Thu May 12, 2011 9:32 am
ok under my rules i have rule number 12 and 13 that states it but still doing the same problem,
Flags: X - disabled, I - invalid, D - dynamic
0 chain=input action=mark-connection new-connection-mark=wan1_conn passthrough=no in-interface=ether1-mweb
1 chain=input action=mark-connection new-connection-mark=wan2_conn passthrough=no in-interface=ether2-is
2 chain=output action=mark-routing new-routing-mark=to_wan1 passthrough=no connection-mark=wan1_conn
3 chain=output action=mark-routing new-routing-mark=to_wan2 passthrough=no connection-mark=wan2_conn
4 chain=prerouting action=accept dst-address=41.134.110.0/28 in-interface=ether5-lan
5 chain=prerouting action=accept dst-address=196.212.100.0/28 in-interface=ether5-lan
6 chain=prerouting action=mark-connection new-connection-mark=wan1_conn passthrough=yes connection-state=new protocol=tcp in-interface=ether1-mweb
dst-port=20-22,80-81,443,3203-3206,5900-5935,6000-6020,7000,8080-8082
7 chain=prerouting action=mark-connection new-connection-mark=wan1_conn passthrough=yes connection-state=new protocol=tcp in-interface=ether2-is
dst-port=20-22,80-81,443,3203-3206,5900-5935,6000-6020,7000,8080-8082
8 chain=prerouting action=mark-connection new-connection-mark=wan1_conn passthrough=yes connection-state=new protocol=tcp in-interface=ether1-mweb dst-port=2040-2050,6080,9091
9 chain=prerouting action=mark-connection new-connection-mark=wan1_conn passthrough=yes connection-state=new protocol=tcp in-interface=ether2-is dst-port=2040-2050,6080,9091
10 chain=prerouting action=mark-connection new-connection-mark=wan1_conn passthrough=yes dst-address=192.168.88.2 in-interface=ether5-lan
11 chain=prerouting action=mark-connection new-connection-mark=wan2_conn passthrough=yes dst-address=192.168.88.2 in-interface=ether5-lan
12 chain=prerouting action=mark-connection new-connection-mark=wan1_conn passthrough=yes dst-address-type=!local in-interface=ether5-lan connection-mark=no-mark
per-connection-classifier=both-addresses:2/0
13 chain=prerouting action=mark-connection new-connection-mark=wan2_conn passthrough=yes dst-address-type=!local in-interface=ether5-lan connection-mark=no-mark
per-connection-classifier=both-addresses:2/1
14 chain=prerouting action=mark-routing new-routing-mark=to_wan1 passthrough=no in-interface=ether5-lan connection-mark=wan1_conn
15 chain=prerouting action=mark-routing new-routing-mark=to_wan2 passthrough=no in-interface=ether5-lan connection-mark=wan2_conn
and all these rules are in my mangel. should i put another rule somwhere else?