Can you reproduce same problem? Mangle rules and Queue tree work fine on ROS 6.49.1 , on ROS 7.1 testing and 7.1.rc7 have problem with queue tree download.
Only get cca 60Mbps and red color mark on "All other download" child queue tree rule when download torrent od http eaven is set Max limit 185M, when disable quetree rules i get full throuputh.
Markers for upload works fine...
Strange is that that marker is red color eaven is bandwith three times smaller then max limit.
Code: Select all
#
# model = RBD53iG-5HacD2HnD
/caps-man channel
add band=2ghz-g/n control-channel-width=20mhz extension-channel=disabled \
frequency=2412,2437,2462 name=Channel_2.4Ghz_config save-selected=yes \
skip-dfs-channels=yes
add band=5ghz-a/n/ac control-channel-width=20mhz frequency=5260 name=\
Channel_5Ghz_config save-selected=yes skip-dfs-channels=yes
add band=2ghz-g/n control-channel-width=20mhz frequency=2412 name=\
Channel_2.4Ghz_CH_Extended_config save-selected=yes skip-dfs-channels=yes
add band=2ghz-g/n control-channel-width=20mhz extension-channel=disabled \
frequency=2437 name=Channel_2.4Ghz_CH6_tx_limit save-selected=yes \
skip-dfs-channels=yes
add band=2ghz-g/n control-channel-width=20mhz extension-channel=disabled \
frequency=2437 name=Channel_2.4Ghz_CH6 save-selected=yes \
skip-dfs-channels=yes
/interface bridge
add admin-mac=2C:C8:1B:A5:9F:D5 auto-mac=no comment=defconf name=bridge-LAN
add igmp-snooping=yes name=bridge_IPTV protocol-mode=none
/interface wireless
# managed by CAPsMAN
# channel: 2437/20/gn(17dBm), SSID: XXXXXXXXXXX, CAPsMAN forwarding
set [ find default-name=wlan1 ] band=2ghz-b/g/n channel-width=20/40mhz-XX \
country=croatia distance=indoors frequency=auto installation=indoor mode=\
ap-bridge skip-dfs-channels=all ssid=MikroTik-A59FD9 wireless-protocol=\
802.11
# managed by CAPsMAN
# channel: 5260/20-Ceee/ac/DP(14dBm), SSID: XXXXXXXXXXX, CAPsMAN forwarding
set [ find default-name=wlan2 ] band=5ghz-a/n/ac channel-width=\
20/40/80mhz-XXXX country=croatia distance=indoors frequency=auto \
installation=indoor mode=ap-bridge skip-dfs-channels=all ssid=\
MikroTik-A59FDA wireless-protocol=802.11
/interface ethernet
set [ find default-name=ether1 ] comment=Gateway name=ether1-WAN
set [ find default-name=ether5 ] speed=100Mbps
/interface eoip
add comment="EoIP L2 IPTV" local-address=172.16.1.12 mac-address=\
02:83:49:3B:10:B3 name=eoip-tunnel_IPTV remote-address=172.16.1.1 \
tunnel-id=7676
/interface list
add comment=defconf name=WAN
add comment=defconf name=LAN
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip pool
add name=default-dhcp ranges=192.168.88.20-192.168.88.254
/ip dhcp-server
add address-pool=default-dhcp disabled=no interface=bridge-LAN lease-time=3d \
name=defconf
/interface sstp-client
add comment="SSTP IPTV" connect-to=XX.XX.XX.XX disabled=no \
keepalive-timeout=10 name=sstp-out1 password=XXXXXXXXXX profile=\
default-encryption user=sstpuser
/queue tree
add limit-at=10M max-limit=10M name="#SSTP EoIP local addr" packet-mark=\
SSTP_EoIP_packet_mark parent=global priority=1
add name="All Bandwith" parent=global priority=2 queue=ethernet-default
add max-limit=185M name=#Download packet-mark=WAN2LAN-download-packet-mark \
parent="All Bandwith" priority=3 queue=ethernet-default
add limit-at=40M max-limit=160M name="PlayStation5 download" packet-mark=\
PlayStation5_download_packet_mark parent=#Download priority=5 queue=\
ethernet-default
add limit-at=50M max-limit=185M name="All other download" packet-mark=\
all_other_download_packet_mark parent=#Download priority=6 queue=\
ethernet-default
add max-limit=19M name=#Upload packet-mark=LAN2WAN-upload-packet-mark parent=\
"All Bandwith" priority=3 queue=ethernet-default
add limit-at=10M max-limit=15M name="PlayStation5 upload" packet-mark=\
PlayStation5_upload_packet_mark parent=#Upload priority=5 queue=\
ethernet-default
add limit-at=10M max-limit=18M name="All other upload" packet-mark=\
all_other_upload_packet_mark parent=#Upload priority=6 queue=\
ethernet-default
add limit-at=10M max-limit=15M name=#IPTV_EoIP packet-mark=\
IPTV_EoIP_packet_mark parent=global priority=1 queue=ethernet-default
/caps-man access-list
add action=accept allow-signal-out-of-range=10s disabled=yes mac-address=\
84:7C:9B:4B:27:2B ssid-regexp=""
add action=accept allow-signal-out-of-range=10s disabled=no interface=all \
signal-range=-75..120 ssid-regexp=""
add action=reject allow-signal-out-of-range=10s disabled=no interface=all \
signal-range=-120..-76 ssid-regexp=""
/caps-man manager
set enabled=yes
/caps-man provisioning
add action=create-dynamic-enabled comment="hap ac3 2.4Ghz wlan" \
master-configuration="Home_WIFI_2Ghz CH6" name-format=prefix-identity \
radio-mac=2C:C8:1B:A5:9F:D9
add action=create-dynamic-enabled comment="hap ac3 5Ghz wlan" \
master-configuration=Home_WIFI_5Ghz_cfg name-format=prefix-identity \
radio-mac=2C:C8:1B:A5:9F:DA
add action=create-dynamic-enabled comment="pwr-line kuhinja" \
master-configuration="Home_WIFI_2Ghz CH1" name-format=prefix-identity \
radio-mac=74:4D:28:76:17:65
add action=create-dynamic-enabled disabled=yes master-configuration=Auto_test \
name-format=prefix-identity
/interface bridge port
add bridge=bridge-LAN comment=defconf interface=ether2
add bridge=bridge-LAN comment=defconf interface=ether3
add bridge=bridge-LAN comment=defconf interface=ether4
add bridge=bridge_IPTV comment=defconf interface=ether5
add bridge=bridge-LAN comment=defconf interface=wlan1
add bridge=bridge-LAN comment=defconf interface=wlan2
add bridge=bridge_IPTV interface=eoip-tunnel_IPTV
/ip firewall connection tracking
set enabled=yes
/ip neighbor discovery-settings
set discover-interface-list=LAN
/interface list member
add comment=defconf interface=bridge-LAN list=LAN
add comment=defconf interface=ether1-WAN list=WAN
/interface wireless cap
#
set caps-man-addresses=127.0.0.1 enabled=yes interfaces=wlan1,wlan2
/ip address
add address=192.168.88.1/24 comment=defconf interface=bridge-LAN network=\
192.168.88.0
add address=192.168.0.2/24 interface=ether1-WAN network=192.168.0.0
add address=10.100.13.6/24 disabled=yes interface=bridge_IPTV network=\
10.100.13.0
/ip dhcp-client
add comment=defconf interface=ether1-WAN
/ip dhcp-server lease
add address=192.168.88.234 client-id=1:48:8f:5a:f8:45:af mac-address=\
48:8F:5A:F8:45:AF server=defconf
/ip dhcp-server network
add address=192.168.88.0/24 comment=defconf dns-server=192.168.88.1 gateway=\
192.168.88.1
/ip dns
set allow-remote-requests=yes servers=1.1.1.1,8.8.8.8
/ip dns static
add address=192.168.88.1 comment=defconf name=router.lan
/ip firewall address-list
add address=192.168.0.0/16 list=Local_LAN
/ip firewall filter
add action=accept chain=input comment="Allow EoIP/GRE input" protocol=gre
add action=accept chain=input comment=\
"defconf: accept established,related,untracked" connection-state=\
established,related,untracked
add action=drop chain=input comment="defconf: drop invalid" connection-state=\
invalid
add action=accept chain=input comment="defconf: accept ICMP" protocol=icmp
add action=accept chain=input comment=\
"defconf: accept to local loopback (for CAPsMAN)" dst-address=127.0.0.1
add action=drop chain=input comment="defconf: drop all not coming from LAN" \
in-interface-list=!LAN
add action=accept chain=forward comment="defconf: accept in ipsec policy" \
ipsec-policy=in,ipsec
add action=accept chain=forward comment="Allow Eoip/GRE" protocol=gre
add action=accept chain=forward comment="defconf: accept out ipsec policy" \
ipsec-policy=out,ipsec
add action=fasttrack-connection chain=forward comment=\
"defconf: fasttrack, disable radi queue" connection-state=\
established,related disabled=yes
add action=accept chain=forward comment=\
"defconf: accept established,related, untracked" connection-state=\
established,related,untracked
add action=drop chain=forward comment="defconf: drop invalid" \
connection-state=invalid
add action=drop chain=forward comment=\
"defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \
connection-state=new in-interface-list=WAN
/ip firewall mangle
add action=mark-connection chain=input comment="IPTV EoIP connection mark" \
in-interface-list=WAN new-connection-mark=IPTV_EoIP_conn_mark \
packet-mark=no-mark passthrough=yes src-address=XX.XX.XX.XX
add action=mark-packet chain=input comment="IPTV EoIP packet mark" \
connection-mark=IPTV_EoIP_conn_mark in-interface-list=WAN \
new-packet-mark=IPTV_EoIP_packet_mark passthrough=no
add action=mark-connection chain=input comment="SSTP EoIP connection mark" \
in-interface=sstp-out1 new-connection-mark=SSTP_EoIP_GRE_conn_mark \
packet-mark=no-mark passthrough=yes src-address=172.16.1.1
add action=mark-packet chain=input comment="SSTP EoIP packet mark" \
connection-mark=SSTP_EoIP_GRE_conn_mark in-interface=sstp-out1 \
new-packet-mark=SSTP_EoIP_packet_mark passthrough=no
add action=mark-connection chain=forward comment=\
"LAN2WAN-Upload connection mark" in-interface-list=LAN \
new-connection-mark=LAN2WAN-upload-conn-mark out-interface-list=WAN \
passthrough=yes
add action=mark-packet chain=forward connection-mark=LAN2WAN-upload-conn-mark \
in-interface-list=LAN new-packet-mark=LAN2WAN-upload-packet-mark \
out-interface-list=WAN passthrough=yes
add action=mark-connection chain=forward comment=\
"WAN2LAN-Download connection mark" in-interface-list=WAN \
new-connection-mark=WAN2LAN-download-conn-mark out-interface-list=LAN \
passthrough=yes
add action=mark-packet chain=forward connection-mark=\
WAN2LAN-download-conn-mark in-interface-list=WAN new-packet-mark=\
WAN2LAN-download-packet-mark out-interface-list=LAN passthrough=yes
add action=mark-packet chain=forward comment=\
"PlayStation5 upload packet mark" in-interface-list=LAN new-packet-mark=\
PlayStation5_upload_packet_mark out-interface-list=WAN packet-mark=\
LAN2WAN-upload-packet-mark passthrough=no src-address=192.168.88.29
add action=mark-packet chain=forward comment=\
"PlayStation5 download packet mark" dst-address=192.168.88.29 \
in-interface-list=WAN new-packet-mark=PlayStation5_download_packet_mark \
out-interface-list=LAN packet-mark=WAN2LAN-download-packet-mark \
passthrough=no
add action=mark-packet chain=forward comment=\
"All other network upload packet mark" in-interface-list=LAN \
new-packet-mark=all_other_upload_packet_mark out-interface-list=WAN \
packet-mark=LAN2WAN-upload-packet-mark passthrough=no
add action=mark-packet chain=forward comment=\
"All other network download packet mark" in-interface-list=WAN \
new-packet-mark=all_other_download_packet_mark out-interface-list=LAN \
packet-mark=WAN2LAN-download-packet-mark passthrough=no
/ip firewall nat
add action=masquerade chain=srcnat comment="defconf: masquerade" \
ipsec-policy=out,none out-interface-list=WAN
/ip route
add distance=1 gateway=192.168.0.1
/system clock
set time-zone-name=Europe/Zagreb
/system identity
set name="Mikrotik hAP ac3"
/system leds
set 0 leds=led1 type=interface-activity
set 1 leds=poe-led type=poe-out
set 2 leds=led2
set 3 disabled=yes leds=""
/system logging
add disabled=yes topics=interface,debug
/system ntp client
set enabled=yes primary-ntp=178.124.134.106 secondary-ntp=78.46.162.102
/tool mac-server
set allowed-interface-list=LAN
/tool mac-server mac-winbox
set allowed-interface-list=LAN