Sei sulla pagina 1di 2

/ ip address

add address=192.168.2.1/24 network=192.168.2.0 broadcast=192.168.2.255 interface


=LAN
add address=192.168.10.2/24 network=192.168.10.0 broadcast=192.168.10.255 interf
ace=WAN1
add address=192.168.4.2/24 network=192.168.4.0 broadcast=192.168.4.255 interface
=WAN2
add address=192.168.5.2/24 network=192.168.5.0 broadcast=192.168.5.255 interface
=WAN3
add address=192.168.6.2/24 network=192.168.6.0 broadcast=192.168.6.255 interface
=WAN4
/ ip firewall mangle
add chain=input in-interface=WAN1
1_conn
add chain=input in-interface=WAN2
2_conn
add chain=input in-interface=WAN3
3_conn
add chain=input in-interface=WAN4
3_conn
add chain=output
to_WAN1
add chain=output
to_WAN2
add chain=output
to_WAN3
add chain=output
to_WAN4
add
add
add
add

action=mark-connection new-connection-mark=WAN
action=mark-connection new-connection-mark=WAN
action=mark-connection new-connection-mark=WAN
action=mark-connection new-connection-mark=WAN

connection-mark=WAN1_conn action=mark-routing new-routing-mark=


connection-mark=WAN2_conn action=mark-routing new-routing-mark=
connection-mark=WAN3_conn action=mark-routing new-routing-mark=
connection-mark=WAN4_conn action=mark-routing new-routing-mark=

chain=prerouting
chain=prerouting
chain=prerouting
chain=prerouting

dst-address=192.168.10.0/24 action=accept in-interface=LAN


dst-address=192.168.4.0/24 action=accept in-interface=LAN
dst-address=192.168.5.0/24 action=accept in-interface=LAN
dst-address=192.168.6.0/24 action=accept in-interface=LAN

add chain=prerouting dst-address-type=!local in-interface=LAN per-connection-cla


ssifier=both-addresses:4/0 \action=mark-connection new-connection-mark=WAN1_conn
passthrough=yes
add chain=prerouting dst-address-type=!local in-interface=LAN per-connection-cla
ssifier=both-addresses:4/1 \action=mark-connection new-connection-mark=WAN2_conn
passthrough=yes
add chain=prerouting dst-address-type=!local in-interface=LAN per-connection-cla
ssifier=both-addresses:4/2 \action=mark-connection new-connection-mark=WAN3_conn
passthrough=yes
add chain=prerouting dst-address-type=!local in-interface=LAN per-connection-cla
ssifier=both-addresses:4/3 \action=mark-connection new-connection-mark=WAN3_conn
passthrough=yes
add
ing
add
ing
add
ing
add
ing

chain=prerouting connection-mark=WAN1_conn
new-routing-mark=to_WAN1
chain=prerouting connection-mark=WAN2_conn
new-routing-mark=to_WAN2
chain=prerouting connection-mark=WAN3_conn
new-routing-mark=to_WAN3
chain=prerouting connection-mark=WAN4_conn
new-routing-mark=to_WAN4

/ ip route

in-interface=LAN action=mark-rout
in-interface=LAN action=mark-rout
in-interface=LAN action=mark-rout
in-interface=LAN action=mark-rout

add dst-address=0.0.0.0/0
y=ping
add dst-address=0.0.0.0/0
=ping
add dst-address=0.0.0.0/0
=ping
add dst-address=0.0.0.0/0
=ping
add dst-address=0.0.0.0/0
add dst-address=0.0.0.0/0
add dst-address=0.0.0.0/0
add dst-address=0.0.0.0/0

gateway=192.168.10.1 routing-mark=to_WAN1 check-gatewa


gateway=192.168.4.1 routing-mark=to_WAN2 check-gateway
gateway=192.168.5.1 routing-mark=to_WAN3 check-gateway
gateway=192.168.6.1 routing-mark=to_WAN4 check-gateway
gateway=192.168.10.1 distance=1 check-gateway=ping
gateway=192.168.4.1 distance=2 check-gateway=ping
gateway=192.168.5.1 distance=3 check-gateway=ping
gateway=192.168.6.1 distance=4 check-gateway=ping

/ ip firewall nat
add chain=srcnat out-interface=WAN1 action=masquerade
add chain=srcnat out-interface=WAN2 action=masquerade
add chain=srcnat out-interface=WAN3 action=masquerade

..............
/ip route
add dst-address=8.8.8.8 gateway=192.168.10.1 scope=10 check-gateway=ping
add dst-address=4.4.8.8 gateway=192.168.4.1 scope=10 check-gateway=ping
add dst-address=8.8.8.8 gateway=192.168.5.1 scope=10 check-gateway=ping
add dst-address=4.4.8.8 gateway=192.168.6.1 scope=10 check-gateway=ping
add distance=1 gateway=8.8.8.8 routing-mark=to_ISP1 scope=30 target-scope=30
ck-gateway=ping
add distance=1 gateway=4.4.8.8 routing-mark=to_ISP2 scope=30 target-scope=30
ck-gateway=ping
add distance=1 gateway=8.8.8.8 routing-mark=to_ISP3 scope=30 target-scope=30
ck-gateway=ping
add distance=1 gateway=4.4.8.8 routing-mark=to_ISP4 scope=30 target-scope=30
ck-gateway=ping
add distance=1 gateway=8.8.8.8 check-gateway=ping
add distance=1 gateway=4.4.8.8 check-gateway=ping
add distance=1 gateway=8.8.8.8 check-gateway=ping
add distance=1 gateway=4.4.8.8 check-gateway=ping

che
che
che
che

Potrebbero piacerti anche