Routing question

Hi,

I may have taken on a bit too much for my knowledge :slight_smile:
I have been lobbying hard to use Mikrotik in our datacenter (1 rack) and now finally it may be so :slight_smile:
But in order for my boss to accept it i need to know that what we want to do is possible.

Today we are using two switches (Juniper and Brocade) that are routing our incoming redundant internet connection (2 x 1gbps via VRRP)
we have a /24 that we are splitting up in smaller subnets, mainly /27 and /28 based on customers choice, and are forwarded, or what you say, to VLANs

What i would like the Mikrotik to do is route our incoming internet /24 and split it to smaller sizes to vlans, no NAT for the external IPs except one or two VLANs that uses Mikrotik firewall and NAT.
I want some VLANs to be sent to our virtual hosts for example a pfSense firewall.

Is this possible with a Mikrotik router? (we are thinking of two CCR1072)
Or could you propose a better solution to achieve our goals?

The competition is a FortiGate 100F, but i donโ€™t think that it is capable of doing this scenario.

//Magnus

What you want sounds like normal routing to me (and a waste of IPv4 public addresses as you flush two per each โ€œsub-subnetโ€ to the toilet, which is why many people revert to use of PPPoE where all addresses can be used). One VLAN per subnet is not an issue for a CCR as presumably there will be no actual bridging? Can you draw the intended topology?