Community discussions

MikroTik App
 
Noha
just joined
Topic Author
Posts: 3
Joined: Tue May 26, 2020 7:03 pm

Failover using only one wan interface

Tue May 26, 2020 7:34 pm

Dear all.

I have a MikroTik RB4011 router board with a basic configuration.
ETH1-WAN –> 10.10.55.11
ETH2-810 –> 192.168.11.0/24
I have two ISP internet providers which links are covered with a two firewalls. One firewall has an internal interface with an IP address: 10.10.55.1 as a primary link and second firewall has an internal interface with IP address: 10.10.55.254. The ISP links are physically dislocated.
I configure MikroTik to work with a primary link and this is ok.
My problem is next: I would like to configure failover routing so when is something wrong with ISP1 link (ping outside dns name) to switch to secondary ISP only using one (1) wan interface on Mikrotik.
On a net I only found some data with using a wan1 and wan2 interface on a MikroTik but this is not a case for me…
Please help.

With best regards
Noha
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 19322
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Failover using only one wan interface

Tue May 26, 2020 10:46 pm

Hmm not possible unless maybe both firewalls run through an intermediary device to the Router (maybe a managed switch such that you setup your ethernet to run on two VLANS.
VLAN 100 goes to ISP1, vlan 200 goes to ISP2, both VLANS run on ether1 to the switch (trunk port).
The switch ingress port is also TRUNK (lets say switch eth1, the egress port to ISP1 (eth2) strips the VLAN100 , the egress port to ISP2 (eth3) also strips the vlan200 to the firewall.

On recursive routing you have
ISP 1 checked for connectivity with google
ISP 1 checked for connectivity with open.dns\
If both ping gateway checks fail
your routing goes to ISP2 on vlan200.

However, I caution, it looks like you are getting similar WANIPs and if the ISP is the same in reality, if one is not available then the other will likely not be as well.
Having a second ISP should be a completely different source.......
 
Noha
just joined
Topic Author
Posts: 3
Joined: Tue May 26, 2020 7:03 pm

Re: Failover using only one wan interface

Wed May 27, 2020 8:28 pm

Hello.

I solve this by recursive route failover and is working...

Question. Is it possible and how: to send an email each time when recursive route failover change gateway?

With best regards
Noha
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 19322
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Failover using only one wan interface

Wed May 27, 2020 8:34 pm

Yes, but I dont know how. :-(

The good news is that it is explained very well here
step1- https://www.youtube.com/watch?v=CMPEVBd4dYw
step2 - https://www.youtube.com/watch?v=fRQfnzo_p9Y
 
Noha
just joined
Topic Author
Posts: 3
Joined: Tue May 26, 2020 7:03 pm

Re: Failover using only one wan interface

Wed May 27, 2020 8:59 pm

Hi.

I sow that but as I understand; this will send for every line of log an email.
Example: I include in a logging rules: topic route
Every change caused by recursive route failover generate app. 17 lines in log.
Shell I receive all 17 emails?

With best regards
Noha
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 19322
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Failover using only one wan interface

Wed May 27, 2020 9:54 pm

hmm good question. I never had email so just added it with critical.

Try....
(1) Route, Info (im assuming when you have two topics it will require both to trigger)

(2) Route, Interface

(3) Info, Interface

(4) Route, Info, Interface

Let me know which works the best ............

Who is online

Users browsing this forum: Amazon [Bot] and 14 guests