Página 2 de 3 PrimeiroPrimeiro 123 ÚltimoÚltimo
+ Responder ao Tópico



  1. Citação Postado originalmente por Acronimo Ver Post
    pode se colocar todos em um tunel, se nao esta equilibrado é problema no mangle
    Se eu colocar as regras aqui, você pode pode verificar?

  2. Citação Postado originalmente por Arthur Bernardes Ver Post
    Claro, coloque sim Marcelo!

    Coloquei 16 BOTHs e a carga ficou mais ou menos balanceada, mas sempre se nota que o link1 é mais explorado principalmente no upload mesmo tendo apenas 1 both e os 3 links tendo cargas iguais


    MikroTik RouterOS 5.16




    /ip firewall mangle
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-list=LINK0 in-interface=ether5 new-connection-mark=Sites0 \
    passthrough=yes
    add action=mark-routing chain=prerouting connection-mark=Sites0 disabled=no \
    in-interface=ether5 new-routing-mark=Rota0 passthrough=no
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-list=LINK1 in-interface=ether5 new-connection-mark=Sites1 \
    passthrough=yes
    add action=mark-routing chain=prerouting connection-mark=Sites1 disabled=no \
    in-interface=ether5 new-routing-mark=Rota1 passthrough=no
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-list=LINK2 in-interface=ether5 new-connection-mark=Sites2 \
    passthrough=yes


    =================================================
    add action=mark-routing chain=prerouting connection-mark=Sites2 disabled=no \
    in-interface=ether5 new-routing-mark=Rota2 passthrough=no
    add action=accept chain=prerouting comment="HTTPS FORA DO LOADBALACED" \
    disabled=no dst-port=443 in-interface=ether5 protocol=tcp
    add action=accept chain=prerouting comment="FORA DO LOADBALACED" disabled=no \
    dst-address-list=loopback in-interface=ether5
    add action=change-ttl chain=forward comment="Filtro Tracert / Traceroute" \
    disabled=no new-ttl=set:30 passthrough=yes protocol=icmp

    =================================================
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    in-interface=link_ether1 new-connection-mark=link_ether1_conn passthrough=\
    yes
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    in-interface=link_ether2 new-connection-mark=link_ether2_conn passthrough=\
    yes
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    in-interface=link_ether3 new-connection-mark=link_ether3_conn passthrough=\
    yes


    =================================================
    add action=mark-routing chain=output connection-mark=link_ether1_conn disabled=\
    no new-routing-mark=to_link_ether1 passthrough=yes
    add action=mark-routing chain=output connection-mark=link_ether2_conn disabled=\
    no new-routing-mark=to_link_ether2 passthrough=yes
    add action=mark-routing chain=output connection-mark=link_ether3_conn disabled=\
    no new-routing-mark=to_link_ether3 passthrough=yes


    =================================================
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether1_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/0


    =================================================
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether2_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/1
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether2_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/2
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether2_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/3
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether2_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/4
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether2_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/5
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether2_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/6
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether2_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/7


    =================================================
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether3_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/8
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether3_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/9
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether3_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/10
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether3_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/11
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether3_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/12
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether3_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/13
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether3_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/14
    add action=mark-connection chain=prerouting connection-state=new disabled=no \
    dst-address-type=!local in-interface=ether5 new-connection-mark=\
    link_ether3_conn passthrough=yes per-connection-classifier=\
    both-addresses-and-ports:16/15




    =================================================
    add action=mark-routing chain=prerouting connection-mark=link_ether1_conn \
    disabled=no in-interface=ether5 new-routing-mark=to_link_ether1 \
    passthrough=yes
    add action=mark-routing chain=prerouting connection-mark=link_ether2_conn \
    disabled=no in-interface=ether5 new-routing-mark=to_link_ether2 \
    passthrough=yes
    add action=mark-routing chain=prerouting connection-mark=link_ether3_conn \
    disabled=no in-interface=ether5 new-routing-mark=to_link_ether3 \
    passthrough=yes



  3. Porque vc colocou 16?Existe um calculo para isso.

    Eu tenho 10 links de 35MB e to passando por o mesmo problema no 1 link

  4. Usem balanceamento por rotas, garanto que não vai sofrer com isso, tem que saber fazer... mais fica muito bom.
    Procurem né um tópico aqui mesmo que já postei.
    Ou busquem fazer o "pcc 2020", retirando o nat do concentrador, para o balance ter "capacidade" de explorar todos os links em https.



  5. Citação Postado originalmente por fabinhonsouza Ver Post
    Porque vc colocou 16?Existe um calculo para isso.

    Eu tenho 10 links de 35MB e to passando por o mesmo problema no 1 link
    Pelo que foi falado aqui, é porque as conexões para páginas https saem pelo link 1, vou procurar alguma regra que faça balanceamento em todos os links para o HTTPS sem dar problema nos bancos.

    Se alguém souber de um tutorial para o problema gentileza deixar o caminho aqui para os UNDERs






Tópicos Similares

  1. Respostas: 4
    Último Post: 16-04-2015, 21:42
  2. Por favor ajuda no sarg
    Por fisiconuclear18 no fórum Redes
    Respostas: 1
    Último Post: 29-12-2005, 16:39
  3. Por favor ajuda com firewall/masquerade/terminalservice/vnc
    Por alimasilva no fórum Servidores de Rede
    Respostas: 3
    Último Post: 22-11-2005, 08:19
  4. Trocar direcional por omni em ap
    Por jesusnetworks no fórum Redes
    Respostas: 4
    Último Post: 05-10-2004, 11:02
  5. Monitoramento de banda por IP AJUDA
    Por ftmiranda no fórum Servidores de Rede
    Respostas: 3
    Último Post: 21-02-2004, 07:54

Visite: BR-Linux ·  VivaOLinux ·  Dicas-L