here is my route setup:
Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme, B - blackhole, U - unreachable, P - prohibit
DST-ADDRESS PREF-SRC GATEWAY-STATE GATEWAY DISTANCE INTERFACE
0 A S 0.0.0.0/0 200.163.176.237 reachable 200.163.176.233 1 WAN-2MB
reachable WAN-2MB WAN-2MB
1 A S 0.0.0.0/0 189.30.21.50 reachable 189.30.21.49 1 WAN-1MB
reachable WAN-1MB WAN-1MB
2 A S ;;; Gateway Default
0.0.0.0/0 reachable 200.163.176.233 1 WAN-2MB
3 A S 0.0.0.0/0 189.30.21.50 reachable 189.30.21.49 1 WAN-1MB
reachable WAN-1MB WAN-1MB
4 A S 0.0.0.0/0 reachable 200.163.176.233 1 WAN-2MB
5 X S 0.0.0.0/0 189.30.21.49 1
6 A S 0.0.0.0/0 reachable 200.163.176.233 1 WAN-2MB
7 A S 0.0.0.0/0 reachable 200.163.176.233 1 WAN-2MB
8 ADC 10.0.0.0/16 10.0.0.254 0 APs
9 ADC 10.1.3.0/24 10.1.3.1 0 LAN
10 ADC 10.1.4.0/24 10.1.4.1 0 LAN
11 ADC 11.0.0.0/16 11.0.0.253 0 APs
12 ADC 172.16.1.0/24 172.16.1.1 0 APs
13 ADC 172.16.2.0/24 172.16.2.1 0 APs
14 ADC 172.16.3.0/24 172.16.3.1 0 APs
15 ADC 172.17.1.0/24 172.17.1.1 0 APs
16 ADC 172.17.2.0/24 172.17.2.1 0 APs
17 ADC 172.17.3.0/24 172.17.3.1 0 APs
18 ADC 172.17.4.0/24 172.17.4.1 0 APs
19 ADC 172.17.5.0/24 172.17.5.1 0 APs
20 ADC 172.17.6.0/24 172.17.6.1 0 APs
21 ADC 189.30.21.48/29 189.30.21.50 0 WAN-1MB
22 ADC 192.168.0.0/24 192.168.0.1 0 LAN
23 ADC 200.163.176.232/29 200.163.176.237 0 WAN-2MB
and here is my route>rule setup(this one im not sure if its really right, testing configs to see if it works):
Flags: X - disabled, I - inactive
0 src-address=189.30.21.48/29 action=lookup table=rota2
1 src-address=200.163.176.232/29 action=lookup table=rota3
2 dst-address=189.30.21.48/29 routing-mark=rota2 action=lookup table=rota2
3 dst-address=200.163.176.232/29 routing-mark=rota3 action=lookup table=rota3
4 src-address=189.30.21.48/29 dst-address=200.163.176.232/29 action=lookup table=rota2
5 src-address=200.163.176.232/29 dst-address=189.30.21.48/29 action=lookup table=rota3
6 routing-mark=p2p action=lookup table=p2p
7 action=lookup table=main
here is my nat table(lots of rules to make custom setups for many clients, any help on that will be aprecciated)
Flags: X - disabled, I - invalid, D - dynamic
0 ;;; Posto do Carlinhos TV
chain=dstnat action=dst-nat to-addresses=172.17.5.13 to-ports=2001 dst-port=2001 protocol=tcp
1 ;;; E-Mule Ismael
chain=dstnat action=dst-nat to-addresses=172.16.1.47 to-ports=4671 dst-port=4671 protocol=tcp
2 ;;; E-Mule Gelson
chain=dstnat action=dst-nat to-addresses=192.168.0.80 to-ports=4670 dst-port=4670 protocol=tcp
3 ;;; E-Mule Caixa
chain=dstnat action=dst-nat to-addresses=192.168.0.70 to-ports=4666 ipv4-options=no-source-routing dst-port=4666 protocol=tcp
4 ;;; aciab teste
chain=dstnat action=dst-nat to-addresses=10.0.0.130 to-ports=5900 dst-port=5900 protocol=tcp
5 chain=dstnat action=dst-nat to-addresses=10.0.0.130 to-ports=1433 dst-port=1433 protocol=tcp
6 ;;; E-Mule Fabiano Pasch
chain=dstnat action=dst-nat to-addresses=172.16.3.21 to-ports=4669 dst-port=4669 protocol=tcp
7 ;;; E-Mule Robson
chain=dstnat action=dst-nat to-addresses=172.16.2.20 to-ports=4667 dst-port=4667 protocol=tcp
8 ;;; E-Mule Ganso
chain=dstnat action=dst-nat to-addresses=10.0.0.103 to-ports=4668 dst-port=4668 protocol=tcp
9 ;;; E-Mule Bruno
chain=dstnat action=dst-nat to-addresses=172.16.1.10 to-ports=4672 dst-port=4672 protocol=tcp
10 ;;; E-Mule Posto Carlinhos
chain=dstnat action=dst-nat to-addresses=10.0.0.86 to-ports=4685 dst-port=4685 protocol=tcp
11 ;;; Bloqueio de clientes n o cadastrados. Para liberar, cadastrar na address list: liberados
chain=dstnat action=accept dst-port=53 protocol=udp packet-mark=bloqueia
12 chain=dstnat action=dst-nat to-addresses=200.163.176.234 to-ports=85 packet-mark=bloqueia
13 chain=dstnat action=dst-nat to-addresses=200.163.176.234 to-ports=86 packet-mark=avisos
14 ;;; Redireciona determinados clientes para quadro de aviso. Para isso, cadastrar na address list: aviso
chain=dstnat action=dst-nat to-addresses=200.163.176.234 to-ports=85 src-address-list=avisos packet-mark=avisos
15 ;;; Regra para ips da classe 200.163.176.232/29 rotearem por esta classe
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-address=200.163.176.232/29
16 chain=srcnat action=src-nat to-addresses=189.30.21.50 to-ports=0-65535 dst-address=189.30.21.48/29
17 ;;; ACIAB IP V lido
chain=dstnat action=netmap to-addresses=10.0.0.130 to-ports=0-65535 dst-address=200.163.176.236
18 chain=srcnat action=netmap to-addresses=200.163.176.236 to-ports=0-65535 src-address=10.0.0.130
19 ;;; RB532 - IP valido.
chain=dstnat action=netmap to-addresses=10.0.1.253 to-ports=0-65535 dst-address=200.163.176.235
20 chain=srcnat action=netmap to-addresses=200.163.176.235 to-ports=0-65535 src-address=10.0.1.253
21 ;;; RB153 - IP V lido
chain=dstnat action=netmap to-addresses=172.16.2.55 to-ports=0-65535 dst-address=189.30.21.51
22 chain=srcnat action=netmap to-addresses=189.30.21.51 to-ports=0-65535 src-address=172.16.2.55
23 ;;; Proxy
chain=dstnat action=redirect to-ports=3128 src-address=!10.0.0.130 src-address-list=Proxy Redirection dst-address-list=!proxy-exception dst-port=80
protocol=tcp
24 ;;; Imposto de Renda
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=3456 src-address-list=rede-brnet dst-port=3456 protocol=tcp
25 ;;; ICMS
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 src-address-list=Redes Clientes dst-port=8017 protocol=tcp
26 ;;; Caixa Federal
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 src-address-list=Redes Clientes dst-port=2631 protocol=tcp
27 X ;;; RADIUS
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 src-address-list=Redes Clientes dst-port=1812 protocol=udp
28 ;;; E-Mail
chain=srcnat action=src-nat to-addresses=189.30.21.50 to-ports=0-65535 dst-port=25 protocol=tcp
29 chain=srcnat action=src-nat to-addresses=189.30.21.50 to-ports=0-65535 dst-port=110 protocol=tcp
30 ;;; FTP
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 routing-mark=ftp
31 ;;; Banricompras
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=500 protocol=udp
32 chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=10000 protocol=udp
33 chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=11000 protocol=udp
34 ;;; Winbox
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 src-address-list=Redes Clientes dst-port=8291 protocol=tcp
35 chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=20561 protocol=tcp
36 ;;; ACIAB
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=5900 protocol=udp
37 chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=1433 protocol=udp
38 ;;; MSN
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=1863 protocol=tcp
39 chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=1863 protocol=udp
40 chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=6891-6901 protocol=udp
41 chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=6891-6901 protocol=tcp
42 chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=5190 protocol=udp
43 ;;; Cabal Online
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 src-address-list=Redes Clientes dst-port=38100-38130 protocol=tcp
44 ;;; Ping
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 protocol=icmp
45 ;;; MU
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 src-address-list=Redes Clientes dst-port=44405 protocol=tcp
46 chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 src-address-list=Redes Clientes dst-port=55901 protocol=tcp
47 ;;; Regra para redirecionar HTTPS para link 2Mb
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=443 protocol=tcp
48 X ;;; Regra NAT 01 - Habilitar estas regras se somente link de 2mb estiver funcionando.
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535
49 ;;; Regra NAT 02 - Habilitar estas regras link de 1mb estiver funcionando. Desabilitar Regra NAT 01
chain=srcnat action=src-nat to-addresses=200.163.176.237 to-ports=0-65535 dst-port=80 protocol=tcp
50 ;;; P2P
chain=srcnat action=src-nat to-addresses=189.30.21.50 to-ports=0-65535 routing-mark=rota2
51 chain=srcnat action=src-nat to-addresses=189.30.21.50 to-ports=0-65535
52 X ;;; Regra NAT 03 - Habilitar estas regras se somente link de 1mb estiver funcionando.
chain=srcnat action=src-nat to-addresses=189.30.21.50 to-ports=0-65535 src-address-list=Redes Clientes
and here is part of my mangle table(i pasted only the part of ruting-marks, i think it will be enough right):
5 ;;; P2P ####################################################################################################################
chain=prerouting action=mark-connection new-connection-mark=p2pC passthrough=yes p2p=all-p2p
6 chain=prerouting action=mark-packet new-packet-mark=p2p passthrough=yes connection-mark=p2pC
7 chain=prerouting action=mark-routing new-routing-mark=p2p passthrough=no packet-mark=p2p
8 ;;; Outros###################
chain=prerouting action=mark-routing new-routing-mark=rota2 passthrough=yes dst-port=!80 protocol=tcp
9 ;;; ACIAB
chain=prerouting action=mark-routing new-routing-mark=main passthrough=yes dst-port=5900 protocol=tcp
10 chain=prerouting action=mark-routing new-routing-mark=main passthrough=yes dst-port=1433 protocol=tcp
11 ;;; Mu Online###################
chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes dst-port=44405 protocol=tcp
12 chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes dst-port=55901 protocol=tcp
13 chain=prerouting action=mark-routing new-routing-mark=banricompras passthrough=yes dst-port=10000 protocol=udp
14 ;;; Banricompras
chain=prerouting action=mark-routing new-routing-mark=banricompras passthrough=yes dst-port=500 protocol=udp
15 ;;; Caixa Federal################
chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes dst-port=2631 protocol=tcp
16 ;;; Winbox
chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes dst-port=8291 protocol=tcp
17 ;;; E-Mail
chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes src-address-list=Redes Clientes dst-port=25 protocol=tcp
18 chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes src-address-list=Redes Clientes dst-port=110 protocol=tcp
19 chain=prerouting action=mark-routing new-routing-mark=banricompras passthrough=yes dst-port=11000 protocol=udp
20 chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes dst-port=20561 protocol=tcp
21 ;;; Ping Route
chain=output action=mark-routing new-routing-mark=rota3 passthrough=yes protocol=icmp
22 ;;; MSN#################
chain=prerouting action=mark-routing new-routing-mark=msn passthrough=yes dst-port=1863 protocol=tcp
23 chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes dst-port=1863 protocol=udp
24 chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes dst-port=6891-6901 protocol=tcp
25 chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes dst-port=6891-6901 protocol=udp
26 chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes dst-port=5190 protocol=udp
27 ;;; Mercado Regis Programa
chain=prerouting action=mark-routing new-routing-mark=rota3 passthrough=yes src-address-list=Redes Clientes dst-port=8017 protocol=tcp
28 ;;; Cabal Online#################
chain=prerouting action=mark-routing new-routing-mark=main passthrough=yes dst-port=38100-38130 protocol=tcp
my interface table:
Flags: X - disabled, R - running, D - dynamic, S - slave
NAME TYPE MTU
0 R WAN-2MB ether 1500
1 R WAN-1MB ether 1500
2 R APs ether 1500
3 R LAN ether 1500
and finally my ip address table:
Flags: X - disabled, I - invalid, D - dynamic
ADDRESS NETWORK BROADCAST INTERFACE
0 ;;; Rede Interna
192.168.0.1/24 192.168.0.0 192.168.0.255 LAN
1 ;;; Dirceu
10.1.3.1/24 10.1.3.0 10.1.3.255 LAN
2 ;;; Link Frame-Relay 2Mbps
200.163.176.237/29 200.163.176.232 200.163.176.239 WAN-2MB
3 200.163.176.236/29 200.163.176.232 200.163.176.239 WAN-2MB
4 10.0.0.254/16 10.0.0.0 10.0.255.255 APs
5 ;;; Link Frame-Relay 1Mbps
189.30.21.50/29 189.30.21.48 189.30.21.55 WAN-1MB
6 200.163.176.235/29 200.163.176.232 200.163.176.239 WAN-2MB
7 189.30.21.51/29 189.30.21.48 189.30.21.55 WAN-1MB
8 172.16.1.1/24 172.16.1.0 172.16.1.255 APs
9 172.16.2.1/24 172.16.2.0 172.16.2.255 APs
10 172.16.3.1/24 172.16.3.0 172.16.3.255 APs
11 ;;; Repetidora Sao Joao
11.0.0.253/16 11.0.0.0 11.0.255.255 APs
12 ;;; Repetidora Sao Joao
172.17.1.1/24 172.17.1.0 172.17.1.255 APs
13 ;;; Casa de Cultura Repetidora
172.17.2.1/24 172.17.2.0 172.17.2.255 APs
14 ;;; Polenta Repetidora
172.17.3.1/24 172.17.3.0 172.17.3.255 APs
15 ;;; Repetidora Alto da Bronze
172.17.4.1/24 172.17.4.0 172.17.4.255 APs
16 ;;; Repetidora San Diego
172.17.5.1/24 172.17.5.0 172.17.5.255 APs
17 ;;; Loterica
10.1.4.1/24 10.1.4.0 10.1.4.255 LAN
18 ;;; Repetidora EVA
172.17.6.1/24 172.17.6.0 172.17.6.255 APs
if you guys need any more info i will be pleased to give!