Outils pour utilisateurs

Outils du site


mikrotikvoip:mikrotik_voip_script

Différences

Ci-dessous, les différences entre deux révisions de la page.

Lien vers cette vue comparative

Les deux révisions précédentesRévision précédente
mikrotikvoip:mikrotik_voip_script [2019/04/27 12:19] ghussonmikrotikvoip:mikrotik_voip_script [2019/04/27 12:27] (Version actuelle) ghusson
Ligne 104: Ligne 104:
 # Add drop rule for IP that have been added to "blacklist-sip" # Add drop rule for IP that have been added to "blacklist-sip"
 # address list # address list
-add action=drop \+/ip firewall filter add action=drop \
   chain=forward \   chain=forward \
-  src-address-list=blacklist-sip+  src-address-list=blacklist-sip \
   comment="blacklist-sip DROP (#VOIPscript)" \   comment="blacklist-sip DROP (#VOIPscript)" \
  
 # Add drop rule for IP that have been added to "blacklist-3cxtunnel" # Add drop rule for IP that have been added to "blacklist-3cxtunnel"
 # address list # address list
-add action=drop \+/ip firewall filter add action=drop \
   chain=forward \   chain=forward \
-  src-address-list=blacklist-3cxtunnel+  src-address-list=blacklist-3cxtunnel \
   comment="blacklist-3cxtunnel DROP (#VOIPscript)"   comment="blacklist-3cxtunnel DROP (#VOIPscript)"
  
Ligne 119: Ligne 119:
 # number (max 10 SIP sessions per IP) and packet rate (max 100 packets # number (max 10 SIP sessions per IP) and packet rate (max 100 packets
 # in 1mn) - adapt it to your field use. # in 1mn) - adapt it to your field use.
-add action=add-src-to-address-list \+/ip firewall filter add action=add-src-to-address-list \
   chain=forward \   chain=forward \
-  protocol=udp+  protocol=udp \
   dst-port=5060 \   dst-port=5060 \
   connection-limit=10,32 \   connection-limit=10,32 \
   connection-state=invalid,new,untracked \   connection-state=invalid,new,untracked \
   limit=100/1m,0:packet \   limit=100/1m,0:packet \
-  address-list=blacklist-sip+  address-list=blacklist-sip \
   address-list-timeout=3h \   address-list-timeout=3h \
   log=yes \   log=yes \
Ligne 134: Ligne 134:
 # Add an IP to "blacklist-3cxtunnel" address list, based on connection # Add an IP to "blacklist-3cxtunnel" address list, based on connection
 # rate (max 4 tunnels per IP) - adapt it to your field use. # rate (max 4 tunnels per IP) - adapt it to your field use.
-add action=add-src-to-address-list \+/ip firewall filter add action=add-src-to-address-list \
   chain=forward \   chain=forward \
-  protocol=udp+  protocol=udp \
   dst-port=5060 \   dst-port=5060 \
   connection-limit=4,32 \   connection-limit=4,32 \
   connection-state=invalid,new,untracked \   connection-state=invalid,new,untracked \
-  address-list=blacklist-3cxtunnel+  address-list=blacklist-3cxtunnel \
   address-list-timeout=3h \   address-list-timeout=3h \
   log=yes \   log=yes \
mikrotikvoip/mikrotik_voip_script.1556367574.txt.gz · Dernière modification : 2019/04/27 12:19 de ghusson