É que os modens (principalmente os caseiros) não tem poder de processamento suficiente para tanto tráfego. Assim, o mais indicado é utilizá-los apenas como BRIDGE e deixar a parte pesada para o PC.
Abraço.
Versão Imprimível
olha a regra que eu coloquei aqui para não presisar colocar o ip no address list:
add action=add-src-to-address-list address-list=loopback address-list-timeout=1h chain=input comment=\
"tentando passar link" disabled=no dst-address=187.xxx.xxx.xxx dst-port=8200-8300 protocol=tcp
com ela eu conecto pelo endereço valodo e ele já poe no address list sempre tenho que conectar no load primeiro eu mantenho por 1 hora mas é opcional
Tentei fazer item a item deste seu export, so alterando minhas interfaces
Tenho 2 modens da virtua NET de 12Mb cada, todos usam dhcp cliente do MK.
Tenho um interface wlan1 onde distribuo para todos de casa, nao uso comercial, mas gostaria de aproveitar mais estes 2 links.
Segue minha configuracao que tive que desabilitar pois nao consigo navegar, mas consigo dar ping diretamento do terminal do mk.
Estranho que no mangle a linha out load DST nao estava contanto 0/0 porem como sou iniciante reparei depois de algum tempo que deveria colocar no address list a linha rede-interna com minha rede 192.168.0.0/25 so depois disto que comecou a contar, mas memso assim nao navegava no pc, porem a linha to_ether1 e to_ether2 nao sai do zero.
Nao sei mais o que fazer pois como falei estou estudando bastante sobre o mk, fui ao mum2009 em copa onde aprendi bastante, mas falta muitas milhas para alcancar voces.
Segue meu export
Código :
# dec/28/2009 21:20:53 by RouterOS 4.4 # /ip firewall mangle add action=accept chain=prerouting comment="out load DST" disabled=yes \ dst-address-list=rede-interna in-interface=wlan1 add action=mark-connection chain=input comment=ether1_conn connection-state=\ new disabled=yes in-interface=ether1 new-connection-mark=ether1_conn \ passthrough=yes add action=mark-connection chain=input comment=ether2_conn connection-state=\ new disabled=yes in-interface=ether2 new-connection-mark=ether2_conn \ passthrough=yes add action=mark-routing chain=output comment=to_ether1 connection-mark=\ ether1_conn connection-state=new disabled=yes new-routing-mark=to_ether1 \ passthrough=no add action=mark-routing chain=output comment=to_ether2 connection-mark=\ ether2_conn connection-state=new disabled=yes new-routing-mark=to_ether2 \ passthrough=no add action=mark-connection chain=prerouting comment=ether1_conn disabled=yes \ dst-address-type=!local in-interface=wlan1 new-connection-mark=\ ether1_conn passthrough=yes per-connection-classifier=\ both-addresses-and-ports:2/0 add action=mark-connection chain=prerouting comment=ether2_conn disabled=yes \ dst-address-type=!local in-interface=wlan1 new-connection-mark=\ ether2_conn passthrough=yes per-connection-classifier=\ both-addresses-and-ports:2/1 add action=mark-routing chain=prerouting comment=to_ether1 connection-mark=\ ether1_conn disabled=yes in-interface=wlan1 new-routing-mark=to_ether1 \ passthrough=no add action=mark-routing chain=prerouting comment=to_ether2 connection-mark=\ ether2_conn disabled=yes in-interface=wlan1 new-routing-mark=to_ether2 \ passthrough=no ________________________________________________________________________________ /ip firewall address-list add address=192.168.0.0/25 comment="" disabled=yes list=rede-interna _________________________________________________________________________________ /ip firewall filter add action=tarpit chain=input comment="" disabled=no dst-port=21-23 protocol=\ tcp add action=accept chain=forward comment="Rede interna" disabled=no \ src-address=192.168.0.0/25 add action=accept chain=forward comment="" disabled=no dst-address=\ 192.168.0.0/25 add action=drop chain=forward comment=Exclusao disabled=no _________________________________________________________________________ /ip firewall nat add action=masquerade chain=srcnat comment="" disabled=yes out-interface=\ ether1 add action=masquerade chain=srcnat comment="" disabled=yes out-interface=\ ether2 add action=masquerade chain=srcnat comment="" disabled=no ________________________________________________________________________________ /ip route add comment=link1 disabled=yes distance=1 dst-address=0.0.0.0/0 gateway=\ ether1 routing-mark=to_ether1 scope=30 target-scope=10 add comment=link2 disabled=yes distance=1 dst-address=0.0.0.0/0 gateway=\ ether2 routing-mark=to_ether2 scope=30 target-scope=10
Desculpa pelo texto longo.
Abracao a todos
Caros amigos, estou tentando fazer um pcc com dois links iguais de 1m/500k, uso um modem 500g e 500t ambos roteados que jogam para uma rb 450 3.30 so para esse balance, porem a carga esta saindo apenas por um link , o outro so funciona quando desativo o primeiro, pelo que sei o pcc balanceia de forma por igual , porem ja fiz as regras pelo pcc do wiki e nada, agora estou tentando pelo do m4d3 e ainda nao consigui resolver esse problema, peço ajuda do colegas pois ja revisei todas as regras varias vezes e nada de dar certo, abaixo posto minhas regras. obrigado.
ether 3 - cliente
ether 4 - modem 1
ether 5 - modem 2
/ip address
add address=172.2.10.2/24 broadcast=172.2.10.255 comment="MODEM 1" disabled=\
no interface=ether4 network=172.2.10.0
add address=172.3.10.2/24 broadcast=172.3.10.255 comment="MODEM 2" disabled=\
no interface=ether5 network=172.3.10.0
add address=172.1.10.1/24 broadcast=172.1.10.255 comment="CLIENTE" \
disabled=no interface=ether3 network=172.1.10.0
--------------------------------------------------------------------------------
/ip firewall mangle
add action=accept chain=prerouting comment="Sem Balance" disabled=no \
dst-address-list=Sem_Balance in-interface=ether3
add action=mark-connection chain=input comment="" connection-state=new \
disabled=no in-interface=ether4 new-connection-mark=modem1_conn \
passthrough=yes
add action=mark-connection chain=input comment="" connection-state=new \
disabled=no in-interface=ether5 new-connection-mark=modem2_conn \
passthrough=yes
add action=mark-routing chain=output comment="" connection-mark=modem1_conn \
disabled=no new-routing-mark=to_modem1 passthrough=no
add action=mark-routing chain=output comment="" connection-mark=modem2_conn \
disabled=no new-routing-mark=to_modem2 passthrough=no
add action=mark-connection chain=prerouting comment="" disabled=no \
dst-address-type=local in-interface=ether3 new-connection-mark=\
modem1_conn1 passthrough=yes per-connection-classifier=\
both-addresses-and-ports:2/0
add action=mark-connection chain=prerouting comment="" disabled=no \
dst-address-type=local in-interface=ether3 new-connection-mark=\
modem2_conn2 passthrough=yes per-connection-classifier=\
both-addresses-and-ports:2/1
add action=mark-routing chain=prerouting comment="" connection-mark=\
modem1_conn1 disabled=no in-interface=ether3 new-routing-mark=to1_modem1 \
passthrough=no
add action=mark-routing chain=prerouting comment="" connection-mark=\
modem2_conn2 disabled=no in-interface=ether3 new-routing-mark=to2_modem2 \
passthrough=no
-----------------------------------------------------------------------------------
/ip route
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\
172.3.10.1 routing-mark=to_modem2 scope=30 target-scope=10
add check-gateway=ping comment="" disabled=no distance=2 dst-address=\
0.0.0.0/0 gateway=172.2.10.1 scope=30 target-scope=10
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\
172.2.10.1 routing-mark=to_modem1 scope=30 target-scope=10
add check-gateway=ping comment="" disabled=no distance=3 dst-address=\
0.0.0.0/0 gateway=172.3.10.1 scope=30 target-scope=10
-----------------------------------------------------------------------------------
/ip firewall nat
add action=masquerade chain=srcnat comment="" disabled=no out-interface=\
ether4
add action=masquerade chain=srcnat comment="" disabled=no out-interface=\
ether5
Anexo 8579
eu estava com mesmo problema ,,,
e apos rever todas as regras com muito cuidado e atenção ( e tinha erros de configuração ) no meu caso resolveu assim ,
,na quarta regra no ip,firewal,mangle,no extra adress tip local ticar a opção invert,,,apos ta perfeito com 3 link de 4 mb..
pode rever e persistir que da certo,,