this is short example
Home PC connected to DHCP server network 192.168.1.0/24
Work PC is connected to DHCP server 192.168.2.0/24
HomePC ip is 192.168.1.2
Work PC ip is 192.168.2.93
WAN1 interface =ether1-wan1
WAN2 interface = wan2
Both pcs have internet but they can't communicate each other.
When I try to ping each other , ping no reply no communication between them at all.
Also both pc are not able to ping the default gateway 192.168.1.1
this is my full setup config
If someone experienced user can give me some help and hints, thank you all the best.
Code: Select all
/interface pppoe-client
add add-default-route=yes default-route-distance=10 disabled=no interface=ether24 name=wan2 password=xxx user=xxxx
/ip pool
add name=dhcp_pool1 ranges=192.168.1.2-192.168.1.254
add name=dhcp_pool2 ranges=192.168.2.2-192.168.2.254
/ip dhcp-server
add address-pool=dhcp_pool1 authoritative=after-2sec-delay disabled=no interface=bridge1 lease-time=1w name=dhcp1
add address-pool=dhcp_pool2 disabled=no interface=dhcp2-brdige name=dhcp2
/interface bridge port
add bridge=bridge1 interface=ether3
add bridge=bridge1 interface=ether4
add bridge=bridge1 interface=ether5
add bridge=dhcp2-brdige interface=ether17
add bridge=dhcp2-brdige interface=ether18
/ip firewall connection tracking
set enabled=yes
/ip address
add address=213.xx.xx.xx/24 interface=ether1-wan1 network=xx.135.xx.0
add address=192.168.1.1/24 interface=bridge1 network=192.168.1.0
add address=192.168.2.1/24 interface=dhcp2-brdige network=192.168.2.0
/ip dhcp-server network
add address=192.168.1.0/24 dns-server=x.135.xx.18,xx.xx.160.19 gateway=192.168.1.1
add address=192.168.2.0/24 dns-server=xx.17.xx.5,81.xx.225.5 gateway=192.168.2.1
/ip dns
set servers=xx.xx.xx.18,xx.xx.xx.19
/ip firewall filter
add action=fasttrack-connection chain=forward connection-nat-state="" connection-state=established,related out-interface=ether1-wan1
add action=fasttrack-connection chain=forward connection-nat-state="" connection-state=established,related out-interface=wan2
add action=accept chain=forward connection-nat-state="" connection-state=established,related
/ip firewall mangle
add action=mark-connection chain=input in-interface=wan2 new-connection-mark=internet2 passthrough=no
add action=mark-routing chain=output connection-mark=internet2 new-routing-mark=ruta-internet2 passthrough=no
/ip firewall nat
add action=dst-nat chain=dstnat dst-port=9166 in-interface=ether1-wan1 protocol=tcp to-addresses=192.168.1.2 to-ports=9166
add action=dst-nat chain=dstnat dst-port=2251 in-interface=wan2 protocol=tcp to-addresses=192.168.2.93 to-ports=22
add action=masquerade chain=srcnat out-interface=ether1-wan1 src-address=192.168.1.0/24
add action=masquerade chain=srcnat out-interface=wan2 src-address=192.168.2.0/24
/ip route
add distance=10 gateway=wan2 routing-mark=ruta-internet2
add distance=1 gateway=ether1-wan1 routing-mark=internet1
add distance=10 gateway=wan2 routing-mark=internet2
add distance=1 gateway=ether1-wan1
/ip route rule
add src-address=192.168.1.0/24 table=internet1
add src-address=192.168.2.0/24 table=internet2