Posta suas regras que usou no balanceamento...
Versão Imprimível
Posta suas regras que usou no balanceamento...
ip firewall mangleCitação:
Postado originalmente por brenovale
add chain=prerouting src-address-list=gw1 in-interface=ether4 action=mark-connection new-connection-mark=gw1 passthrough=yes
add chain=prerouting src-address-list=gw1 in-interface=ether4 action=mark-routing new-routing-mark=gw1
add chain=prerouting src-address-list=gw2 in-interface=ether4 action=mark-connection new-connection-mark=gw2 passthrough=yes
add chain=prerouting src-address-list=gw2 in-interface=ether4 action=mark-routing new-routing-mark=gw2
add chain=prerouting src-address-list=gw3 in-interface=ether4 action=mark-connection new-connection-mark=gw3 passthrough=yes
add chain=prerouting src-address-list=gw3 in-interface=ether4 action=mark-routing new-routing-mark=gw3
add chain=prerouting in-interface=ether4 connection-state=new nth=1,1,1 action=mark-connection new-connection-mark=gw1 passthrough=yes comment="" disabled=no
add chain=prerouting in-interface=ether4 connection-mark=gw1 action=mark-routing new-routing-mark=gw1 passthrough=no comment="" disabled=no
add chain=prerouting in-interface=ether4 connection-state=new nth=1,1,0 action=mark-connection new-connection-mark=gw2 passthrough=yes comment="" disabled=no
add chain=prerouting in-interface=ether4 connection-mark=gw2 action=mark-routing new-routing-mark=gw2 passthrough=no comment="" disabled=no
add chain=prerouting in-interface=ether4 connection-state=new nth=1,1,0 action=mark-connection new-connection-mark=gw3 passthrough=yes comment="" disabled=no
add chain=prerouting in-interface=ether4 connection-mark=gw3 action=mark-routing new-routing-mark=gw3 passthrough=no comment="" disabled=no
----------------
ip firewall nat
add chain=srcnat connection-mark=gw1 action=src-nat to-addresses=201.x.x.x to-ports=0-65535 comment="" disabled=no
add chain=srcnat connection-mark=gw2 action=src-nat to-addresses=192.168.100.254 to-ports=0-65535 comment="" disabled=no
add chain=srcnat connection-mark=gw3 action=src-nat to-addresses=192.168.101.254 to-ports=0-65535 comment="" disabled=no
----------------
ip route
add dst-address=0.0.0.0/0 gateway=201.x.x.x scope=255 target-scope=10 routing-mark=gw1 comment="" disabled=no
add dst-address=0.0.0.0/0 gateway=192.168.100.1 scope=255 target-scope=10 routing-mark=gw2 comment="" disabled=no
add dst-address=0.0.0.0/0 gateway=192.168.101.1 scope=255 target-scope=10 routing-mark=gw3 comment="" disabled=no
add dst-address=0.0.0.0/0 gateway=201.x.x.x scope=255 target-scope=10 comment="" disabled=no
Não observei com muita atenção mas parece que quando cai uma conexao, o acesso fica lento, pois me parece que nas primeiras regras do Mangle ele força (Persistent) a ficar aquela rota naquele GW.
Tente analisar esse outro tutorial
http://wiki.mikrotik.com/wiki/Improv...tiple_Gateways
As poucas diferenças estão no Mangle (creio que retirar as 6 primeiras regras do Mangle), e trocar os valores do nth, pois como você tem 3 links de entrada, os valores tem que mudar. Pois vocë tem nth=1,1,0 para o GW 2 e o mesmo valor para o GW3
Tente (não sei se vai dar certo) nth=1,1,0 - nth=2,1,0 - nth=2,1,1
Mas acho que o principal sáo as 6 primeiras regras... Como esse outro tutorial voce conseguirá
Estou estudando os efeitos desses scripts : funciona 100% num load balance de um amigo meu com 4 links. Dê uma lida que vc vai entender o objetivo deles. Faça suas alterações e poste aqui o resultado.
add name="LINK1-UP" source="/ip route set \[/ip route find comment=link1\] \
disabled=no" policy=ftp,reboot,read,write,test,winbox
add name="LINK2-UP" source="/ip route set \[/ip route find comment=link2\] \
disabled=no" policy=ftp,reboot,read,write,test,winbox
add name="LINK3-UP" source="/ip route set \[/ip route find comment=link3\] \
disabled=no" policy=ftp,reboot,read,write,test,winbox
add name="LINK4-UP" source="/ip route set \[/ip route find comment=link4\] \
disabled=no" policy=ftp,reboot,read,write,test,winbox
add name="LINK1-DOWN" source="/ip route set \[/ip route find comment=link1\] \
disabled=yes" policy=ftp,reboot,read,write,test,winbox
add name="LINK2-DOWN" source="/ip route set \[/ip route find comment=link2\] \
disabled=yes" policy=ftp,reboot,read,write,test,winbox
add name="LINK3-DOWN" source="/ip route set \[/ip route find comment=link3\] \
disabled=yes" policy=ftp,reboot,read,write,test,winbox
add name="LINK4-DOWN" source="/ip route set \[/ip route find comment=link4\] \
disabled=yes" policy=ftp,reboot,read,write,test,winbox
Falow ...!
Na verdade eu já tirei as seis primeiras regras, e nao mudou muito não, vou ve a questão do nth.Citação:
Postado originalmente por Liandro Paulo Carniel