Good afternoon.
I use 2 VRR ports bound to an external interface for getting 2 public DHCP-assigned IP addresses from ISP for 2 customers who have their servers connected to the MT bridge.
Routing, SNAT, DNAT for the cusomers servers are working as expected.
But I cannot get to the MT device itself to ssh or winbox via a VRR port and an external IP address.
Input and ouput chaina are not filtered.
I tried to sniff the traffic - only incoming communication, no outgojng.
I've attached the config and simple schema.
Thanks for your help.
Explanation of the export config:
1. customer - external interface=vrrp-VLAN2; internal server IP=192.168.128.101
2. customer - external interface=vrrp-GLOBAL; internal servers IPs=192.168.128.100,192.168.128.2-6
Only the vrrp-GLOBAL interface should be used for MT adminstration.
bridge IP=192.168.128.1
MT ssh server port =4444/tcp
MT winbox server port =8291/tcp