Documentos de Académico
Documentos de Profesional
Documentos de Cultura
Balanceo Avanzado PCC 3 WAN
Balanceo Avanzado PCC 3 WAN
direcciones IP de acu
ISP o DNS google 8.8.
vigilancia, preferi
otro.
firewall nat
action=masquerade chain=srcnat out-interface=WAN1
action=masquerade chain=srcnat out-interface=WAN2
action=masquerade chain=srcnat out-interface=WAN3
**NOTA IMPORTANTE
***INICIO: both-addresses-and-ports
/ip firewall mangle
add action=mark-connection chain=prerouting dst-address-type=!local in-interface
=LAN new-connection-mark=WAN1_conn per-connection-classifier=both-addresses-andports:3/0
add action=mark-connection chain=prerouting dst-address-type=!local in-interface
=LAN new-connection-mark=WAN2_conn per-connection-classifier=both-addresses-andports:3/1
add action=mark-connection chain=prerouting dst-address-type=!local in-interface
=LAN new-connection-mark=WAN3_conn per-connection-classifier=both-addresses-andports:3/2
***FIN
/ip
add
LAN
add
LAN
add
LAN
firewall mangle
action=mark-routing chain=prerouting connection-mark=WAN1_conn in-interface=
new-routing-mark=to_WAN1
action=mark-routing chain=prerouting connection-mark=WAN2_conn in-interface=
new-routing-mark=to_WAN2
action=mark-routing chain=prerouting connection-mark=WAN3_conn in-interface=
new-routing-mark=to_WAN3
***Importante***
/ip route
add check-gateway=ping distance=1 gateway=8.8.8.8 routing-mark=to_WAN1
add check-gateway=ping distance=2 gateway=8.8.4.4 routing-mark=to_WAN2
add check-gateway=ping distance=3 gateway=4.2.2.2 routing-mark=to_WAN3
add distance=1 gateway=10.0.0.1 routing-mark=to_WAN1
add distance=2 gateway=10.0.0.2 routing-mark=to_WAN2
add distance=3 gateway=10.0.0.3 routing-mark=to_WAN3
add distance=1 gateway=10.0.0.1
add distance=2 gateway=10.0.0.2
add distance=3 gateway=10.0.0.3
add distance=1 dst-address=8.8.8.8/32 gateway=192.168.3.254 scope=10
add distance=1 dst-address=8.8.4.4/32 gateway=192.168.2.254 scope=10
add distance=1 dst-address=4.2.2.2/32 gateway=192.168.1.254 scope=10
add check-gateway=ping distance=1 dst-address=10.0.0.1/32 gateway=8.8.8.8 scope=
10
add check-gateway=ping distance=1 dst-address=10.0.0.2/32 gateway=8.8.4.4 scope=
10
add check-gateway=ping distance=1 dst-address=10.0.0.3/32 gateway=4.2.2.2 scope=
10
Fuente para failover: http://wiki.mikrotik.com/wiki/Manual:Using_scope_and_targe
t-scope_attributes
Trafico Por Proveedor WAN1
/ip firewall mangle
add action=mark-connection chain=prerouting comment="Https port 443 trafico sep
arado by WAN1" disabled=yes dst-port=443 in-interface=LAN new-connection-mark=Ht
tps protocol=tcp
add action=mark-routing chain=prerouting connection-mark=Https disabled=yes in-i
nterface=LAN new-routing-mark=to_WAN1 passthrough=no
add action=mark-connection chain=prerouting comment="http port 80 Trafico separa
do by WAN1" disabled=yes dst-port=80 in-interface=LAN new-connection-mark=http p
rotocol=tcp
add action=mark-routing chain=prerouting connection-mark=http disabled=yes in-in
terface=LAN new-routing-mark=to_WAN1 passthrough=no