ola bom dia a todos... venho aqui solicitar ajuda pois ja tenho tentado a tempo tirar uns clientes que jogam on line do balance porem sem sucesso...
acontece que seria melhor tirar os ips alguém diria.. mas sao tantos... servidores... tantas regras... que prefiro tirar o cliente todo logo
tenho dois links. de 50 mb
gostaria se possível. criar as duas regras... tipo 10 no linnk 1 e outros dez no outro. criando apenas uma lista adres llist. e na media que fossem falando ia adicionando em um e em outro...
concentrador ppoe rb 1100ahx2
balance rb 750 ( está aguentando ainda)
vi que um rapaz tentou ensinar aqui no forum porem mesmo assim tentando fazer o que ele disse nao funcionou. segue post.
https://under-linux.org/showthread.php?t=175813.
não sei onde colocar tais regras. mas tentei nas duas rbs... colocarei as configurações que tenho.
Configurações principais do balance
/ip firewall natadd action=masquerade chain=srcnat out-interface="ISP1- G"add action=masquerade chain=srcnat out-interface=ISP2-V[admin@MikroTik] /ip firewall nat> /
[admin@MikroTik] > interface export
/interface bridgeadd fast-forward=no name=bridge1/interface ethernetset [ find default-name=ether1 ] comment=GVT name="ISP1- G"set [ find default-name=ether2 ] comment=VIVO name=ISP2-Vset [ find default-name=ether5 ] name=Saida/interface bridge portadd bridge=bridge1 interface=ether4add bridge=bridge1 interface=ether3add bridge=bridge1 interface=Saida[admin@MikroTik] >
/ip firewall mangleadd action=mark-routing chain=prerouting comment="fora balance cli" new-routing-mark=fora-balance passthrough=no src-address=192.169.70.100add action=accept chain=prerouting dst-address=192.168.25.0/24 in-interface=bridge1add action=accept chain=prerouting dst-address=192.168.15.0/24 in-interface=bridge1add action=mark-connection chain=prerouting connection-mark=no-mark in-interface="ISP1- G" new-connection-mark=ISP1_connadd action=mark-connection chain=prerouting connection-mark=no-mark in-interface=ISP2-V new-connection-mark=ISP2_connadd action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local in-interface=bridge1 new-connection-mark=ISP1_conn passthrough=yes per-connection-classifier=both-addresses-and-ports:2/0add action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local in-interface=bridge1 new-connection-mark=ISP2_conn passthrough=yes per-connection-classifier=both-addresses-and-ports:2/1add action=mark-routing chain=prerouting connection-mark=ISP1_conn in-interface=bridge1 new-routing-mark=to_ISP1 passthrough=yesadd action=mark-routing chain=prerouting connection-mark=ISP2_conn in-interface=bridge1 new-routing-mark=to_ISP2 passthrough=yesadd action=mark-routing chain=output connection-mark=ISP1_conn new-routing-mark=to_ISP1add action=mark-routing chain=output connection-mark=ISP2_conn new-routing-mark=to_ISP2[admin@MikroTik] /ip firewall mangle>
/ip routeadd check-gateway=ping distance=1 gateway=192.168.25.1 routing-mark=to_ISP1add check-gateway=ping distance=1 gateway=192.168.15.1 routing-mark=to_ISP2add comment="fora balance link gvt" distance=1 gateway=192.168.25.1 routing-mark=fora_balance (tentei esta..)add check-gateway=ping distance=2 gateway=192.168.25.1add check-gateway=ping distance=2 gateway=192.168.15.1add distance=1 dst-address=192.169.70.1/32 gateway=192.169.10.250 ( tentei Aqui tambem)
Configurações principais do pppoe
/ppp profile
add local-address=192.169.70.1 name="clientes ppoe" remote-address=ppoe/ppp profile
no geral ja desabilitei o nat os dois que tenho no concentrador.. porem... a internet para de funcionar... recomendação do rapaz do post.. e joguei como se o balance fosse pegar toda carga..
adddistance=1 dst-address=192.169.70.1/32 gateway=192.169.10.250 ( tentei Aqui tambem)
peço que por favor quem puder ajudar...