/ ip firewall mangle
add chain=prerouting protocol=icmp src-address=192.168.10.0/24 action=mark-connection new-connection-mark=icmp-c comment=”–> ping” disabled=noadd chain=prerouting connection-mark=icmp-c action=mark-packet new-packet-mark=icmp-p comment=”” disabled=no
add chain=prerouting packet-mark=icmp-p action=change-tos new-tos=min-delay comment=”” disabled=no
add chain=prerouting src-address=192.168.10.0/24 protocol=tcp dst-port=53 action=mark-connection new-connection-mark=dns-c comment=”–> dns” disabled=no
add chain=prerouting src-address=192.168.10.0/24 protocol=udp dst-port=53 action=mark-connection new-connection-mark=dns-c comment=”” disabled=no
add chain=prerouting connection-mark=dns-c action=mark-packet new-packet-mark=dns-p comment=”” disabled=no
add chain=prerouting packet-mark=dns-p action=change-tos new-tos=min-delay comment=”” disabled=no
Jika pada mangle terdapat mark packet nya koneksi (IIX / INT) letakkan di bagian bawah mangle tersebut, dan jangan diletakkan di bagian atas. Selanjutnya pada queue type:
/ queue type
add name=”64″ kind=pfifo pfifo-limit=64
Pada queue tree:
/ queue tree
add name=”64″ parent=global-in packet-mark=”” limit-at=0 queue=64 priority=5 max-limit=32000 burst-limit=0 burst-threshold=0 burst-time=0s disabled=noadd name=”ping” parent=64 packet-mark=icmp-p limit-at=8000 queue=64 priority=1 max-limit=16000 burst-limit=0 burst-threshold=0 burst-time=0s disabled=no
add name=”dns” parent=64 packet-mark=dns-p limit-at=8000 queue=64 priority=1 max-limit=16000 burst-limit=0 burst-threshold=0 burst-time=0s disabled=no