Bom estou com 03 Links Fulls
- 02 Mb Embratel
- 02 Mb brt
- 01 Mb Brt
O Servidor Possue 04 Placas de Rede, 1 para cada Link e 01 para o concentrador PPPOE!
Segue o expot
/ ip address
add address=200.248.XXX.XXX/24 network=XXX.XXX.XXX.XXX broadcast=XXX.XXX.XXX.XXX interface=ether1 comment="Link01 2Mb FULL Embratel " disabled=no
add address=201.16.XXX.XXX/24 network=XXX.XXX.XXX.XXX broadcast=XXX.XXX.XXX.XXX interface=ether2 comment="Link02 2Mb FULL Brt " disabled=no
add address=189.30.XXX.XXX/24 network=XXX.XXX.XXX.XXX broadcast=XXX.XXX.XXX.XXX interface=ether3 comment="Link03 1 Mb FULL Brt" disabled=no
add address= network= broadcast= interface=ether3 comment="" disabled=no
ROTAS
Citação:
/ ip route
add dst-address=0.0.0.0/0 gateway=200.XXX..XXX.XXX/24 scope=255 target-scope=10 comment="" disabled=no
add dst-address=0.0.0.0/0 gateway=200.XXX.XXX.XXX/24 scope=255 target-scope=10 routing-mark=3_rota comment="" disabled=no
add dst-address=0.0.0.0/0 gateway=201.XXX.XXX.XXX/24 scope=255 target-scope=10 routing-mark=2_rota comment="" disabled=no
add dst-address=0.0.0.0/0 gateway=189.XXX.XXX.XXX/24 scope=255 target-scope=10 routing-mark=1_rota comment="" disabled=no
MANGLE
Citação:
/ ip firewall mangle
add chain=prerouting in-interface=ether3 connection-state=new nth=2,1,0 action=mark-connection new-connection-mark=primeiro passthrough=yes comment="Loadbalance" disabled=no
add chain=prerouting in-interface=ether3 connection-mark=primeiro action=mark-routing new-routing-mark=1_rota passthrough=no comment="" disabled=no
add chain=prerouting in-interface=ether3 connection-state=new nth=2,1,1 action=mark-connection new-connection-mark=segunda passthrough=yes comment="" disabled=no
add chain=prerouting in-interface=ether3 connection-mark=segunda action=mark-routing new-routing-mark=2_rota passthrough=no comment="" disabled=no
add chain=prerouting in-interface=ether3 connection-state=new nth=2,1,2 action=mark-connection new-connection-mark=terceira passthrough=yes comment="" disabled=no
add chain=prerouting in-interface=ether3 connection-mark=segunda action=mark-routing new-routing-mark=3_rota passthrough=no comment="" disabled=no
add chain=prerouting protocol=tcp dst-port=443 action=mark-routing new-routing-mark=1_rota passthrough=yes comment="" disabled=no
Citação:
/ ip firewall nat
add chain=srcnat connection-mark=primeiro action=src-nat to-addresses=189.XXX.XXX.XXX to-ports=0-65535 comment="NAT" disabled=no
add chain=srcnat connection-mark=segunda action=src-nat to-addresses=201.XXX.XXX.XX to-ports=0-65535 comment="" disabled=no
add chain=srcnat connection-mark=terceiro action=src-nat to-addresses=200.XXX.XXX.XXX to-ports=0-65535 comment="" disabled=no
Dúvida!
Os contatores do NAT, não se modificam, o do mangle quase nada!
Algo errado?
Já possuo LB por grupo e por protocolo!
Queria testar NTH!
Obrigado