A
A
Alex Pebody2022-03-18 17:24:18
Mikrotik
Alex Pebody, 2022-03-18 17:24:18

Mikrotik NAT -> ISP1 ISP2 distribution?

Good day. Ask for help? There is a simple scheme:

623493b1da09c501790828.png

There is a PC on the LAN, let it be 10.1.1.10/24 on it, some service on port 80, let it be just a web that opens the picture, there are no SSL 443 HTTPS, let's just assume port 80 and that's it. Through MT (Mikrotik), port 8001 is forwarded to the address 10.1.1.10/24 to internal 80. Through netmap or dst-nat in action and so and so I tried, the Firewall Forward rule 1e everything is allowed for everyone.

Problem: Because 2 providers and, accordingly, two zero routes 0.0.0.0/0 with different distances, we will not go into the details of recursion and reservation, etc. Let it be just ISP1 = dis1 and ISP2 = dis2, by default everything goes through ISP1 and when we we go externally to the address of the provider and port 8001, we successfully receive a picture from the 80th port of the PC, but if we go through the external ISP2, then we will not get a picture, because sending to nat through ISP2, and returning from ISP1, I forgot to clarify that "masquerades " are also split into src ISP1 and src ISP2.

Question: How can I make a request on port 8001 be sent from both ISP1 and ISP2? It is clear that Mangle is needed at the Preroute level, at the moment it is done only by Input Mark and Output Mark, so that you can ping from both ISPs, and you can also go to the MT itself from both ISPs, but no matter how I do the same with PREROUTE ISP1 - > OUT ISP1 and adding routes 0.0.0.0/0 with these marks, 0 sense! I broke my whole head, honestly I have no strength already! Please help.

ps I reread the information on Failover Balancing and other articles in batches, but balancing is everywhere, and I need it to be possible to make a request from one and the other provider on the port and the return went through it.

THANKS IN ADVANCE!

Answer the question

In order to leave comments, you need to log in

2 answer(s)
A
Alexander Karabanov, 2022-03-18
@alexpebody

Multivan and routing on Mikrotik RouterOS - of course it is written here for all occasions, but it is not necessary to do everything, it is enough to mark the traffic.

D
Drno, 2022-03-18
@Drno

Do you need to get from outside? from LAN via external IP?

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question