Sei sulla pagina 1di 2

/ip firewall filter

add action=add-dst-to-address-list address-list=download \


address-list-timeout=1h chain=forward comment="" content=.dat disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.exe disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.cab disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.msi disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.gz disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.bin disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.mp3 disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.mp4 disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.mpeg disabled=\
no protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.zip disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.rar disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.flv disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.swf disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.deb disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.avi disabled=no \

protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.iso disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.rm disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.wav disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.wma disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.wmv disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.bz2 disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.rmvb disabled=\
no protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.z disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.mpg disabled=no \
protocol=tcp src-address=192.168.2.0/24
add action=add-dst-to-address-list address-list=download \
address-list-timeout=1h chain=forward comment="" content=.divx disabled=\
no protocol=tcp src-address=192.168.2.0/24
------------------/ip firewall mangle
add action=mark-packet chain=forward comment="" disabled=no new-packet-mark=\
download-packet passthrough=no protocol=tcp src-address-list=download
------------------/queue simple
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s comment="" \
direction=both disabled=no dst-address=0.0.0.0/0 interface=all limit-at=\
64000/64000 max-limit=64000/64000 name=download-file packet-marks=\
download-packet parent=none priority=8 queue=default-small/default-small \
total-queue=default-small

Potrebbero piacerti anche