Hello,
I have always used Mangle to mark traffic to different routes, but I don't know without the routing rules it is better, worse or a different way to do it.
This is an example of marking traffic and then routing it:
Would it have been easier to use routing rules?
Thanks
I have always used Mangle to mark traffic to different routes, but I don't know without the routing rules it is better, worse or a different way to do it.
This is an example of marking traffic and then routing it:
Code:
/ip firewall mangleadd action=accept chain=prerouting comment="NO BALANCEAR TRAFICO PRIVADO" dst-address-list=RFC1918 src-address-list=RFC1918add action=accept chain=prerouting comment="INICIO PCC A ROUTER FTTH" dst-address=172.18.1.0/24 in-interface-list=LANadd action=accept chain=prerouting dst-address=172.18.2.0/24 in-interface-list=LANadd action=accept chain=prerouting dst-address=172.18.3.0/24 in-interface-list=LANadd action=accept chain=prerouting dst-address=172.18.4.0/24 in-interface-list=LANadd action=accept chain=prerouting dst-address=172.18.5.0/24 in-interface-list=LANadd action=accept chain=prerouting dst-address=172.18.6.0/24 in-interface-list=LANadd action=accept chain=prerouting comment="INICIO PCC A ENLACE ROTA" dst-address=195.53.96.0/23 in-interface-list=LANadd action=mark-connection chain=input comment="MARCADO DE CONEXIONES ORIGINADAS EN INTERNET" connection-mark=no-mark in-interface=pppoe-out_FTTH_01 new-connection-mark=hacia-FTTH_01-conn passthrough=yesadd action=mark-connection chain=input connection-mark=no-mark in-interface=pppoe-out_FTTH_02 new-connection-mark=hacia-FTTH_02-conn passthrough=yesadd action=mark-connection chain=input connection-mark=no-mark in-interface=ether3-FTTH_03 new-connection-mark=hacia-FTTH_03-conn passthrough=yesadd action=mark-connection chain=input connection-mark=no-mark in-interface=pppoe-out_FTTH_04 new-connection-mark=hacia-FTTH_04-conn passthrough=yesadd action=mark-connection chain=input connection-mark=no-mark in-interface=pppoe-out_FTTH_05 new-connection-mark=hacia-FTTH_05-conn passthrough=yesadd action=mark-connection chain=input connection-mark=no-mark in-interface=pppoe-out_FTTH_06 new-connection-mark=hacia-FTTH_06-conn passthrough=yesadd action=mark-connection chain=prerouting connection-mark=no-mark disabled=yes in-interface=BR_NO-CGNAT new-connection-mark=hacia-ENLACE-ROTA-conn passthrough=yesadd action=mark-connection chain=input connection-mark=no-mark in-interface=BR_NO-CGNAT new-connection-mark=hacia-ENLACE-ROTA-conn passthrough=yesadd action=mark-routing chain=output comment="MARCADO DE TRAFICO DE RESPUESTA DEL ROUTER A INTERNET" connection-mark=hacia-FTTH_01-conn new-routing-mark=hacia-FTTH_01 passthrough=noadd action=mark-routing chain=output connection-mark=hacia-FTTH_02-conn new-routing-mark=hacia-FTTH_02 passthrough=noadd action=mark-routing chain=output connection-mark=hacia-FTTH_03-conn new-routing-mark=hacia-FTTH_03 passthrough=noadd action=mark-routing chain=output connection-mark=hacia-FTTH_04-conn new-routing-mark=hacia-FTTH_04 passthrough=noadd action=mark-routing chain=output connection-mark=hacia-FTTH_05-conn new-routing-mark=hacia-FTTH_05 passthrough=noadd action=mark-routing chain=output connection-mark=hacia-FTTH_06-conn new-routing-mark=hacia-FTTH_06 passthrough=noadd action=mark-routing chain=output connection-mark=hacia-ENLACE-ROTA-conn new-routing-mark=hacia-ENLACE-ROTA passthrough=noadd action=mark-connection chain=prerouting comment="MARCAR CONEXIONES DESDE LA LAN PARA DISTRIBUIR BALANCEADO PROPORCIONAL" connection-mark=no-mark disabled=yes dst-address-type=!local hotspot=auth in-interface-list=LAN \ new-connection-mark=hacia-FTTH_01-conn passthrough=yes per-connection-classifier=both-addresses-and-ports:7/0add action=mark-connection chain=prerouting connection-mark=no-mark disabled=yes dst-address-type=!local hotspot=auth in-interface-list=LAN new-connection-mark=hacia-FTTH_02-conn passthrough=yes per-connection-classifier=\ both-addresses-and-ports:7/1add action=mark-connection chain=prerouting comment="MARCAR CONEXIONES DESDE LA LAN PARA DISTRIBUIR BALANCEADO PROPORCIONAL (directo)" connection-mark=no-mark dst-address-type=!local hotspot=auth in-interface-list="LAN_GUEST-01 (HS-FREE)" \ new-connection-mark=hacia-FTTH_01-conn passthrough=yesadd action=mark-connection chain=prerouting connection-mark=no-mark disabled=yes dst-address-type=!local hotspot=auth in-interface-list=LAN new-connection-mark=hacia-FTTH_03-conn passthrough=yes per-connection-classifier=\ both-addresses-and-ports:7/2add action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local hotspot=auth in-interface-list="LAN_GUEST-03 (PAY-B119)" new-connection-mark=hacia-FTTH_03-conn passthrough=yesadd action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local hotspot=auth in-interface-list="LAN_GUEST-02 (PAY-B114)" new-connection-mark=hacia-FTTH_02-conn passthrough=yesadd action=mark-connection chain=prerouting connection-mark=no-mark disabled=yes dst-address-type=!local hotspot=auth in-interface-list=LAN new-connection-mark=hacia-FTTH_04-conn passthrough=yes per-connection-classifier=\ both-addresses-and-ports:7/3add action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local in-interface-list="LAN_GUEST-04 (GPON)" new-connection-mark=hacia-FTTH_04-conn passthrough=yesadd action=mark-connection chain=prerouting connection-mark=no-mark disabled=yes dst-address-type=!local hotspot=auth in-interface-list=LAN new-connection-mark=hacia-FTTH_05-conn passthrough=yes per-connection-classifier=\ both-addresses-and-ports:7/4add action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local in-interface-list="LAN_GUEST-05 (LAN-B311 & MERAKI)" new-connection-mark=hacia-FTTH_05-conn passthrough=yesadd action=mark-connection chain=prerouting connection-mark=no-mark disabled=yes dst-address-type=!local hotspot=auth in-interface-list=LAN new-connection-mark=hacia-FTTH_06-conn passthrough=yes per-connection-classifier=\ both-addresses-and-ports:7/5add action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local in-interface-list=LAN_GUEST-06 new-connection-mark=hacia-FTTH_06-conn passthrough=yesadd action=mark-connection chain=prerouting connection-mark=no-mark disabled=yes dst-address-type=!local hotspot=auth in-interface-list=LAN new-connection-mark=hacia-ENLACE-ROTA-conn passthrough=yes per-connection-classifier=\ both-addresses-and-ports:7/6add action=mark-connection chain=prerouting connection-mark=no-mark dst-address-type=!local in-interface-list="LAN_GUEST-07 (ENLACE ROTA NO-CGNAT)" new-connection-mark=hacia-ENLACE-ROTA-conn passthrough=yesadd action=mark-routing chain=prerouting comment="MARCADO DE RUTAS A TODOS LOS PAQUETES QUE TENGAN MARCAS DE CONEXION EN LA LAN" connection-mark=hacia-FTTH_01-conn in-interface-list="LAN_GUEST-01 (HS-FREE)" new-routing-mark=hacia-FTTH_01 \ passthrough=noadd action=mark-routing chain=prerouting connection-mark=hacia-FTTH_02-conn in-interface-list="LAN_GUEST-02 (PAY-B114)" new-routing-mark=hacia-FTTH_02 passthrough=noadd action=mark-routing chain=prerouting connection-mark=hacia-FTTH_03-conn in-interface-list="LAN_GUEST-03 (PAY-B119)" new-routing-mark=hacia-FTTH_03 passthrough=noadd action=mark-routing chain=prerouting connection-mark=hacia-FTTH_04-conn in-interface-list="LAN_GUEST-04 (GPON)" new-routing-mark=hacia-FTTH_04 passthrough=noadd action=mark-routing chain=prerouting connection-mark=hacia-FTTH_05-conn in-interface-list="LAN_GUEST-05 (LAN-B311 & MERAKI)" new-routing-mark=hacia-FTTH_05 passthrough=noadd action=mark-routing chain=prerouting connection-mark=hacia-FTTH_06-conn in-interface-list=LAN_GUEST-06 new-routing-mark=hacia-FTTH_06 passthrough=no psd=21,3s,3,1add action=mark-routing chain=prerouting connection-mark=hacia-ENLACE-ROTA-conn in-interface-list="LAN_GUEST-07 (ENLACE ROTA NO-CGNAT)" new-routing-mark=hacia-ENLACE-ROTA passthrough=no/ip routeadd comment="RUTA PRINCIPAL MARCAS FTTH_01" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=pppoe-out_FTTH_01 pref-src="" routing-table=hacia-FTTH_01 scope=30 suppress-hw-offload=no target-scope=10add comment="RUTA PRINCIPAL MARCAS FTTH_02" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=pppoe-out_FTTH_02 pref-src="" routing-table=hacia-FTTH_02 scope=30 suppress-hw-offload=no target-scope=10add comment="RUTA PRINCIPAL MARCAS FTTH_03" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=172.18.3.1 pref-src="" routing-table=hacia-FTTH_03 scope=30 suppress-hw-offload=no target-scope=10add comment="RUTA PRINCIPAL MARCAS FTTH_04" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=pppoe-out_FTTH_04 pref-src="" routing-table=hacia-FTTH_04 scope=30 suppress-hw-offload=no target-scope=10add comment="RUTA PRINCIPAL MARCAS FTTH_05" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=pppoe-out_FTTH_05 pref-src="" routing-table=hacia-FTTH_05 scope=30 suppress-hw-offload=no target-scope=10add comment="RUTA PRINCIPAL MARCAS FTTH_06" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=pppoe-out_FTTH_06 pref-src="" routing-table=hacia-FTTH_06 scope=30 suppress-hw-offload=no target-scope=10add comment="RUTA PPAL PARA MIKROTIK - MAIN" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=pppoe-out_FTTH_06 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
Thanks
Statistics: Posted by hyxion14 — Tue Jan 23, 2024 7:21 pm