pode parecer estupido mas pra fim foi foda conseguir servir pelo mikrotik, pq os kra q procurei daqui ninguem ajudo e uns até quisenram cobrar pelas dicas!
pra quem quise sabe como navega vai la:
/interface enable name
[admin@MikroTik] interface> print
Flags: X - disabled, D - dynamic, R - running
# NAME TYPE MTU
0 X ether1 ether 1500
0 X ether2 ether 1500
[admin@MikroTik] interface> enable 0
[admin@MikroTik] interface> enable ether2
[admin@MikroTik] interface> print
Flags: X - disabled, D - dynamic, R - running
# NAME MTU TYPE
0 R ether1 ether 1500
0 R ether2 ether 1500
[admin@MikroTik] interface>
/interface set
[admin@MikroTik] interface> set 0 name=Public
[admin@MikroTik] interface> set 1 name=Local
[admin@MikroTik] interface> print
Flags: X - disabled, D - dynamic, R - running
# NAME MTU TYPE
0 R Public ether 1500
0 R Local ether 1500
[admin@MikroTik] interface>
Use o 'setup' pra adicionar os ip´s
/setup
no meu caso
local = 192.168.0.254/24
public = 15.0.0.217
gateway = 15.0.0.10
[admin@MikroTik] ip address> add address 192.168.0.254/24 interface Local
[admin@MikroTik] ip address> add address 15.0.0.217/24 interface Public
[admin@MikroTik] ip address> print
Flags: X - disabled, I - invalid, D - dynamic
# ADDRESS NETWORK BROADCAST INTERFACE
0 15.0.0.217/24 15.0.0.217 15.0.0.255 Public
1 192.168.0.254/24 192.168.0.0 192.168.0.255 Local
[admin@MikroTik] ip address>
(NO MEU FICO 15.0.0.0 A NETWORK, ENTREI NO WINBOX E MUDEI POR LA PARA 15.0.0.217)
Dai ja da pra entra pelo winbox
Abre o terminal e digita la o restante
configurando a rota
[admin@MikroTik] ip route> print
Flags: X - disabled, I - invalid, D - dynamic, J - rejected,
C - connect, S - static, R - rip, O - ospf, B - bgp
# DST-ADDRESS G GATEWAY DISTANCE INTERFACE
0 DC 192.168.0.0/24 r 0.0.0.0 0 Local
1 DC 15.0.0.0/24 r 0.0.0.0 0 Public
[admin@MikroTik] ip route> print detail
Flags: X - disabled, I - invalid, D - dynamic, J - rejected,
C - connect, S - static, R - rip, O - ospf, B - bgp
0 DC dst-address=192.168.0.0/24 preferred-source=192.168.0.254
gateway=0.0.0.0 gateway-state=reachable distance=0 interface=Local
1 DC dst-address=15.0.0.0/24 preferred-source=15.0.0.217 gateway=0.0.0.0
gateway-state=reachable distance=0 interface=Public
[admin@MikroTik] ip route>
[admin@MikroTik] ip route> add gateway=15.0.0.10
[admin@MikroTik] ip route> print
Flags: X - disabled, I - invalid, D - dynamic, J - rejected,
C - connect, S - static, R - rip, O - ospf, B - bgp
# DST-ADDRESS G GATEWAY DISTANCE INTERFACE
0 S 0.0.0.0/0 r 15.0.0.10 1 Public
1 DC 192.168.0.0/24 r 0.0.0.0 0 Local
2 DC 15.0.0.0/24 r 0.0.0.0 0 Public
[admin@MikroTik] ip route>
Testando a conexão
/ping
[admin@MikroTik] ip route> /ping 15.0.0.10 (TEU GATEWAY)
15.0.0.10 64 byte pong: ttl=255 time=7 ms
15.0.0.10 64 byte pong: ttl=255 time=5 ms
15.0.0.10 64 byte pong: ttl=255 time=5 ms
3 packets transmitted, 3 packets received, 0% packet loss
round-trip min/avg/max = 5/5.6/7 ms
[admin@MikroTik] ip route>
[admin@MikroTik] ip route> /ping 192.168.0.2 (TEU CLIENTE)
192.168.0.2 64 byte pong: ttl=255 time<1 ms
192.168.0.2 64 byte pong: ttl=255 time<1 ms
192.168.0.2 64 byte pong: ttl=255 time<1 ms
3 packets transmitted, 3 packets received, 0% packet loss
round-trip min/avg/max = 0/0.0/0 ms
[admin@MikroTik] ip route>
C:\>ping 192.168.0.254 (TUA PLACA LOCAL)
Reply from 192.168.0.254: bytes=32 time=10ms TTL=253
Reply from 192.168.0.254: bytes=32 time<10ms TTL=253
Reply from 192.168.0.254: bytes=32 time<10ms TTL=253
C:\>ping 15.0.0.217 (TUA PLACA PUBLICA)
Reply from 15.0.0.217: bytes=32 time=10ms TTL=253
Reply from 15.0.0.217: bytes=32 time<10ms TTL=253
Reply from 15.0.0.217: bytes=32 time<10ms TTL=253
APLICANDO Masquerading
[admin@MikroTik] ip firewall src-nat> add action=masquerade out-interface=Public
[admin@MikroTik] ip firewall src-nat> print
Flags: X - disabled, I - invalid
0 src-address=0.0.0.0/0:0-65535 dst-address=0.0.0.0/0:0-65535
out-interface=Public protocol=all icmp-options=any:any flow=""
limit-count=0 limit-burst=0 limit-time=0s action=masquerade
to-src-address=0.0.0.0 to-src-port=0-65535 bytes=0 packets=0
[admin@MikroTik] ip firewall src-nat>
PRONTO JA TA NAVEGANDO