Probelm:
I have a router which is connected with lan to a point-to-point Mikrotik on my roof over my router ether 5 :
ip address of my point-to-point:
1: 192.168.134.19
2: internet routeable ip a.b.c.49 , /28
ip address of my mikrotik router ehter 5:
- 192.168.134.20
- internet routeable ip a.b.c.50 /28
my local range on sfp port:
192.168.0.0/24
so on I can ping a.b.c.49 and ip 192.168.134.19 from my router
I wrote a masquerade rule on my firewall for my local lan range .
I’ve 3 line internet over difference isp.
I use packet mark to use this internet on my lan.
I wrote default route for over ether 5 and show reachable but no internet over ether 5 by ping.
I chenge my route to gateway with a.b.c.49 and was showed unreachable.
really I don’t know how to change my route to have access internet over ether 5
I send all photo and configuration ;
ip address :
0 ;;; Local-Lan
192.168.0.254/24 192.168.0.0 Bridge-LAN
1 ;;; KhorshidNet-Local-interface
172.31.24.12/24 172.31.24.0 ether1
2 ;;; Mokhaberat-Local-interface
192.168.2.2/24 192.168.2.0 ether3
4 192.168.10.1/30 192.168.10.0 ether2
5 X a.b.c.50/32 46.209.212.48 ether5
6 192.168.134.20/28 192.168.134.16 ether5
7 D 81.29.244.153/32 192.168.100.1 KhorshidNet ----- > first internet
8 D 93.118.97.93/32 2.177.0.1 Mokhaberat --------> second internet
firewall :
0 ;;; Respina
chain=srcnat action=masquerade src-address=192.168.0.0/24
out-interface=ether5 log=no log-prefix=“”
1 ;;; KhorshidNet
chain=srcnat action=masquerade src-address=192.168.0.0/24
out-interface=KhorshidNet log=no log-prefix=“”
2 ;;; Mokhaberat
chain=srcnat action=masquerade src-address=192.168.0.0/24
out-interface=Mokhaberat log=no log-prefix=“”
3 ;;; Modem ADSL
chain=srcnat action=masquerade src-address=192.168.0.0/24
out-interface=ether3 log=no log-prefix=“”
4 ;;; Vpn to Lan
chain=srcnat action=accept src-address=1.2.3.4
dst-address-list=Connected Route log=no log-prefix=“”
5 ;;; Lan to Vpn
chain=srcnat action=accept dst-address=1.2.3.4
src-address-list=Connected Route log=no log-prefix=“”
6 X ;;; Vpn Internet
chain=srcnat action=masquerade src-address=1.2.3.4
out-interface=KhorshidNet log=no log-prefix=“”
7 chain=srcnat action=accept src-address=192.168.0.0/24
dst-address=192.168.1.0/24 log=no log-prefix=“”
8 ;;; Udp DNS route to server
chain=dstnat action=accept to-ports=xxx protocol=udp
src-address=1.2.3.4 src-address-list=!Domain Servers dst-port=xxx
log=no log-prefix=“”
9 ;;; Tcp DNS route to server
chain=dstnat action=accept to-ports=xxx protocol=tcp
src-address=1.2.3.4 src-address-list=!Domain Servers dst-port=xxx
log=no log-prefix=“”
9 ;;; Tcp DNS route to server
chain=dstnat action=accept to-ports=xxx protocol=tcp
src-address=1.2.3.4 src-address-list=!Domain Servers dst-port=xxx
log=no log-prefix=“”
10 ;;; Udp DNS route to server
chain=dstnat action=redirect to-ports=xxx protocol=udp
src-address-list=!Domain Servers dst-port=xxx log=no log-prefix=“”
11 ;;; Tcp DNS route to server
chain=dstnat action=redirect to-ports=xxx protocol=tcp
src-address-list=!Domain Servers dst-port=xxx log=no log-prefix=“”
12 ;;; DVR1
chain=dstnat action=dst-nat to-addresses=192.168.0.? to-ports=xxx
protocol=tcp in-interface=KhorshidNet dst-port=xxx log=no log-prefix=“”
13 ;;; DVR2
chain=dstnat action=dst-nat to-addresses=192.168.0.? to-ports=xxx
protocol=tcp in-interface=KhorshidNet dst-port=xxx log=no log-prefix=“”
14 ;;; DVR Zero floor
chain=dstnat action=dst-nat to-addresses=192.168.0.? to-ports=xxx
protocol=tcp in-interface=KhorshidNet dst-port=xxx log=no log-prefix=“”
15 X ;;; Teamyar Web
chain=dstnat action=dst-nat to-addresses=192.168.0.? protocol=tcp
dst-address=1.2.3.4 in-interface=Mokhaberat dst-port=xxx log=no
log-prefix=“”
16 ;;; Delcarino - Argham
chain=dstnat action=dst-nat to-addresses=192.168.0.? to-ports=xxx
protocol=tcp dst-address=1.2.3.4 in-interface=KhorshidNet
dst-port=xxx log=no log-prefix=“”
17 ;;; Delcarino - Argham - port xxx
chain=dstnat action=dst-nat to-addresses=192.168.0.? protocol=tcp
dst-address=81.29.244.153 in-interface=KhorshidNet dst-port=xxx log=no
log-prefix=“”
18 ;;; Delcarino - Argham - port xxx
chain=dstnat action=dst-nat to-addresses=192.168.0.? protocol=tcp
dst-address=1.2.3.4 in-interface=KhorshidNet dst-port=xxx log=no
log-prefix=“”
19 ;;; Delcarino - Argham - port xxx
chain=dstnat action=dst-nat to-addresses=192.168.0.?2 protocol=tcp
dst-address=1.2.3.4 in-interface=KhorshidNet dst-port=xxx log=no
log-prefix=“”
20 ;;; Delcarino - Argham - port xxx
chain=dstnat action=dst-nat to-addresses=192.168.0.? protocol=tcp
dst-address=81.29.244.153 in-interface=KhorshidNet dst-port=xxx log=no
log-prefix=“”
21 ;;; Kart
chain=dstnat action=dst-nat to-addresses=192.168.0.? to-ports=xx
protocol=tcp dst-address=1.2.3.4 in-interface=KhorshidNet
dst-port=xxx log=no log-prefix=“”
22 ;;; Nossa- xxx - soap
chain=dstnat action=dst-nat to-addresses=192.168.0.? to-ports=xxx
protocol=tcp dst-address=1.2.3.4 in-interface=KhorshidNet
dst-port=xxx log=no log-prefix=“”