![]() I'm not sure I understand the part you wrote about NAT. What you haven't shown, though, are the actual marked routes, can you please show your /ip route export? Since your load balancing works, I assume this part is fine too, but better double-check. So up to the routing-mark assignment, we are fine here. The merit is that your mangle rules in chains input and output do ensure that what came in via one of the WANs will be responded via the same WAN, and that the other rules in chain prerouting do not break this. the default one".īut that's not the merit. Well, "only the default routing table" and "they are configured to use for the same connection always the same WAN interface" don't fit well to the same paragraph The default routing table is the one called "main", and a routing-mark is essentialy a synonym to a routing table name, except that no routing-mark assigned means "use the routing table called 'main', i.e. Src-address=192.168.0.0/16 connection-mark=Sticky_Backup log=no log-prefix="" Src-address=192.168.0.0/16 connection-mark=Sticky_Main log=no log-prefix=""ġ4 chain=prerouting action=mark-routing new-routing-mark=Backup_Route passthrough=ye> Passthrough=yes routing-mark=Backup_Route connection-mark=LAN-WAN log=noġ3 chain=prerouting action=mark-routing new-routing-mark=Main_Route passthrough=yes Passthrough=yes routing-mark=Main_Route connection-mark=LAN-WAN log=noġ2 chain=prerouting action=mark-connection new-connection-mark=Sticky_Backup Src-address=192.168.0.0/16 connection-mark=LAN-WAN log=no log-prefix=""Ĭhain=prerouting action=mark-connection new-connection-mark=Sticky_Main Passthrough=yes dst-address=!192.168.0.0/16 connection-mark=no-mark log=noĬhain=prerouting action=mark-routing new-routing-mark=Main_Route passthrough=yes Src-address=192.168.0.0/16 connection-mark=WAN2-LAN log=no log-prefix=""Ĭhain=prerouting action=mark-connection new-connection-mark=LAN-WAN ![]() Src-address=192.168.0.0/16 connection-mark=WAN1-LAN log=no log-prefix=""Ĩ chain=prerouting action=mark-routing new-routing-mark=Backup_Route passthrough=ye> Passthrough=yes connection-mark=no-mark in-interface=E6-WAN1-Fritz!Box log=noĦ chain=forward action=mark-connection new-connection-mark=WAN2-LAN passthrough=yesħ chain=prerouting action=mark-routing new-routing-mark=Main_Route passthrough=yes ![]() Code: Select all 0 Accept internal LANĬhain=prerouting action=accept src-address=192.168.0.0/16ĭst-address=192.168.0.0/16 log=no log-prefix=""Ĭhain=input action=mark-connection new-connection-mark=WAN1-ROS passthrough=yesĬonnection-mark=no-mark in-interface=E6-WAN1-Fritz!Box log=no log-prefix=""Ģ chain=input action=mark-connection new-connection-mark=WAN2-ROS passthrough=yesĬonnection-mark=no-mark in-interface=E7-WAN2-GigaCube log=no log-prefix=""ģ chain=output action=mark-routing new-routing-mark=Main_Route passthrough=yesĬonnection-mark=WAN1-ROS log=no log-prefix=""Ĥ chain=output action=mark-routing new-routing-mark=Backup_Route passthrough=yesĬonnection-mark=WAN2-ROS log=no log-prefix=""Ĭhain=forward action=mark-connection new-connection-mark=WAN1-LAN
0 Comments
Leave a Reply. |