TanodTools
EN

MikroTik simple queue generator

Set a bandwidth plan once and get a simple queue for every client address, with optional burst and a parent queue that caps the whole group.

Runs in your browser; nothing you type leaves your device

Clients
Plan per client
Parent queue

Generates RouterOS v7 syntax (also valid on v6) for IPv4 targets, up to 2048 queues. Every queue gets the same plan; for many clients sharing one link, PCQ is lighter on the CPU. MikroTik and RouterOS are trademarks of SIA Mikrotīkls. This tool is independent and not affiliated with or endorsed by MikroTik.

How to limit bandwidth per IP on MikroTik

  1. List the client addresses (one per line, optionally followed by a name), or give a subnet to queue every host in it.
  2. Enter the plan as upload and download max-limit, plus limit-at and burst if you use them. Rates take k, M or G.
  3. Optionally add a parent queue for the total link capacity, then copy the script or download the .rsc file.

Simple queues, briefly

A simple queue under /queue simple limits traffic to and from its target: an address, a network or an interface. RouterOS checks every packet against the list from the top and puts it in the first queue whose target matches, in either direction, so one queue shapes both a client's upload and its download. That makes simple queues the quickest way to give each customer or device its own plan, and the usual choice on small WISP and hotspot routers.

Each queue has a max-limit (the ceiling), an optional limit-at (the rate it is guaranteed when its parent is congested) and optional burst settings. A parent queue groups children under a total: the parent's max-limit should be the real capacity of the link, slightly under what the ISP delivers, so that the router, not the modem, is where packets queue up and the plan's priorities apply.

Tips

Questions

Which side is upload in max-limit?

Simple queue rates are written upload/download from the target's point of view: max-limit=5M/20M lets the client send 5 Mbit/s and receive 20 Mbit/s. The generator labels the fields that way, so you don't have to remember the order.

Why doesn't my queue limit anything?

The most common reason is FastTrack: fasttracked connections skip simple queues. Disable the fasttrack rule in /ip firewall filter, or exclude the queued addresses from it. Also check the order: simple queues are matched from the top, and an earlier queue with an overlapping target takes the traffic first.

What do limit-at and the parent queue do?

The parent queue caps the whole group at the link's real capacity. limit-at is the rate each child is guaranteed when the parent is full; above it, children share the remaining bandwidth up to their max-limit. If the limit-at values add up to more than the parent, they can't all be honoured.

How many simple queues can a router handle?

It depends on the CPU and traffic, but every packet walks the list from the top, so thousands of queues get expensive. For large flat plans, a PCQ queue type shapes every client fairly with a single queue; the PCQ generator writes that.

Does a /32 target need the prefix?

RouterOS stores single-address targets as /32 either way. The generator writes them with /32 so the targets read the same in an export.

Is my plan sent anywhere?

No. The queues are generated in your browser and nothing you type leaves your device.