<<'LICENSE'
  Part of AREDN® -- Used for creating Amateur Radio Emergency Data Networks
  Copyright (C) 2026 Tim Wilkinson
   See Contributors file for additional contributors

  This program is free software: you can redistribute it and/or modify
  it under the terms of the GNU General Public License as published by
  the Free Software Foundation version 3 of the License.

  This program is distributed in the hope that it will be useful,
  but WITHOUT ANY WARRANTY; without even the implied warranty of
  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
  GNU General Public License for more details.

  You should have received a copy of the GNU General Public License
  along with this program.  If not, see <http://www.gnu.org/licenses/>.

  Additional Terms:

  Additional use restrictions exist on the AREDN® trademark and logo.
    See AREDNLicense.txt for more info.

  Attributions to the AREDN® Project must be retained in the source code.
  If importing this code into a new or existing project attribution
  to the AREDN® project must be added to the source code.

  You must not misrepresent the origin of the material contained within.

  Modified versions must be modified to attribute to the original source
  and be marked in reasonable ways as differentiate it from the original
  version.

LICENSE

#
# Copy the QoS information from the wireguard payload onto the wireguard encrypted
# packet so we can prioritize the traffic correctly
#
id=1
for dscp in cs0 cs1 cs2 cs3 cs4 cs5 cs6 cs7 af11 af12 af13 af21 af22 af23 af31 af32 af33 af41 af42 af43 ef
do
  nft insert rule inet fw4 mangle_prerouting iifname "wg*" ip dscp ${dscp} meta mark set mark or ${id}
  nft insert rule inet fw4 mangle_postrouting meta mark and 0xff == ${id} ip dscp set ${dscp}
  id=$((id+1))
done

#
# Setup cake on each physical interface so they'll respect the QoS marks on general and tunneled packets
#
for i in /sys/class/net/*/device; do
  dev=$(basename ${i%/device})
  if [ -d /sys/class/net/${dev}/device/morse ]; then
    tc qdisc replace dev ${dev} root pfifo_fast
  else
    tc qdisc replace dev ${dev} root cake diffserv4 nowash ack-filter nat
  fi
done
