Sei sulla pagina 1di 1

/interface ethernet

set [ find default-name=ether4 ] name=LAN


set [ find default-name=ether1 ] name=WAN1
set [ find default-name=ether2 ] name=WAN2
set [ find default-name=ether3 ] name=WAN3
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip address
add address=10.0.22.2/24 interface=WAN1 network=10.0.22.0
add address=10.0.23.2/24 interface=WAN2 network=10.0.23.0
add address=10.0.24.2/24 interface=WAN3 network=10.0.24.0
add address=10.18.80.1/16 interface=LAN network=10.18.80.0
/ip dns
set servers=10.18.80.1,200.48.225.130
/ip firewall mangle
add action=mark-connection chain=input in-interface=WAN1 new-connection-
mark=WAN1_conn
add action=mark-connection chain=input in-interface=WAN2 new-connection-
mark=WAN2_conn
add action=mark-connection chain=input in-interface=WAN3 new-connection-
mark=WAN3_conn
add action=mark-routing chain=output connection-mark=WAN1_conn new-routing-
mark=to_WAN1
add action=mark-routing chain=output connection-mark=WAN2_conn new-routing-
mark=to_WAN2
add action=mark-routing chain=output connection-mark=WAN3_conn new-routing-
mark=to_WAN3
add action=accept chain=prerouting dst-address=10.0.22.0/24 in-interface=LAN
add action=accept chain=prerouting dst-address=10.0.23.0/24 in-interface=LAN
add action=accept chain=prerouting dst-address=10.0.24.0/24 in-interface=LAN
add action=mark-connection chain=prerouting dst-address-type=!local in-
interface=LAN new-connection-mark=WAN1_conn passthrough=yes per-connection-
classifier=both-addresses-and-ports:3/0
add action=mark-connection chain=prerouting dst-address-type=!local in-
interface=LAN new-connection-mark=WAN2_conn passthrough=yes per-connection-
classifier=both-addresses-and-ports:3/1
add action=mark-connection chain=prerouting dst-address-type=!local in-
interface=LAN new-connection-mark=WAN3_conn passthrough=yes per-connection-
classifier=both-addresses-and-ports:3/2
add action=mark-routing chain=prerouting connection-mark=WAN1_conn in-interface=LAN
new-routing-mark=to_WAN1
add action=mark-routing chain=prerouting connection-mark=WAN2_conn in-interface=LAN
new-routing-mark=to_WAN2
add action=mark-routing chain=prerouting connection-mark=WAN3_conn in-interface=LAN
new-routing-mark=to_WAN3

/ip firewall nat


add action=masquerade chain=srcnat out-interface=WAN1
add action=masquerade chain=srcnat out-interface=WAN2
add action=masquerade chain=srcnat out-interface=WAN3
/ip route
add check-gateway=ping distance=1 gateway=10.0.22.1 routing-mark=to_WAN1
add check-gateway=ping distance=1 gateway=10.0.23.1 routing-mark=to_WAN2
add check-gateway=ping distance=1 gateway=10.0.24.1 routing-mark=to_WAN2
add check-gateway=ping distance=1 gateway=10.0.22.1
add check-gateway=ping distance=2 gateway=10.0.23.1
add check-gateway=ping distance=1 gateway=10.0.24.1

Potrebbero piacerti anche