Advertisement
Guest User

fabio nth

a guest
Mar 29th, 2020
136
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.71 KB | None | 0 0
  1. [abbio90@Router CASA] > ip address export
  2. # mar/29/2020 18:21:47 by RouterOS 6.46.3
  3. # software id = L7BM-UDDB
  4. #
  5. # model = RouterBOARD D52G-5HacD2HnD-TC
  6. # serial number = 8FDE08316514
  7. /ip address
  8. add address=10.246.159.50/24 comment=LAN interface="BRIDGE LAN" network=10.246.159.0
  9. add address=10.250.159.1/24 interface=vlan_200_NAS_tvcc network=10.250.159.0
  10. add address=192.168.1.2/24 interface=lte1 network=192.168.1.0
  11. add address=172.17.20.1/24 interface=vlan20-video network=172.17.20.0
  12. add address=192.168.9.3/24 interface=vlan30_W3 network=192.168.9.0
  13.  
  14. /ip firewall nat
  15. add action=masquerade chain=srcnat out-interface=lte1
  16. add action=masquerade chain=srcnat out-interface=vlan30_W3
  17. add action=masquerade chain=srcnat out-interface=vlan40_ISP2
  18. add action=masquerade chain=srcnat src-address=10.165.43.0/24
  19. add action=redirect chain=dstnat comment="DNS VERSO ROUTER" dst-port=53 protocol=udp \
  20. to-ports=53
  21.  
  22. /ip firewall mangle
  23. add action=mark-connection chain=prerouting connection-state=new new-connection-mark=WAN1 \
  24. nth=2,1 passthrough=yes src-address=10.246.159.0/24
  25. add action=mark-connection chain=prerouting connection-state=new new-connection-mark=WAN2 \
  26. nth=2,2 passthrough=yes src-address=10.246.159.0/24
  27. add action=mark-routing chain=prerouting connection-mark=WAN1 new-routing-mark=to_ISP1 \
  28. passthrough=yes src-address=10.246.159.0/24
  29. add action=mark-routing chain=prerouting connection-mark=WAN2 new-routing-mark=to_ISP2 \
  30. passthrough=yes src-address=10.246.159.0/24
  31.  
  32. /ip route
  33. add distance=1 gateway=192.168.1.1 routing-mark=to_ISP1 scope=10
  34. add distance=1 gateway=192.168.9.1 routing-mark=to_ISP2 scope=10
  35. add disabled=yes distance=1 gateway=10.165.43.1 routing-mark=vpn
  36. add check-gateway=ping comment="ISP1 (ho. mobile) default route" distance=1 gateway=\
  37. 104.244.42.1 scope=10 target-scope=30
  38. add check-gateway=ping distance=2 gateway=208.67.222.222 scope=10 target-scope=30
  39. add check-gateway=ping comment="ISP2 default route" distance=3 gateway=8.8.8.8 \
  40. target-scope=30
  41. add comment="ISP2 route dns" distance=1 dst-address=8.8.8.8/32 gateway=192.168.159.1
  42. add distance=1 dst-address=10.141.10.0/24 gateway=10.165.43.1
  43. add distance=1 dst-address=10.245.159.0/24 gateway=10.165.43.1
  44. add comment="Route subnet 10.247.159.XX e 10.248.159.xx da pubblico che appartengono al ma\
  45. p mikrotik" distance=1 dst-address=10.247.159.0/24 gateway=10.165.43.1
  46. add check-gateway=ping comment="ISP1 route dns" distance=1 dst-address=104.244.42.1/32 \
  47. gateway=192.168.1.1
  48. add check-gateway=ping comment="ISP3 route dns" distance=1 dst-address=208.67.222.222/32 \
  49. gateway=192.168.9.1
  50.  
  51. /ip route rule
  52. add disabled=yes src-address=10.246.159.0/24 table=vpn
  53. [abbio90@Router CASA] >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement