(interface
, interfaces
)
799 sprintf(str
,"-A %s -%c %s -o %s -j ACCEPT", interface
->chain
, (interface
->is_upstream
?'d':'s'), qos_free_zone
, interface
->name
);
800 iptables_save_line(str
, IPv4
);
804 if(qos_free_dst_ipset
&& *qos_free_dst_ipset
!= '0') /* this is currently supported only for IPv4 */
806 for_each(interface
, interfaces
)
808 sprintf(str
,"-A %s -m set --match-set %s %s -o %s -j ACCEPT", interface
->chain
, qos_free_dst_ipset
, (interface
->is_upstream
?"dst":"src"), interface
->name
);
809 iptables_save_line(str
, IPv4
);
813 if(qos_free_src_ipset
&& *qos_free_src_ipset
!= '0') /* this is currently supported only for IPv4 */
815 for_each(interface
, interfaces
)
817 sprintf(str
,"-A %s -m set --match-set %s %s -o %s -j ACCEPT", interface
->chain
, qos_free_src_ipset
, (interface
->is_upstream
?"src":"dst"), interface
->name
);
818 iptables_save_line(str
, IPv4
);
822 for_each(qosfreeinterface
, qosfreeinterfaces
)
824 sprintf(str
,"-A FORWARD -i %s -j ACCEPT", qosfreeinterface
->name
);
825 iptables_save_line(str
, IPv4
);
826 iptables_save_line(str
, IPv6
);
827 sprintf(str
,"-A POSTROUTING -o %s -j ACCEPT", qosfreeinterface
->name
);
828 iptables_save_line(str
, IPv4
);
829 iptables_save_line(str
, IPv6
);
832 if(ip_count
> idxtable_treshold1
&& !just_flush
)
834 int idxcount
=0, bitmask
=32-idxtable_bitmask1
;
836 /*-----------------------------------------------------------------*/
837 printf("Detected %d addresses - indexing iptables rules to improve performance...\n",ip_count
);
838 /*-----------------------------------------------------------------*/
840 iptables_save_line(":post_common - [0:0]", IPv4
);
841 iptables_save_line(":forw_common - [0:0]", IPv4
);
844 iptables_save_line(":post_common - [0:0]", IPv6
);
845 iptables_save_line(":forw_common - [0:0]", IPv6
);
848 for_each(ip
,ips
) if(ip
->addr
&& *(ip
->addr
) && !eq(ip
->addr
,"0.0.0.0/0"))
852 buf
=index6_id(ip
->addr
,bitmask
+32);
856 buf
=index_id(ip
->addr
, bitmask
);
859 if_exists(idx
,idxs
,eq(idx
->id
,buf
))
866 idx
->addr
= ip
->addr
;
868 idx
->bitmask
= bitmask
+32*ip
->v6
;
877 /* brutal perfomance optimalization */
878 while(idxcount
> idxtable_treshold2
&& bitmask
> 2*idxtable_bitmask2
)
880 bitmask
-= idxtable_bitmask2
;
883 for_each(idx
,idxs
) if(idx
->parent
== NULL
)
887 buf
= index6_id(idx
->addr
, bitmask
+32);
891 buf
= index_id(idx
->addr
, bitmask
);
893 if_exists(metaindex
,idxs
,eq(metaindex
->id
,buf
))
895 metaindex
->children
++;
899 create(metaindex
,Index
);
900 metaindex
->addr
= idx
->addr
;
902 metaindex
->bitmask
= bitmask
+32*idx
->ipv6
;
903 metaindex
->parent
= NULL
;
904 metaindex
->children
= 0;
905 metaindex
->ipv6
= idx
->ipv6
;
907 push(metaindex
,idxs
);
909 idx
->parent
=metaindex
;
913 /* this should slightly optimize throughput ... */
914 sort(idx
,idxs
,desc_order_by
,children
);
915 sort(idx
,idxs
,order_by
,bitmask
);
922 subnet
=subnet6_id(idx
->addr
, idx
->bitmask
);
926 subnet
=subnet_id(idx
->addr
, idx
->bitmask
);
928 printf("%d: %s/%d\n", ++i
, subnet
, idx
->bitmask
);
930 sprintf(str
,":post_%s - [0:0]", idx
->id
);
931 iptables_save_line(str
, idx
->ipv6
);
933 sprintf(str
,":forw_%s - [0:0]", idx
->id
);
934 iptables_save_line(str
, idx
->ipv6
);
936 for_each(interface
, interfaces
)
940 string(buf
, strlen(idx
->parent
->id
)+6);
941 sprintf(buf
, "%s_%s", interface
->idxprefix
, idx
->parent
->id
);
945 buf
= interface
->chain
;
948 sprintf(str
, "-A %s -%c %s/%d -o %s -j %s_%s",
949 buf
, (interface
->is_upstream
?'s':'d'), subnet
, idx
->bitmask
, interface
->name
, interface
->idxprefix
, idx
->id
);
950 iptables_save_line(str
, idx
->ipv6
);
952 sprintf(str
, "-A %s -%c %s/%d -o %s -j %s_common",
953 buf
, (interface
->is_upstream
?'s':'d'), subnet
, idx
->bitmask
, interface
->name
, interface
->idxprefix
);
954 iptables_save_line(str
, idx
->ipv6
);
957 printf("Total indexed iptables chains created: %d\n", i
);
959 for_each(interface
, interfaces
)
961 sprintf(str
,"-A %s -o %s -j %s_common", interface
->chain
, interface
->name
, interface
->idxprefix
);
962 iptables_save_line(str
, IPv4
);
965 sprintf(str
,"-A %s -o %s -j %s_common", interface
->chain
, interface
->name
, interface
->idxprefix
);
966 iptables_save_line(str
, IPv6
);
974 fclose(iptables_file
);
979 puts("Just flushed iptables and tc classes - now exiting ...");
985 if(!dry_run
&& !nodelay
&& qos_free_delay
)
987 printf("Flushed iptables and tc classes - now sleeping for %d seconds...\n", qos_free_delay
);
988 sleep(qos_free_delay
);
991 for_each(interface
, interfaces
)
993 sprintf(str
, "%s qdisc add dev %s root handle 1: htb default 1",
994 tc
, interface
->name
);
997 sprintf(str
, "%s class add dev %s parent 1: classid 1:2 htb rate %s ceil %s burst %dk prio %d quantum %d",
998 tc
, interface
->name
, medium
, medium
, burst_main
, highest_priority
, htb_quantum
);
1001 sprintf(str
, "%s class add dev %s parent 1:2 classid 1:1 htb rate %Ldkbit ceil %Ldkbit burst %dk prio %d quantum %d",
1002 tc
, interface
->name
, interface
->speed
, interface
->speed
, burst_main
, highest_priority
, htb_quantum
);
1007 /*-----------------------------------------------------------------*/
1008 puts("Locating heavy downloaders and generating root classes ...");
1009 /*-----------------------------------------------------------------*/
1010 sort(ip
,ips
,desc_order_by
,traffic
);
1012 /*-----------------------------------------------------------------*/
1013 for_each(interface
, interfaces
)
1015 long long int rate
= interface
->speed
;
1016 long long int max
= interface
->speed
;
1017 int group_count
= 0;
1018 //obsolete: FILE *credit_file = NULL;
1020 //obsolete: if(!just_preview && !dry_run && enable_credit)
1022 //obsolete: credit_file = fopen(credit,"w");
1025 for_each(group
,groups
)
1029 sprintf(str
, "%s class add dev %s parent 1:%d classid 1:%d htb rate %Ldkbit ceil %Ldkbit burst %dk prio %d quantum %d #down desired %d",
1030 tc
, interface
->name
, parent
, group
->id
, rate
, max
, burst_group
, highest_priority
+1, htb_quantum
, group
->desired
);
1034 if(group_count
++ < max_nesting
)
1039 rate
-= digital_divide
*group
->min
;
1040 if(rate
< group
->min
)
1045 /*shaping of aggresive downloaders, with credit file support */
1049 int group_rate = group->min, priority_sequence = lowest_priority;
1051 for_each(ip, ips) if(ip->min == group->min && ip->max > ip->min)
1053 ip->realquota=ip->credit+(ip->min*ip->keyword->data_limit+(ip->keyword->fixed_limit<<20));
1054 if( ip->keyword->data_limit
1055 and not ip->fixedprio
1056 and ip->traffic > ip->realquota )
1058 if(group_rate < ip->max)
1060 ip->max = group_rate;
1062 group_rate+=magic_treshold;
1063 ip->prio=lowest_priority;
1064 if(ip->prio<highest_priority+2)
1066 ip->prio=highest_priority+2;
1071 if( ip->keyword->data_prio
1073 && ( ip->traffic > ip->credit + (ip->min*ip->keyword->data_prio+(ip->keyword->fixed_prio<<20))) )
1075 ip->prio=priority_sequence--;
1076 if(ip->prio<highest_priority+1)
1078 ip->prio=highest_priority+1;
1084 unsigned long long lcredit=0;
1086 if((ip->min*ip->keyword->data_limit+(ip->keyword->fixed_limit<<20))>ip->traffic)
1088 lcredit=(ip->min*ip->keyword->data_limit+(ip->keyword->fixed_limit<<20))-ip->traffic;
1090 fprintf(credit_file,"%s %Lu\n",ip->addr,lcredit);
1099 fclose(credit_file);
1105 if(start_shaping
|| stop_shaping
|| reduce_ceil
)
1107 time_t how_much_seconds
= time(NULL
) - get_mtime(classmap
); /* sice start of daily aggregation session */
1108 printf("Reading %s (%ld seconds old) and applying Fair Use Policy and Aggregation rules... \n", classmap
, how_much_seconds
);
1117 if_exists(ip
,ips
,eq(ip
->addr
,_
))
1119 int unshape_this_ip
= 0;
1120 long avg_mbps_down
= ip
->traffic_down
* 8 / how_much_seconds
;
1121 long avg_mbps_up
= ip
->traffic_up
* 8 / how_much_seconds
;
1122 int agreg
= 1, print_stats
= 1;
1124 if(ip
->keyword
->download_aggregation
)
1126 int min_mbps
= (ip
->min
/ip
->keyword
->download_aggregation
)>>10;
1132 if(min_mbps
<= avg_mbps_down
)
1134 unshape_this_ip
= 0;
1135 agreg
= (int)((float)(avg_mbps_down
+1)/min_mbps
+.5);
1137 ip
->pps_limit
/= agreg
;
1138 printf("Download aggregation 1:%d for %s (min: %d Mbps avg: %ld Mbps)\n", agreg
, ip
->name
, min_mbps
, avg_mbps_down
);
1142 unshape_this_ip
= 1;
1145 else if(ip
->keyword
->upload_aggregation
)
1147 int min_mbps
= (ip
->min
/ip
->keyword
->upload_aggregation
)>>10;
1153 if(min_mbps
<= avg_mbps_up
)
1155 unshape_this_ip
= 0;
1156 agreg
= (int)((float)(avg_mbps_up
+1)/min_mbps
+.5);
1158 printf("Upload aggregation 1:%d for %s: (min: %d Mbps avg: %ld Mbps)\n", agreg
, ip
->name
, min_mbps
, avg_mbps_up
);
1162 unshape_this_ip
= 1;
1167 unshape_this_ip
= 1;
1169 ip
->aggregated
= agreg
;
1170 ip
->mark
= atoi(ptr
);
1171 if(ip
->max
< ip
->desired
|| unshape_this_ip
|| reduce_ceil
) /* apply or disable FUP limit immediately.... */
1175 ip
->max
= ip
->desired
;
1176 if(stop_shaping
) /* all limits removed, but not printed with -s (start_shaping) switch */
1178 printf("Removing limit for %s (%s) ", ip
->name
, ip
->addr
);
1187 printf("Updating %s (%s) ", ip
->name
, ip
->addr
);
1190 ip
->max
= ip
->min
+ (ip
->desired
-ip
->min
)/reduce_ceil
;
1192 else if(ip
->max
< ip
->min
)
1197 for_each(interface
, interfaces
)
1199 if(!interface
->is_upstream
)
1203 printf("[down %s: %dk-%dk wants %d]", interface
->name
, ip
->min
, ip
->max
, ip
->desired
);
1205 sprintf(str
, "%s class change dev %s parent 1:%d classid 1:%d htb rate %dkbit ceil %dkbit burst %dk prio %d quantum %d",
1206 tc
, interface
->name
, ip
->group
, ip
->mark
, ip
->min
, ip
->max
, burst
, ip
->prio
, htb_quantum
);
1213 printf("[up %s: %dk-%dk wants %dk]", interface
->name
, (int)((ip
->min
/ip
->keyword
->asymetry_ratio
)-ip
->keyword
->asymetry_fixed
),
1214 (int)((ip
->desired
/ip
->keyword
->asymetry_ratio
)-ip
->keyword
->asymetry_fixed
),
1215 (int)((ip
->desired
/ip
->keyword
->asymetry_ratio
)-ip
->keyword
->asymetry_fixed
));
1217 sprintf(str
,"%s class change dev %s parent 1:%d classid 1:%d htb rate %dkbit ceil %dkbit burst %dk prio %d quantum %d",
1218 tc
, interface
->name
, ip
->group
, ip
->mark
,
1219 (int)((ip
->min
/ip
->keyword
->asymetry_ratio
)-ip
->keyword
->asymetry_fixed
),
1220 (int)((ip
->max
/ip
->keyword
->asymetry_ratio
)-ip
->keyword
->asymetry_fixed
), burst
, ip
->prio
, htb_quantum
);
1235 puts("Warning - classmap file not fund, just generating preview ...");
1236 start_shaping
=FALSE
;
1239 done
; /* ugly macro end */
1242 json_traffic
=json_preview
;
1245 if(!dry_run
&& !just_flush
&& !skip_stats
)
1247 /*-----------------------------------------------------------------*/
1248 printf("Writing json traffic overview %s ... ", json_traffic
);
1249 /*-----------------------------------------------------------------*/
1250 write_json_traffic(json_traffic
);
1252 /*-----------------------------------------------------------------*/
1253 printf("Writing statistics into HTML page %s ...\n", html
);
1254 /*-----------------------------------------------------------------*/
1255 write_htmlandlogs(html
, d
, total
, just_preview
);
1266 else if(reduce_ceil
)
1268 swchar
='0'+reduce_ceil
; /* -2, -4 */
1270 else if(stop_shaping
)
1275 printf("Statistics preview generated (-%c switch) - now exiting ...\n", swchar
);
1281 printf("%-22s %-15s mark\n","name","ip");
1284 printf("Writing %s", classmap
);
1285 f
= fopen(classmap
, "w");
1291 /*-----------------------------------------------------------------*/
1292 printf(" + generating iptables and tc classes ... \n");
1293 /*-----------------------------------------------------------------*/
1295 for_each(ip
, ips
) if(ip
->mark
> 0)
1297 for_each(interface
, interfaces
)
1303 duplicate(ip
->addr
,buf
);
1306 buf
=index6_id(ip
->addr
,64-idxtable_bitmask1
);
1310 buf
=index_id(ip
->addr
,32-idxtable_bitmask1
);
1313 string(chain
, 6+strlen(buf
));
1314 sprintf(chain
, "%s_", interface
->idxprefix
);
1321 chain
= interface
->chain
;
1324 /* packet limits - this will be optional in future */
1327 sprintf(limit_pkts
, "-m limit --limit %d/s --limit-burst %d ",
1328 ip
->pps_limit
, ip
->pps_limit
);
1336 printf("%-22s %-16s %04d %d/s\n", ip
->name
, ip
->addr
, ip
->mark
, ip
->pps_limit
);
1339 /* ------------------------------------------------ iptables classify */
1340 sprintf(str
, "-A %s -%c %s/%d -o %s -j %s%d",
1341 chain
, (interface
->is_upstream
?'s':'d'), ip
->addr
, ip
->mask
,
1342 interface
->name
, mark_iptables
, ip
->mark
);
1343 iptables_save_line(str
, ip
->v6
);
1345 sprintf(str
, "-A %s -%c %s/%d -o %s %s-j ACCEPT",
1346 chain
, (interface
->is_upstream
?'s':'d'),ip
->addr
, ip
->mask
,
1347 interface
->name
, limit_pkts
);
1348 iptables_save_line(str
, ip
->v6
);
1350 if(*limit_pkts
) /* non-empty string?*/
1352 /* classify overlimit packets to separate overlimit class */
1353 sprintf(str
, "-A %s -%c %s/%d -o %s -j %s%d",
1354 chain
, (interface
->is_upstream
?'s':'d'), ip
->addr
, ip
->mask
,
1355 interface
->name
, mark_iptables
, OVERLIMIT_CLASS
);
1356 iptables_save_line(str
, ip
->v6
);
1358 sprintf(str
, "-A %s -%c %s/%d -o %s -j ACCEPT",
1359 chain
, (interface
->is_upstream
?'s':'d'), ip
->addr
, ip
->mask
,
1361 iptables_save_line(str
, ip
->v6
);
1366 //TODO - min and max should not exceed interface->speed
1368 /* -------------------------------------------------------- tc class */
1370 printf("[down: %dk-%dk]", ip
->min
, ip
->max
);
1373 sprintf(str
, "%s class add dev %s parent 1:%d classid 1:%d htb rate %dkbit ceil %dkbit burst %dk prio %d quantum %d",
1374 tc
, interface
->name
, ip
->group
, ip
->mark
, ip
->min
, ip
->max
, burst
, ip
->prio
, htb_quantum
);
1377 if(strcmpi(ip
->keyword
->leaf_discipline
, "none"))
1379 sprintf(str
, "%s qdisc add dev %s parent 1:%d handle %d %s",
1380 tc
, interface
->name
, ip
->mark
, ip
->mark
, ip
->keyword
->leaf_discipline
); /*qos_leaf*/
1384 if(filter_type
== 1)
1386 sprintf(str
, "%s filter add dev %s parent 1:0 protocol ip handle %d fw flowid 1:%d",
1387 tc
, interface
->name
, ip
->mark
, ip
->mark
);
1394 printf("(sharing %s)\n", ip
->sharing
);
1399 if(ip
->min
&& f
> 0)
1401 fprintf(f
, "%s %d\n", ip
->addr
, ip
->mark
);
1411 for_each(interface
, interfaces
)
1416 string(chain
, STRLEN
);
1417 sprintf(chain
, "%s_common", interface
->idxprefix
);
1421 chain
= interface
->chain
;
1426 final_chain
= "ACCEPT";
1428 sprintf(str
, "-A %s -o %s -j %s%d",
1429 chain
, interface
->name
, mark_iptables
, FREE_CLASS
);
1430 iptables_save_line(str
, IPv4
); /* only for IPv4 */
1433 sprintf(str
,"-A %s -o %s -j %s", chain
, interface
->name
, final_chain
);
1434 iptables_save_line(str
, IPv4
);
1437 sprintf(str
,"-A %s -o %s -j %s", chain
, interface
->name
, final_chain
);
1438 iptables_save_line(str
, IPv6
);
1441 if(free_min
) /* allocate free bandwith if it is not zero... */
1443 /*-----------------------------------------------------------------*/
1444 puts("Generating free bandwith class ...");
1445 /*-----------------------------------------------------------------*/
1446 sprintf(str
, "%s class add dev %s parent 1:%d classid 1:%d htb rate %dkbit ceil %dkbit burst %dk prio %d quantum %d",
1447 tc
, interface
->name
, parent
, FREE_CLASS
, free_min
, free_max
,burst
, lowest_priority
, htb_quantum
);
1450 if(strcmpi(qos_leaf
, "none"))
1452 sprintf(str
,"%s qdisc add dev %s parent 1:%d handle %d %s", tc
, interface
->name
, FREE_CLASS
, FREE_CLASS
, qos_leaf
);
1455 /* tc handle 1 fw flowid */
1456 sprintf(str
,"%s filter add dev %s parent 1:0 protocol ip handle %d fw flowid 1:%d", tc
, interface
->name
, FREE_CLASS
, FREE_CLASS
);
1459 if(*limit_pkts
) /* non-empty string?*/
1461 /*-----------------------------------------------------------------*/
1462 puts("Generating bandwith class for overlimit packets...");
1463 /*-----------------------------------------------------------------*/
1464 sprintf(str
, "%s class add dev %s parent 1:%d classid 1:%d htb rate %dkbit ceil %dkbit burst %dk prio %d quantum %d",
1465 tc
, interface
->name
, parent
, OVERLIMIT_CLASS
, overlimit_min
, overlimit_max
, burst
, lowest_priority
, htb_quantum
);
1469 printf("Total IP count: %d\n", i
);
1470 run_iptables_restore();
1476 /* that's all folks, thank you for reading it all the way up to this point ;-) */
1477 /* bad luck C<<1 is not yet finished, I promise no sprintf() next time... */
This page took 1.266546 seconds and 5 git commands to generate.