# ip address --------------------------
/ip address add address=10.1.1.1/24 interface=clientes coloque aqui nome da sua interface
/ip address add address=200.1.1.10/8 interface=link_dedicado coloque aqui nome da sua interface
# interface pppoe-client ---------------
/interface pppoe-client add ac-name="" add-default-route=no allow=pap,chap,mschap1,mschap2 dial-on-demand=no disabled=no interface=adsl max-mru=1480 max-mtu=1480 mrru=disabled name=adsl_adsl password=123456 profile=default service-name="" use-peer-dns=no
[email protected]
# ip dns --------------------------------
/ip dns set primary-dns=208.67.222.222 coloque o dns de sua preferencia
/ip dns set secondary-dns=208.67.220.220 coloque o dns de sua preferencia
/ip dns set allow-remote-requests=yes
# ip firewall Filter------------------------
/ip firewall filter add action=drop chain=forward comment="BLOQUEIO DE DNS REVERSO" content=velox.user.com.br disabled=no aqui vc coloca o reverso de sua operadora dsl para que não aoapreca
/ip firewall filter add action=drop chain=forward comment="BLOQUEIO DE DNS REVERSO" content=speed.user.com.br disabled=no aqui vc coloca o reverso de sua operadora dsl para que não aoapreca
/ip firewall filter add action=accept chain=input disabled=no in-interface=!link_dedicado src-address=10.1.1.1/24 seu endereço de clientes
# ip firewall nat--------------------------
/ip firewall nat add action=masquerade chain=srcnat disabled=no out-interface=link_dedicado
/ip firewall nat add action=masquerade chain=srcnat disabled=no out-interface=adsl_adsl
# ip firewall mangle------------------------
# LoopBack por link-------------------------
/ ip firewall mangle add action=mark-connection chain=prerouting comment="" connection-state=new disabled=no dst-address-list=LINK0 in-interface=clientes new-connection-mark=Sites0 passthrough=yes
/ ip firewall mangle add action=mark-routing chain=prerouting comment="" connection-mark=Sites0 disabled=no in-interface=clientes new-routing-mark=Rota0 passthrough=no
/ ip route add gateway=200.1.1.1 routing-mark=Rota0
/ ip firewall mangle add action=mark-connection chain=prerouting comment="" connection-state=new disabled=no dst-address-list=LINK1 in-interface=clientes new-connection-mark=Sites1 passthrough=yes
/ ip firewall mangle add action=mark-routing chain=prerouting comment="" connection-mark=Sites1 disabled=no in-interface=clientes new-routing-mark=Rota1 passthrough=no
/ ip route add gateway=adsl_adsl routing-mark=Rota1
/ip firewall address-list add address=200.155.80.0-200.155.255.255 comment="BRADESCO" disabled=no list=LINK0
/ip firewall address-list add address=200.220.186.0/24 comment="" disabled=no list=LINK0
/ip firewall address-list add address=200.220.178.0/24 comment="" disabled=no list=LINK0
/ip firewall address-list add address=201.7.176.0/24 comment="" disabled=no list=LINK1
/ip firewall address-list add address=201.7.178.0/24 comment="" disabled=no list=LINK1
/ip firewall address-list add address=208.67.217.0/24 comment="" disabled=no list=LINK1
/ip firewall address-list add address=208.69.32.0/24 comment="" disabled=no list=LINK1
/ip firewall address-list add address=64.38.29.0/24 comment="RapidShare" disabled=no list=LINK1
# Fim LoopBack por link----------------------
/ip firewall mangle add action=mark-connection connection-state=new chain=prerouting disabled=no in-interface=link_dedicado new-connection-mark=link_dedicado_conn passthrough=yes
/ip firewall mangle add action=mark-connection connection-state=new chain=prerouting disabled=no in-interface=adsl_adsl new-connection-mark=adsl_adsl_conn passthrough=yes
/ip firewall mangle add action=mark-routing chain=output connection-mark=link_dedicado_conn disabled=no new-routing-mark=to_link_dedicado passthrough=yes
/ip firewall mangle add action=mark-routing chain=output connection-mark=adsl_adsl_conn disabled=no new-routing-mark=to_adsl_adsl passthrough=yes
/ip firewall mangle add action=accept chain=prerouting disabled=no dst-address=200.1.1.0/8 in-interface=clientes
/ip firewall mangle add action=mark-connection connection-state=new chain=prerouting disabled=no dst-address-type=!local in-interface=clientes new-connection-mark=link_dedicado_conn passthrough=yes per-connection-classifier=dst-address-and-port:3/0
/ip firewall mangle add action=mark-connection connection-state=new chain=prerouting disabled=no dst-address-type=!local in-interface=clientes new-connection-mark=link_dedicado_conn passthrough=yes per-connection-classifier=dst-address-and-port:3/1
/ip firewall mangle add action=mark-connection connection-state=new chain=prerouting disabled=no dst-address-type=!local in-interface=clientes new-connection-mark=adsl_adsl_conn passthrough=yes per-connection-classifier=dst-address-and-port:3/2
/ip firewall mangle add action=mark-routing chain=prerouting connection-mark=link_dedicado_conn disabled=no in-interface=clientes new-routing-mark=to_link_dedicado passthrough=yes
/ip firewall mangle add action=mark-routing chain=prerouting connection-mark=adsl_adsl_conn disabled=no in-interface=clientes new-routing-mark=to_adsl_adsl passthrough=yes
# ip route----------------------------------
/ip route add check-gateway=ping disabled=no distance=1 dst-address=0.0.0.0/0 gateway=200.1.1.1 routing-mark=to_link_dedicado comment="Link0"
/ip route add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=adsl_adsl routing-mark=to_adsl_adsl comment="Link1"
/ip route add check-gateway=ping comment="Link0" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=200.1.1.1 scope=30 target-scope=10
/ip route add comment="Link1" disabled=no distance=2 dst-address=0.0.0.0/0 gateway=adsl_adsl scope=30 target-scope=10