+ Responder ao Tópico



  1. #1

    Padrão Problemas com LB rotas Estaticas

    Boa Tarde

    Sei que tem varios posts a respeito, ja paguei pra pessoas aqui fazerem, mas os que me suportaram nao conseguiram e acabaram me bloqueando apos o pgto, com isso queria uma solução do pessoal de forum que se mostra sempre a ajudar.
    tenho o sequinte ambiente

    link1 pppoe brideg mk autenticando
    link2 moden roteado 10.1.1.1 gw
    link3 moden roteado 10.0.0.18 gw

    com isso queria balancear esses 3 links de 4mb

    hoje tenho assim mas nao funciona, queria deixar um link pra youtube e rapidsahres outro pra 443 e orkut banco e o ppoe pra default, eu nao faço cache so balance versao 2.9.51

    Agradeço a todos


    / ip route
    add dst-address=0.0.0.0/0 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 routing-mark=Media comment="" \
    disabled=no
    add dst-address=32.0.0.0/3 gateway=10.1.1.1 distance=2 scope=255 target-scope=10 comment="" disabled=yes
    add dst-address=64.0.0.0/8 gateway=10.1.1.1 distance=2 scope=255 target-scope=10 comment="msn" disabled=yes
    add dst-address=65.0.0.0/8 gateway=10.1.1.1 distance=2 scope=255 target-scope=10 comment="msn" disabled=yes
    add dst-address=66.0.0.0/8 gateway=10.1.1.1 distance=2 scope=255 target-scope=10 comment="" disabled=yes
    add dst-address=67.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=72.0.0.0/8 gateway=10.1.1.1 distance=2 scope=255 target-scope=10 comment="Ytb" disabled=yes
    add dst-address=74.0.0.0/8 gateway=10.1.1.1 distance=2 scope=255 target-scope=10 comment="ytb" disabled=yes
    add dst-address=75.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=82.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=87.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=88.208.0.0/16 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=94.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=146.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=174.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=194.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=195.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=199.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=200.98.249.120/32 gateway=10.1.1.1,10.1.1.1 distance=2 scope=255 target-scope=10 comment="NO \
    REMOVER TESTE LINK2" disabled=yes
    add dst-address=200.146.79.165/32 gateway=200.204.210.232,200.204.210.232 distance=1 scope=255 target-scope=10 \
    comment="NO REMOVER TESTE LINK1" disabled=no
    add dst-address=200.176.3.142/32 gateway=10.0.0.138,10.0.0.138 distance=3 scope=255 target-scope=10 comment="NO \
    REMOVER TESTE LINK3" disabled=yes
    add dst-address=200.201.174.0/24 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="msn" disabled=no
    add dst-address=201.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="TEsTE" disabled=no
    add dst-address=204.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="TEsTE" disabled=no
    add dst-address=206.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=207.0.0.0/8 gateway=10.1.1.1 distance=2 scope=255 target-scope=10 comment="msn" disabled=yes
    add dst-address=208.0.0.0/8 gateway=10.1.1.1 distance=2 scope=255 target-scope=10 comment="ytb" disabled=yes
    add dst-address=209.0.0.0/8 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no
    add dst-address=213.0.0.0/8 gateway=10.1.1.1 distance=2 scope=255 target-scope=10 comment="" disabled=yes
    add dst-address=216.239.32.0/19 gateway=10.0.0.138 distance=3 scope=255 target-scope=10 comment="" disabled=no

  2. #2
    André Andrade*MikrotikRio Avatar de interhome
    Ingresso
    Oct 2008
    Localização
    Brasil.
    Posts
    1.095
    Posts de Blog
    15

    Padrão

    Poste o seu firewall completo. Principalmente o Mangle e o nat.



  3. #3

    Padrão OK ae esta

    / ip firewall nat
    add chain=srcnat action=masquerade src-address=192.168.0.0/16 comment="" disabled=no
    add chain=dstnat action=dst-nat to-addresses=192.168.7.2 to-ports=3389 dst-port=3389 protocol=tcp comment="Acesso \
    Remoto" disabled=yes

    / ip firewall mangle
    add chain=prerouting action=mark-routing new-routing-mark=Media passthrough=yes dst-port=554 protocol=tcp \
    comment="radio" disabled=no
    add chain=prerouting action=mark-connection new-connection-mark=p2p_conn passthrough=yes p2p=all-p2p \
    comment="Marcando Protocolo P2P" disabled=no
    add chain=prerouting action=mark-connection new-connection-mark=p2p_conn passthrough=yes dst-port=0 protocol=tcp \
    comment="" disabled=no
    add chain=prerouting action=mark-connection new-connection-mark=p2p_conn passthrough=yes dst-port=0 protocol=udp \
    comment="" disabled=no
    add chain=prerouting action=mark-connection new-connection-mark=p2p_conn passthrough=yes p2p=warez comment="" \
    disabled=no
    add chain=prerouting action=mark-connection new-connection-mark=p2p_conn passthrough=yes dst-port=4660-4675 \
    protocol=udp comment="" disabled=no
    add chain=prerouting action=mark-connection new-connection-mark=p2p_conn passthrough=yes dst-port=4660-4675 \
    protocol=tcp comment="" disabled=no
    add chain=prerouting action=mark-connection new-connection-mark=p2p_conn passthrough=yes dst-port=6340-6400 \
    protocol=udp comment="" disabled=no
    add chain=prerouting action=mark-packet new-packet-mark=p2p_packet passthrough=no connection-mark=p2p_conn \
    comment="" disabled=no

    so tem isso mais nada

  4. #4
    André Andrade*MikrotikRio Avatar de interhome
    Ingresso
    Oct 2008
    Localização
    Brasil.
    Posts
    1.095
    Posts de Blog
    15

    Padrão

    Dá para fazer sim, mas demanda de um pouco de tempo. Assim que puder tentarei te ajudar. Nesse intervalo de tempo é necessario rotear o seu modem.



  5. #5

    Padrão ok

    Citação Postado originalmente por interhome Ver Post
    Dá para fazer sim, mas demanda de um pouco de tempo. Assim que puder tentarei te ajudar. Nesse intervalo de tempo é necessario rotear o seu modem.

    Ok ja esta tudo pronto

  6. #6
    André Andrade*MikrotikRio Avatar de interhome
    Ingresso
    Oct 2008
    Localização
    Brasil.
    Posts
    1.095
    Posts de Blog
    15

    Padrão

    Bom dia,

    a idéia é marcar as conexoes do que se quer no mangle, assim vc vai criando várias marcações. Quanto mais marcações, maior a mobilidade em direcionar o fluxo para o que se quer.

    Sentei para tentar te ajudar mas me falta algumas coisas:

    Informar o nome correto de cada interface e seu gateway.

    Link1 = ?
    Link2 = 10.1.1.1
    LINK3 = 10.0.0.18
    CLIENTES= ?

    Deve informar corretamente. Se esses numeros estão corretos, a regra que vc tem esta direcionando para o gateway 10.0.0.138. Quem é esse gateway?

    Vc só tem link adsl ?
    Última edição por interhome; 01-02-2009 às 12:12.