DD-WRT block P2P

Source: Internet
Author: User
Tags ftp access

I, the principle of DD-WRT blocking BT:

So why most wireless devices cannot block P2P software and DD-WRT can effectively solve this problem?

You must know that not only are we commonly used home wireless devices, but some enterprise-level professional wireless devices cannot completely block BT and P2P software. So far, the most effective solution for P2P software such as BT to occupy bandwidth is to block and kill on the Linux system, because the Linux system uses more advanced blocking technology, you can use ipp2p or L7 to block P2P software such as Bt and donkey.

Because our DD-WRT is a Linux-based routing OS (that is, the firmware), so the DD-WRT also has ipp2p and L7 modules, more convenient to use than Linux, because the DD-WRT can be configured directly on the web, Linux needs to be configured under the command, and by default ipp2p and L7 modules have been integrated into the DD-WRT firmware.

Ii. Thoroughly block P2P software from instances:

The following describes how to block the bandwidth killer that causes headaches for our network administrators.

Step 1: After logging on to the DD-WRT management interface, open the access restriction tab.

Step 2: add an access policy in the Internet access area and create a policy name. For example, "block BT", select "allow" as the rule, and set the status to "enable ".

Step 3: set the date and time according to the actual situation. For example, if you want to block BT, you only need to set the corresponding date and time, each time you set the time, the "blocking BT" policy will be executed to prohibit BT download. Because we want to completely block BT, we should set the date to "Daily" and the time to "24 hours ".

(Click to view the big picture)

Step 4: Next is to set the policy corresponding to the "banned service", in fact the DD-WRT has integrated a lot of services to provide us with a choice, we will "capture all P2P protocols" hook, in the following applicationsProgramChoose "BitTorrent" and "eDonkey" on the bar, of course, we can also add a block to the corresponding service and protocol according to your actual situation, DD-WRT provides nearly 50 common services by default.

(Click to view the big picture)

Step 5: click the "Edit PC list" button under the Policy Name above to edit the PC list of the Policy Application on the PC list page. If you want to completely seal the LAN machine, enter 2 to 254 in the IP address range of the PC, so that no one else can change the IP address to use BT and donkey. If you want to use your computer, for example, if your IP address is 192.168.1.2, enter 3 to 254, if you want to mail several machines, you can enter the corresponding IP address or MAC address in the "pc ip Address" or "pc mac address" column, after that, click the "Save settings" button to block the above IP address Computer Using Bt and donkey.

(Click to view the big picture)

TIPS:
If you want to prohibit user access to sites such as Bt and e, you can enter sites such as Bt and e in "block web sites through URL, you can also enter keywords in the "block web sites with keywords" field to lock domain names with keywords (and block users to search for this keyword using engines at the same time), but it is worth noting that do not enter the BT keyword, in this way, many websites that are irrelevant to BT but contain the two characters "BT" in the domain name will also be blocked. In addition, if you want to block thunder downloads, you can also select "Xunlei" in the "capture all P2P protocols" mentioned above, and then specify the frequently used ports for thunder downloads.
3. Control P2P Traffic from instances:

Of course, sometimes we may not want to fundamentally limit the transmission of P2P software. After all, BT and P2P are still very market-oriented. So how can we reduce their network bandwidth erosion? We can control P2P Traffic Through QoS service quality control in DD-WRT equipment, and limit their traffic to a certain amount, which not only ensures the reasonable use of the network, it can also make BT, donkey and other software use normally. Next, we will briefly introduce how to set QoS service quality. We can use QoS to configure the service priority to limit or reduce the priority of programs that do not want to run, in this way, you can make these high-bandwidth programs give in to your network applications.

Step 1: log on to the management configuration page for the DD-WRT device and find the application & game tab.

Step 2: Find the "QoS" label under "Application & game" and set "enable QoS" to "enable.

Step 3: configure the network parameters according to your actual situation, including the uplink speed and downlink speed. For example, we often say that the uplink speed is 512 K/s for 256 k ADSL, the download speed is 512 K/s. Keep the default settings for others.

(Click to view the big picture)

TIPS:
If you often play games, you can check them before "Optimization for Games.

Step 4: select the service you want to set in the service priority field. For example, if the FTP service is selected, click "Add/edit service" to add the service settings, next, select a priority for the service from the drop-down menu. The priority here is "exemption, promotion, fast, standard, bottom-up" from top to bottom, and "exemption" has the highest priority. When the network needs to transmit data, it will follow "exemption" in sequence, promotion, fast, standard, bottom-pressed "transmission from top to bottom priority. This is the true meaning of QoS.

(Click to view the big picture)

Step 5: We can also add multiple services in sequence. For example, we can set the BT service to "bottom-up" so that when the network has both the BT service and the FTP service, the bandwidth will be transmitted only through the FTP service because it has a higher priority.

Through QoS settings, we can easily set different priorities for different services, so as to solve the problem of insufficient or insufficient network bandwidth, it not only ensures normal use of P2P software such as BT, but also does not affect normal HTTP browsing and FTP access traffic, and truly realizes the purpose of network bandwidth optimization.

Of course, our QoS settings for network bandwidth are not only limited to network services, but also can be set for Mac priority and Ethernet port priority, in this way, the transmission priority of different ports or MAC addresses of different computer NICS is adjusted, and more bandwidth is given to ports or NICs that require more network resources.

Iv. Summary:

Through the blocking of P2P and QoS service quality settings on DD-WRT devices, we can effectively manage limited network resources and apply more bandwidth to legal network services, this ensures that P2P users such as Bt and edas are honest.

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.