Pessoal quero saber como funciona essa regra de "sem balance" Anexo 66449Anexo 66450Anexo 66451minhas duvidas são : ela sousa o link 1 para passa fora do balance ou ela escolhe 1 e fica ate finaliza o acesso DESDE JÁ AGRADEÇO !
Versão Imprimível
Pessoal quero saber como funciona essa regra de "sem balance" Anexo 66449Anexo 66450Anexo 66451minhas duvidas são : ela sousa o link 1 para passa fora do balance ou ela escolhe 1 e fica ate finaliza o acesso DESDE JÁ AGRADEÇO !
Poderia por favor me explica melhor sou leigo
queria saber se ela depende de um único link pra fazer isso que vc falou
pq tipo to fazendo uns testes aq passei o facebook para testa ficou muito rápido
desde já agradeço.
Obrigado !
E você postou 1 regra do firewall sem saber todas e as rotas não dá pra adivinhar. E essa ideia dá address list de "sem balance" não é um padrão universal. Nada em firewall é um padrão universal.
Manda:
/ip firewall export
/Ip route export
/ip firewall mangle
add chain=prerouting comment=ACCEPT dst-address-list="Sites Link 01" src-address=172.16.0.0/16
add action=mark-connection chain=prerouting comment=MARK_CONNECTION new-connection-mark=MC01 \
per-connection-classifier=both-addresses-and-ports:20/0 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC02 per-connection-classifier=\
both-addresses-and-ports:20/1 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC03 per-connection-classifier=\
both-addresses-and-ports:20/2 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC04 per-connection-classifier=\
both-addresses-and-ports:20/3 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC05 per-connection-classifier=\
both-addresses-and-ports:20/4 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC06 per-connection-classifier=\
both-addresses-and-ports:20/5 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC07 per-connection-classifier=\
both-addresses-and-ports:20/6 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC08 per-connection-classifier=\
both-addresses-and-ports:20/7 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC09 per-connection-classifier=\
both-addresses-and-ports:20/8 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC010 per-connection-classifier=\
both-addresses-and-ports:20/9 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC011 per-connection-classifier=\
both-addresses-and-ports:20/10 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC012 per-connection-classifier=\
both-addresses-and-ports:20/11 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC013 per-connection-classifier=\
both-addresses-and-ports:20/12 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC013 per-connection-classifier=\
both-addresses-and-ports:20/13 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC014 per-connection-classifier=\
both-addresses-and-ports:20/14 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC014 per-connection-classifier=\
both-addresses-and-ports:20/15 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC015 per-connection-classifier=\
both-addresses-and-ports:20/16 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC015 per-connection-classifier=\
both-addresses-and-ports:20/17 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC016 per-connection-classifier=\
both-addresses-and-ports:20/18 src-address=172.16.0.0/16
add action=mark-connection chain=prerouting new-connection-mark=MC016 per-connection-classifier=\
both-addresses-and-ports:20/19 src-address=172.16.0.0/16
add action=mark-routing chain=prerouting comment="MARK ROUTING" connection-mark=MC01 \
new-routing-mark=MR001 src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC02 new-routing-mark=MR002 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC03 new-routing-mark=MR003 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC04 new-routing-mark=MR004 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC05 new-routing-mark=MR005 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC06 new-routing-mark=MR006 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC07 new-routing-mark=MR007 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC08 new-routing-mark=MR008 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC09 new-routing-mark=MR009 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC010 new-routing-mark=MR010 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC011 new-routing-mark=MR011 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC012 new-routing-mark=MR012 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC013 new-routing-mark=MR013 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC014 new-routing-mark=MR014 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC015 new-routing-mark=MR015 \
src-address=172.16.0.0/16
add action=mark-routing chain=prerouting connection-mark=MC016 new-routing-mark=MR016 \
src-address=172.16.0.0/16
/ip firewall nat
add action=masquerade chain=srcnat src-address=172.16.0.0/16
/ip firewall service-port
set ftp disabled=yes
set tftp disabled=yes
set irc disabled=yes
set h323 disabled=yes
set sip disabled=yes
set pptp disabled=yes
/ip route
add comment="____________________________________________________________________________________\
______________________________________________________________________________________" \
distance=1 gateway="D 01 " routing-mark=MR001
add distance=1 gateway="D 02 " routing-mark=MR002
add distance=1 gateway="D 03 " routing-mark=MR003
add distance=1 gateway="D 04 " routing-mark=MR004
add distance=1 gateway="D 05 " routing-mark=MR005
add distance=1 gateway="D 06 " routing-mark=MR006
add distance=1 gateway="D 07 " routing-mark=MR007
add distance=1 gateway="D 08 " routing-mark=MR008
add distance=1 gateway="D 09 " routing-mark=MR009
add distance=1 gateway="D 10 " routing-mark=MR010
add distance=1 gateway="D 11 " routing-mark=MR011
add distance=1 gateway="D 12 " routing-mark=MR012
add distance=1 gateway="D 13 " routing-mark=MR013
add distance=1 gateway="D 14 " routing-mark=MR014
add distance=1 gateway="D 15 " routing-mark=MR015
add distance=1 gateway="D 16 " routing-mark=MR016
add comment="_____________________________________________________________________
______________________________________________________________________________
distance=2 gateway="D 01 "
add distance=3 gateway="D 02 "
add distance=4 gateway="D 03 "
add distance=5 gateway="D 04 "
add distance=6 gateway="D 05 "
add distance=7 gateway="D 06 "
add distance=8 gateway="D 07 "
add distance=9 gateway="D 08 "
add distance=10 gateway="D 09 "
add distance=11 gateway="D 10 "
add distance=12 gateway="D 11 "
add distance=13 gateway="D 12 "
add distance=14 gateway="D 13"
add distance=15 gateway="D 14 "
add distance=16 gateway="D 15 "
add distance=17 gateway="D 16 "