Thanks for the reply. But i’m still having trouble…
Here’s my config:
IP ADDRESSES:
Flags: X - disabled, I - invalid, D - dynamic
ADDRESS NETWORK BROADCAST INTERFACE
0 67.XXX.XXX.129/30 67.XXX.XXX.128 67.XXX.XXX.131 eth2
1 67.XXX.XXX.133/30 67.XXX.XXX.132 67.XXX.XXX.135 eth1
2 206.XXX.XXX.193/30 206.XXX.XXX.192 206.XXX.XXX.195 eth2
3 206.XXX.XXX.161/27 206.XXX.XXX.160 206.XXX.XXX.191 eth1
MANGLE:
Flags: X - disabled, I - invalid, D - dynamic
0 chain=prerouting src-address=67.XXX.XXX.132/30 action=mark-routing
new-routing-mark=test1 passthrough=no
1 chain=prerouting src-address=206.XXX.XXX.160/27 action=mark-routing
new-routing-mark=test2 passthrough=no
ROUTES:
Flags: X - disabled, A - active, D - dynamic,
C - connect, S - static, r - rip, b - bgp, o - ospf
DST-ADDRESS PREFSRC G GATEWAY DISTANCE INTERFACE
0 ADC 67.XXX.XXX.128/30 67.XXX.XXX.129 eth2
1 ADC 67.XXX.XXX.132/30 67.XXX.XXX.133 eth1
2 ADC 206.XXX.XXX.160/27 206.XXX.XXX.161 eth1
3 ADC 206.XXX.XXX.192/30 206.XXX.XXX.193 eth2
4 A S 0.0.0.0/0 r 67.XXX.XXX.130 eth2
5 A S 0.0.0.0/0 r 206.XXX.XXX.194 eth2
My routes are configured as such so that traffic with a routing mark of ‘test1’ are routed to the 67.XXX.XXX.130 gateway and traffic marked with ‘test2’ are routed to the 206.XXX.XXX.194 gateway.
My problem is that if I give a client computer (for test purposes) an IP such as 67.XXX.XXX.134 and a gateway of 67.XXX.XXX.133, I can’t ping the client computer from the outside world. I get a message such as ‘Reply from 67.XXX.XXX.129: Destination host unreachable.’. Or better yet sometimes I get ‘Reply from 206.XXX.XXX.193: Destination host unreachable.’.
I know that packets are reaching the MikroTik router because I can add additional mangle rules and see the statistics add up. There are NO additional firewall rules configured. What’s preventing my traffic from getting to the client computer? It appears that eth2 is binding to one or the other IP’s but NOT both.
Am I missing something here?
Thank you as always!