N
N
Nikolai Savelyev2021-04-13 06:42:08
Computer networks
Nikolai Savelyev, 2021-04-13 06:42:08

How to set up a white subnet on Mikrotik?

Good afternoon.
For the first time I encountered the selection of a white subnet from the provider. Something completely confused with the routing, please help.
There are Mikrotik, wan 1 and wan2 from different providers with their own white addresses. We bought the /29 subnet from the second provider, it is routed through its white ip (I don’t quite understand what this means). They sent instructions on how to forward for Mikrotik and issue white ip to servers:

Set up on two different bridges (part of lan ports in one part in another).
In the first bridge, configure dhcp to a gray subnet and the masquerade/srcnat function in the IP > Firewall > NAT section.
In the second bridge, configure dhcp on a white subnet and make an exception in IP > Firewall > NAT for this subnet


All the googled instructions look about the same. But by default, my traffic goes through another provider. Wan2, through which the subnet is supposed to be routed, has a route with distance 3. Do I need to somehow register a separate route for the subnet? How?

Well, I would not like to throw a subnet through Mikrotik. The ideal option would be to assign all addresses on the router, and natit local subnets through them. But I have not found such instructions anywhere.

Can you tell me where to dig?

Answer the question

In order to leave comments, you need to log in

2 answer(s)
A
Andrey Barbolin, 2021-04-13
@nikweter

Nikolay Savelyev , Well done Provider)).
There are 2 options, NAT or BRIDGE. The bridge scheme is easier to set up and eliminates protocol issues that NAT doesn't like.
> The address on the interface is 5.128.x.x, the subnet was issued 178.49.x.x/29, routed through that address
Scheme through NAT. They usually do it through the bridge interface, let's say the server network is 10.10.10.0/24.
- create a bridge
- assign all addresses from the network 178.49.10.0/29 to it
- add NAT rules for servers src-addr 10.10.10.1 src-nat 178.49.10.1, 10.10.10.1 - 178.49.10.2, etc.
- edit the rule so that src 178.49.10.0/29 is NOT natal through 5.128.x.x
- add a route so that src 178.49.10.0/29 go through 5.128.x.x (separate routing table through preroute)

C
CityCat4, 2021-04-13
@CityCat4

Mikrotik, this is a fir-tree-stick router :) It has so many interfaces and "network cards" (if you imagine Mikrotik as a regular computer stuffed with network cards).
You must have:
- connection details to Provider1
- connection details to Provider2
- subnet issued by Provider2
Let's say ether1 - Provider1, ether2 - Provider2. Then we group, let's say ether3 - ether5 - and say "this is our white subgrid", bridge1. And also ether6 - ether10 - "this is our locale", bridge2
Set up addresses:
- on ether1 - by details of Provider1
- on ether2 - by details of Provider2
- on bridge1 - any of the subnets, the provider must give the mask. Thisthe address will be default gateway for servers!
- on bridge2 - local
Natim everything that came with bridge2, we don't natim with bridge1. We prescribe the routes as we see fit, if both should work simultaneously - we scatter the traffic with labels, if the second backup - through distance, the traffic goes through the route with a smaller distance.
Google "Mikrotik two providers"

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question