Port Forwarding witch multi WAN, Multiple NAT and VLAN

Hello,

i have problem witch port forwarding to inside nat (on first interface working fine but on other not :/)

my device Mikrotik RB2011 (witch new FW 3.24 and SW 6.31)

WAN1:
port: ETH1
type: VDSL static IP
IP: 1.1.1.2/29
gw: 1.1.1.1


WAN2 (before WAN1 was connected all working fine on this WAN, and yes then this WAN was connect to ETH1):
port: ETH2
type: ADSL2+ (dynamic ip, ISP router DMZ - PPPoA)
IP: outside dynamic, inside 192.168.1.11/24
gw: 192.168.1.1

WAN:
port: USB
type: mobile PPP (static IP)
ip: 3.3.3.3/32
gw: not set default

INTERFACE:

/interface ethernet
set [ find default-name=ether1 ] name=WAN1
set [ find default-name=ether2 ] name=WAN2

/interface ppp-client
add add-default-route=no apn=data dial-on-demand=no disabled=no name=WAN3 password=internet port=usb4 use-peer-dns=no user=internet

/interface vlan
add interface=bridge-lan l2mtu=1594 name=vlan-50-servers vlan-id=50
add interface=bridge-lan l2mtu=1594 name=vlan-100-office vlan-id=100
add interface=bridge-lan l2mtu=1594 name=vlan-200-printers vlan-id=200
add interface=bridge-lan l2mtu=1594 name=vlan-4000-camera vlan-id=4000

/interface bridge port
add bridge=bridge-lan interface=ether6-master-local
add bridge=bridge-lan interface=sfp1
add bridge=bridge-lan interface=ether5-slave-local
add bridge=bridge-lan interface=ether4-slave-local

ROUTE

add check-gateway=ping distance=12 gateway=WAN3 routing-mark=to_WAN3
add check-gateway=ping distance=11 gateway=192.168.1.1 routing-mark=to_WAN2
add check-gateway=ping disabled=yes distance=10 gateway=79.189.2.17 routing-mark=to_WAN1

NAT

add action=dst-nat chain=dstnat comment="MS" dst-port=5030 in-interface=WAN1 log=yes protocol=tcp to-addresses=192.168.88.94 to-ports=5030
add action=dst-nat chain=dstnat comment="MS" dst-port=5030 in-interface=WAN2 log=yes protocol=tcp to-addresses=192.168.88.94 to-ports=5030
add action=dst-nat chain=dstnat comment="MS" dst-port=5030 in-interface=WAN3 log=yes protocol=tcp to-addresses=192.168.88.94 to-ports=5030
add action=masquerade chain=srcnat out-interface=WAN1
add action=masquerade chain=srcnat out-interface=WAN2
add action=masquerade chain=srcnat out-interface=WAN3
add action=masquerade chain=srcnat src-address=10.10.10.0/24 comment="VLAN 50" 
add action=masquerade chain=srcnat src-address=10.20.20.0/24 comment="VLAN 100" 
add action=masquerade chain=srcnat src-address=10.100.100.0/24 comment="VLAN 200" 
add action=masquerade chain=srcnat src-address=192.168.89.0/24 comment="user vpn traffic" 
add action=masquerade chain=srcnat src-address=10.200.200.0/24 comment="admin vpn traffic"

MANGLE

/ip firewall mangle
add chain=prerouting comment="VDSL" dst-address=1.1.1.2
add chain=prerouting comment="ADSL" dst-address=192.168.1.11
add chain=prerouting comment="Mobile" dst-address=3.3.3.3

add action=mark-connection chain=prerouting in-interface=WAN1 new-connection-mark=in_WAN1
add action=mark-connection chain=prerouting in-interface=WAN2 new-connection-mark=in_WAN2
add action=mark-connection chain=prerouting in-interface=WAN3 new-connection-mark=in_WAN3

add action=mark-routing chain=prerouting connection-mark=in_WAN1 in-interface=bridge-lan new-routing-mark=to_WAN1
add action=mark-routing chain=prerouting connection-mark=in_WAN1 in-interface=all-vlan new-routing-mark=to_WAN1
add action=mark-routing chain=prerouting connection-mark=in_WAN2 in-interface=bridge-lan new-routing-mark=to_WAN2
add action=mark-routing chain=prerouting connection-mark=in_WAN2 in-interface=all-vlan new-routing-mark=to_WAN2
add action=mark-routing chain=prerouting connection-mark=in_WAN3 in-interface=bridge-lan new-routing-mark=to_WAN3
add action=mark-routing chain=prerouting connection-mark=in_WAN3 in-interface=all-vlan new-routing-mark=to_WAN3

add action=mark-routing chain=output connection-mark=in_WAN1 new-routing-mark=to_WAN1
add action=mark-routing chain=output connection-mark=in_WAN2 new-routing-mark=to_WAN2
add action=mark-routing chain=output connection-mark=in_WAN2 new-routing-mark=to_WAN3

The best thing is that when i try connect then package is sent to RB but nothing in return expect WAN1.
when i try something similar in my old BSD router everything working fine but in RB not.