Hello,
I am new to RouterBoard Mikrotik, I just got a new rack mount unit and did the initial setup for dual WANs etc… It is working I can disconnect either one of the WANs and I still have access… But my speed behind the device is limited to 31mbps / 25mbps (I have a fiber link of 1gig/1gig) if I connect directly to the source or via my UniFI router I get 589mbps/740mbps…
I want to use the mikrotik as my main router since it has a lot more features than the UniFI but I am stuck…
WAN1 = Fiber Modem - 192.168.1.254 gateway
WAN2 = UniFI Firewall - 192.168.5.1 (Acting as a second ISP but it connect to the same FIber Channel)
PORT3 = Is connected directly to one of my workstations
I also have a AP connected to one of the other ports but it is not configured yet…
Thank you In advance!
Here is my setup
aug/10/2017 22:39:28 by RouterOS 6.40.1
software id = ZYUV-9PKR
model = CRS226-24G-2S+
serial number = 787C067BBCFE
/interface bridge
add fast-forward=no name=LANBAY1
/interface ethernet
set [ find default-name=ether1 ] name=01-WAN1
set [ find default-name=ether2 ] name=02-WAN2
set [ find default-name=ether3 ] name=03-LAN01
set [ find default-name=ether4 ] name=“04 - LAN02”
set [ find default-name=ether5 ] name=“05 - LAN03”
set [ find default-name=ether6 ] name=“06 - LAN04”
set [ find default-name=ether7 ] name=“07 - LAN05”
set [ find default-name=ether8 ] name=“08 - LAN06”
set [ find default-name=ether9 ] name=“09 - LAN07”
set [ find default-name=ether10 ] name=“10 - LAN08”
set [ find default-name=ether11 ] name=“11 - LAN09”
set [ find default-name=ether12 ] name=“12 - LAN10”
set [ find default-name=ether13 ] name=“13 - LAN11”
set [ find default-name=ether14 ] name=“14 - LAN12”
set [ find default-name=ether15 ] name=“15 - LAN13”
set [ find default-name=ether16 ] name=“16 - LAN14”
set [ find default-name=ether17 ] name=“17 - LAN15”
set [ find default-name=ether18 ] name=“18 - LAN16”
set [ find default-name=ether19 ] name=“19 - LAN17”
set [ find default-name=ether20 ] name=“20 - LAN18”
set [ find default-name=ether21 ] name=“21 - LAN19”
set [ find default-name=ether22 ] name=“22 - LAN20”
set [ find default-name=ether23 ] name=“23 - LAN21”
set [ find default-name=ether24 ] name=“24 - LAN22”
set [ find default-name=sfpplus2 ] name=sfp-sfpplus2
/caps-man security
add authentication-types=wpa-psk encryption=aes-ccm,tkip group-encryption=aes-ccm group-key-update=1m name=BAY passphrase=notgoingtoposthere
/caps-man configuration
add mode=ap name=FALCON security=BAY security.authentication-types=wpa-psk security.encryption=aes-ccm,tkip ssid=FALCON
/caps-man interface
add configuration=FALCON disabled=no mac-address=E4:8D:8C:F4:09:46 master-interface=none name=cap1 radio-mac=00:00:00:00:00:00 security=BAY
/ip pool
add name=dhcp_pool2 ranges=192.168.2.101-192.168.2.199
/ip dhcp-server
add address-pool=dhcp_pool2 disabled=no interface=LANBAY1 name=dhcp1
/interface bridge port
add bridge=LANBAY1 interface=03-LAN01
add bridge=LANBAY1 interface=“04 - LAN02”
add bridge=LANBAY1 interface=“05 - LAN03”
add bridge=LANBAY1 interface=“06 - LAN04”
add bridge=LANBAY1 interface=“07 - LAN05”
add bridge=LANBAY1 interface=“08 - LAN06”
add bridge=LANBAY1 interface=“09 - LAN07”
add bridge=LANBAY1 interface=“10 - LAN08”
add bridge=LANBAY1 interface=“11 - LAN09”
add bridge=LANBAY1 interface=“12 - LAN10”
add bridge=LANBAY1 interface=“13 - LAN11”
add bridge=LANBAY1 interface=“14 - LAN12”
add bridge=LANBAY1 interface=“15 - LAN13”
add bridge=LANBAY1 interface=“16 - LAN14”
add bridge=LANBAY1 interface=“17 - LAN15”
add bridge=LANBAY1 interface=“18 - LAN16”
add bridge=LANBAY1 interface=“19 - LAN17”
add bridge=LANBAY1 interface=“20 - LAN18”
add bridge=LANBAY1 interface=“21 - LAN19”
add bridge=LANBAY1 interface=“22 - LAN20”
add bridge=LANBAY1 interface=“23 - LAN21”
add bridge=LANBAY1 interface=“24 - LAN22”
add bridge=LANBAY1 interface=sfp-sfpplus1
add bridge=LANBAY1 interface=sfp-sfpplus2
/ip address
add address=192.168.2.1/24 interface=LANBAY1 network=192.168.2.0
add address=192.168.1.2/24 interface=01-WAN1 network=192.168.1.0
add address=192.168.5.2/24 interface=02-WAN2 network=192.168.5.0
/ip dhcp-client
add dhcp-options=hostname,clientid disabled=no interface=01-WAN1
/ip dhcp-server network
add address=192.168.2.0/24 dns-server=8.8.8.8 gateway=192.168.2.1 netmask=24
/ip dns
set servers=8.8.8.8,68.94.156.1,68.94.157.1
/ip firewall mangle
add action=accept chain=prerouting dst-address=192.168.2.0/24 in-interface=LANBAY1
add action=accept chain=prerouting dst-address=192.168.5.0/24 in-interface=LANBAY1
add action=mark-connection chain=prerouting connection-mark=no-mark in-interface=01-WAN1 new-connection-mark=01-WAN1_conn
add action=mark-connection chain=prerouting connection-mark=no-mark in-interface=02-WAN2 new-connection-mark=02-WAN2_conn
add action=mark-routing chain=prerouting connection-mark=01-WAN1_conn in-interface=LANBAY1 new-routing-mark=to_01-WAN1
add action=mark-routing chain=prerouting connection-mark=02-WAN2_conn in-interface=LANBAY1 new-routing-mark=to_02-WAN2
add action=mark-routing chain=output connection-mark=01-WAN1_conn new-routing-mark=to_01-WAN1
add action=mark-routing chain=output connection-mark=02-WAN2_conn new-routing-mark=to_02-WAN2
add action=mark-connection chain=prerouting new-connection-mark=1st_conn passthrough=yes per-connection-classifier=src-address-and-port:3/0
add action=mark-connection chain=prerouting new-connection-mark=2nd_conn per-connection-classifier=src-address-and-port:3/1
add action=mark-connection chain=prerouting new-connection-mark=3rd_conn per-connection-classifier=src-address-and-port:3/2
/ip firewall nat
add action=masquerade chain=srcnat out-interface=01-WAN1
add action=masquerade chain=srcnat out-interface=01-WAN1
add action=masquerade chain=srcnat out-interface=02-WAN2
/ip route
add check-gateway=ping distance=1 gateway=192.168.1.254 routing-mark=to_01-WAN1
add check-gateway=ping distance=1 gateway=192.168.5.1 routing-mark=to_02-WAN2
add check-gateway=ping distance=1 gateway=192.168.1.254
add check-gateway=ping distance=2 gateway=192.168.5.1
/lcd
set backlight-timeout=never default-screen=interfaces read-only-mode=yes
/lcd interface
set “03-LAN01” disabled=yes
set “04 - LAN02” disabled=yes
set “05 - LAN03” disabled=yes
set “06 - LAN04” disabled=yes
set “07 - LAN05” disabled=yes
set “08 - LAN06” disabled=yes
set “09 - LAN07” disabled=yes
set “10 - LAN08” disabled=yes
set “11 - LAN09” disabled=yes
set “12 - LAN10” disabled=yes
set “13 - LAN11” disabled=yes
set “14 - LAN12” disabled=yes
set “15 - LAN13” disabled=yes
set “16 - LAN14” disabled=yes
set “17 - LAN15” disabled=yes
set “18 - LAN16” disabled=yes
set “19 - LAN17” disabled=yes
set “20 - LAN18” disabled=yes
set “21 - LAN19” disabled=yes
set “22 - LAN20” disabled=yes
set “23 - LAN21” disabled=yes
set “24 - LAN22” disabled=yes
set sfp-sfpplus1 disabled=yes
set sfp-sfpplus2 disabled=yes
/lcd interface pages
set 0 interfaces=“01-WAN1,02-WAN2,03-LAN01,04 - LAN02”
/system clock
set time-zone-name=America/New_York
/system identity
set name=“BAY Firewall 2”
#error exporting /system routerboard mode-button
/tool graphing
set store-every=24hours