Ac nerad tak to resim, protoze lidi jsou pak nastvani ze jim kokta, kdyz stahujou (jake prekvapeni ze)

Moznosti mas dve. Bud to udelas obecne na 7 vrstve. To uz se tu nekde probiralo a nebo u nas to resime ze adresy ktere v router v3 jsou oznacene jako sip z adres, ktere nejsou v nasi siti dam vyzsi prioritu. vic pro 802 delat nehodlam, ale jdou i jine kousky jako vyhrazeny traffic atd.
FIREWALL - detekuje vsechny sip adresy (neVoIP jsou adresy ktere nechci znackovat napr u nas site 10.0.0.0/8 Zapsano v addresslistu natvrdo)
;;; VoIP_ustredna
chain=forward action=add-dst-to-address-list dst-address-list=!neVoIP
address-list=VoIP_ustredna address-list-timeout=3d connection-type=sip
MAGLE - znackuje vsechny nalezene adresy
;;; VoIP
chain=prerouting action=mark-packet new-packet-mark=VoIP_down
passthrough=no src-address-list=VoIP_ustredna
chain=prerouting action=mark-packet new-packet-mark=VoIP_up
passthrough=no dst-address-list=VoIP_ustredna
QUEUE TREE
name="VoIP" parent=global-in packet-mark="" limit-at=1100k queue=default
priority=5 max-limit=11M burst-limit=0 burst-threshold=0 burst-time=0s
name="VoIP_up" parent=VoIP packet-mark=VoIP_up limit-at=0 queue=default
priority=5 max-limit=0 burst-limit=0 burst-threshold=0 burst-time=0s
name="VoIP_down" parent=VoIP packet-mark=VoIP_down limit-at=0
queue=default priority=5 max-limit=0 burst-limit=0 burst-threshold=0
burst-time=0s