Vous êtes sur la page 1sur 3

/interface ethernet

set [ find default-name=ether1 ] comment=WAN1

set [ find default-name=ether2 ] comment=WAN2

set [ find default-name=ether3 ] comment=WAN3

set [ find default-name=ether5 ] comment=LAN

/ip pool

add name=pool1RED ranges=192.168.105.2-192.168.105.254

/ip dhcp-server

add address-pool=pool1RED disabled=no interface=ether5 name=server1

/ip address

add address=192.168.100.101/24 interface=ether1 network=192.168.100.0

add address=192.168.0.101/24 interface=ether2 network=192.168.0.0

add address=192.168.110.101/24 interface=ether3 network=192.168.110.0

add address=192.168.105.1/24 interface=ether5 network=192.168.105.0

/ip dhcp-server network

add address=192.168.105.0/24 dns-server=8.8.8.8,8.8.4.4 gateway=192.168.105.1 netmask=24

/ip firewall mangle

add action=accept chain=prerouting dst-address=192.168.100.0/24 in-interface=ether5

add action=accept chain=prerouting dst-address=192.168.110.0/24 in-interface=ether5

add action=accept chain=prerouting dst-address=192.168.0.0/24 in-interface=ether5


add action=mark-connection chain=prerouting connection-mark=no-mark in-interface=ether1
new-connection-mark=ISP1_conn passthrough=yes

add action=mark-connection chain=prerouting connection-mark=no-mark in-interface=ether3


new-connection-mark=ISP3_conn passthrough=yes

add action=mark-connection chain=prerouting connection-mark=no-mark in-interface=ether2


new-connection-mark=ISP2_conn passthrough=yes

add action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local


in-interface=ether5 new-connection-mark=ISP1_conn passthrough=yes per-connection-classifier=\

both-addresses:3/0

add action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local


in-interface=ether5 new-connection-mark=ISP3_conn passthrough=yes per-connection-classifier=\

both-addresses:3/2

add action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local


in-interface=ether5 new-connection-mark=ISP2_conn passthrough=yes per-connection-classifier=\

both-addresses:3/1

add action=mark-routing chain=prerouting connection-mark=ISP1_conn in-interface=ether5 new-


routing-mark=to_ISP1 passthrough=yes

add action=mark-routing chain=prerouting connection-mark=ISP3_conn in-interface=ether5 new-


routing-mark=to_ISP3 passthrough=yes

add action=mark-routing chain=prerouting connection-mark=ISP2_conn in-interface=ether5 new-


routing-mark=to_ISP2 passthrough=yes

add action=mark-routing chain=output connection-mark=ISP1_conn new-routing-mark=to_ISP1


passthrough=yes

add action=mark-routing chain=output connection-mark=ISP3_conn new-routing-mark=to_ISP3


passthrough=yes

add action=mark-routing chain=output connection-mark=ISP2_conn new-routing-mark=to_ISP2


passthrough=yes
/ip firewall nat

add action=masquerade chain=srcnat out-interface=ether1

add action=masquerade chain=srcnat out-interface=ether3

add action=masquerade chain=srcnat out-interface=ether2

/ip route

add distance=1 gateway=192.168.100.254 routing-mark=to_ISP1

add distance=1 gateway=192.168.110.1 routing-mark=to_ISP3

add distance=1 gateway=192.168.0.0 routing-mark=to_ISP2

Vous aimerez peut-être aussi