Hi.
My config in general: bridge-inet - main ISP, backup-bridge - backup ISP and ISP for some IP-IP tunnel.
I try to create config where my Router can accept connections from main and backup channels. Some times working well, but sometimes I have problem that I cannot understand.
I have two ISP. And my router has three IP-addresses on two external interfaces:
/interfaces list
add interface=bridge-inet list=wan
add interface=bridge-backup list=wan
/ip address
add address=85.XXX.XXX.21/24 interface=bridge-inet network=85.XXX.XXX.0
add address=85.XXX.XXX.20 interface=bridge-inet network=85.XXX.XXX.20
add address=89.YYY.YYY.YYY/24 interface=bridge-backup network=89.YYY.YYY.0
/ip firewall mangle add action=mark-connection chain=prerouting connection-mark=no-mark in-interface=bridge-inet new-connection-mark=main-in passthrough=yes
/ip firewall mangle add action=mark-connection chain=prerouting connection-mark=no-mark in-interface=bridge-backup new-connection-mark=backup-in passthrough=yes
/ip firewall mangle add action=mark-routing chain=prerouting connection-mark=main-in in-interface-list=!wan new-routing-mark=maininet passthrough=yes
/ip firewall mangle add action=mark-routing chain=prerouting connection-mark=backup-in in-interface-list=!wan new-routing-mark=backupinet passthrough=yes
/ip firewall mangle add action=mark-routing chain=output connection-mark=main-in new-routing-mark=maininet passthrough=yes
/ip firewall mangle add action=mark-routing chain=output connection-mark=backup-in new-routing-mark=backupinet passthrough=yes
/ip firewall nat add action=masquerade chain=srcnat out-interface-list=wan
/ip route add distance=1 gateway=85.XXX.XXX.1
/ip route add distance=2 gateway=89.YYY.YYY.1
/ip route add distance=1 gateway=85.XXX.XXX.1 routing-mark=maininet
/ip route add distance=1 gateway=89.YYY.YYY.1 routing-mark=backupinet
/ip route rule
add action=lookup-only-in-table src-address=89.YYY.YYY.YYY/32 table=backupinet
add action=lookup-only-in-table src-address=85.XXX.XXX.20/32 table=maininet
add action=lookup-only-in-table src-address=85.XXX.XXX.21/32 table=maininet
After these config setup I have lost packets from inet to my main address router:
Ping statistics for 85.XXX.XXX.20:
Packets: Sent = 854, Received = 824, Lost = 30 (3% loss),
Approximate round trip times in milli-seconds:
Minimum = 3ms, Maximum = 91ms, Average = 6ms
How to troubleshoot?