V
V
v-ex2015-04-27 19:18:49
Mikrotik
v-ex, 2015-04-27 19:18:49

How to set up NAT on Mikrotik via BGP?

So we have our block of white ip and 2 providers who announce our AS to the world through BGP. Podskazhite:
1. How to correctly implement the distribution of the Internet to private ip (as I understand it, masquerading is not suitable)?
2. What is the correct way to issue real ip to users from LAN?

Answer the question

In order to leave comments, you need to log in

3 answer(s)
M
mureevms, 2015-04-28
@mureevms

I think you are a little confused. The answer to the question "How to correctly implement the distribution of the Internet to private ip?" will be - NAT, which is already there. You, as I understand it, want to understand how to distribute a white subnet to machines behind Mikrotik (formally, they are in a local, non-routable subnet).
Let's say that 10.10.10.0/28 is a white subnet from provider
1. Yes, this is not NAT and masquerading will not work.
In theory, the white subnet is routed quite easily:
It is necessary for the LAN interface of the Mikrotik, which is physically connected to the local network, to assign an address from the white subnet, let it be 10.10.10.1/28 without specifying a gateway.
It should now be accessible from the internet.
2. How to issue addresses is not the point, at least register with your hands. To distribute addresses, you need to assign any free IP from the white subnet to the end machine, let it be the next one - 10.10.10.2/28 and specify the Mikrotik interface (10.10.10.1) as the LAN gateway.
Now this machine should be available from the Internet.
PS: I don't know how to specifically implement it on Mikrotik. I hope the direction of thought is clear. Described more than once carried out on Linux.

V
v-ex, 2015-04-28
@v-ex

You probably misunderstood me, the bottom line is that not all users need real ip, hence it follows that some of them will be on private ip, respectively, they need to be natted somehow, but I don’t know how to do it correctly on one piece of iron.

A
arctic-fox, 2015-07-24
@arctic-fox

And if you use the netmap feature?

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question