I have searched around for simple firewall rules for small offices which include QoS for SIP. What I have found are very complicated sets and unsure if those are really needed.
Below is the network topology:
Code: Select all
Wireless Internet Access <-> RB2011iUAS <--> CRS125-24G-1S-2H <--> LAN
RB2011UiAS Wireless <--> LAN (clients with notebooks/tables et. al. can access the outside world or file servers on the LAN via either RB2011UiAS or the CRS125-24G Switch..... if it matters which, please inform me)
Code: Select all
1) Network Protocols priority 1
2) SIP and RTP (5060, 10000-15000 UDP) priority 2
3) VPN port 1194 tcp priority 3
4) eMail, ftp, www (surfing, no local apache or any other web server internally) priority 6
5) everything else (that is allowed ... is there such a thing with Mikrotik as first firewall rule being Deny In from any to any?) priority 8 or higher
If you have a script that does the above, please share it.