All Forums
> Bandwidth Manager
> Current topic
Configuration help needed: filtering rule applies incorrectly
Started by pspeirs
Configuration help needed: filtering rule applies incorrectly 23 January 2015, 20:58 |
Registered: 9 years ago Posts: 3 |
Hi All,
I'm having some difficulties getting the rules to filter as required. Basically, I have a test group with two MAC addresses which are the wired and wireless NIC's of a laptop.
I have a rule configured to block traffic and have this group as a member.
A second rule is an Allow All rule.
It seems the laptop is actually using the Allow All rule and not being picked up by the first rule. I tried the same with my PC with the same result. Changing the Allow All rule to block prevents Internet access as expected.
I have a Win 2012 machine configured with Bandwidth Mgr. Two NIC's.
Please advise what other information I need to supply.
Regs,
Paul
I'm having some difficulties getting the rules to filter as required. Basically, I have a test group with two MAC addresses which are the wired and wireless NIC's of a laptop.
I have a rule configured to block traffic and have this group as a member.
A second rule is an Allow All rule.
It seems the laptop is actually using the Allow All rule and not being picked up by the first rule. I tried the same with my PC with the same result. Changing the Allow All rule to block prevents Internet access as expected.
I have a Win 2012 machine configured with Bandwidth Mgr. Two NIC's.
Please advise what other information I need to supply.
Regs,
Paul
Re: Configuration help needed: filtering doesn't work correctly 24 January 2015, 11:56 |
Admin Registered: 18 years ago Posts: 3 519 |
Re: Configuration help needed: the filtering applies incorrectly 25 January 2015, 07:24 |
Registered: 9 years ago Posts: 3 |
Have attached a drawing of the connections.
As for the actual BM configuration, I have the following:
GROUPS
============
Qais Games: Containing one MAC address
Test Group: Containing two MAC addresses
RULES
============
#1 - Test
-----------
IPv4 based, both directions on the LAN interface
Rate limit is combined Bytes/s and Blocked
Source is "Test Group" with any Source port
All other options are left default
#2 - Allow All
----------------
Any protocol, Unlimited
Any Source and Destination, all interfaces
Regards,
Paul
As for the actual BM configuration, I have the following:
GROUPS
============
Qais Games: Containing one MAC address
Test Group: Containing two MAC addresses
RULES
============
#1 - Test
-----------
IPv4 based, both directions on the LAN interface
Rate limit is combined Bytes/s and Blocked
Source is "Test Group" with any Source port
All other options are left default
#2 - Allow All
----------------
Any protocol, Unlimited
Any Source and Destination, all interfaces
Regards,
Paul
Re: Configuration help needed: the filtering applies incorrectly 25 January 2015, 07:35 |
Registered: 9 years ago Posts: 3 |
I have a feeling it could be more network configuration related with the PC and router. I can resolve IP addresses from the router, however cannot resolve internal IP addresses from the 2012 server.
The NIC configuration currently is:
LAN
------
IP: 192.168.1.3
SN: 255.255.255.0
GW: None
DNS: 192.168.1.1
WAN
------
IP: 192.168.1.4
SN: 255.255.255.0
GW: 192.168.1.1
DNS: 192.168.1.1
Regs,
Paul
The NIC configuration currently is:
LAN
------
IP: 192.168.1.3
SN: 255.255.255.0
GW: None
DNS: 192.168.1.1
WAN
------
IP: 192.168.1.4
SN: 255.255.255.0
GW: 192.168.1.1
DNS: 192.168.1.1
Regs,
Paul
Re: Configuration help needed: the filtering applies incorrectly 25 January 2015, 11:24 |
Admin Registered: 18 years ago Posts: 3 519 |
It looks like the router hides every device behind it under its own IP address and MAC address. This means IP/MAC addresses from your LAN never reach BM and all BM sees is the router.
The only workaround for this is to re-configure the router to be a bridge to make it pass IP/MAC addresses unchanged. In this case you may have to turn the BM computer into a router.
The only workaround for this is to re-configure the router to be a bridge to make it pass IP/MAC addresses unchanged. In this case you may have to turn the BM computer into a router.