Ip local: 192.168.1.0/24
here is my config.
Code: Select all
/ip firewall mangle
chain=input action=mark-connection new-connection-mark=wan1_conn passthrough=yes in-interface=wan1
chain=input action=mark-connection new-connection-mark=wan2_conn passthrough=yes in-interface=wan2
chain=output action=mark-routing new-routing-mark=to_wan1 passthrough=yes connection-mark=wan1_conn
chain=output action=mark-routing new-routing-mark=to_wan2 passthrough=yes connection-mark=wan2_conn
chain=prerouting action=accept dst-address=x.x.x.13/24 in-interface=bridge-local
chain=prerouting action=accept dst-address=y.y.y.10/24 in-interface=bridge-local
chain=prerouting action=mark-connection new-connection-mark=wan1_conn passthrough=yes dst-address-type=!local in-interface=bridge-local per-connection-classifier=both-addresses-and-ports:2/0
chain=prerouting action=mark-connection new-connection-mark=wan2_conn passthrough=yes dst-address-type=!local in-interface=bridge-local per-connection-classifier=both-addresses-and-ports:2/1
chain=prerouting action=mark-routing new-routing-mark=to_wan1 passthrough=yes in-interface=bridge-local connection-mark=wan1_conn
chain=prerouting action=mark-routing new-routing-mark=to_wan2 passthrough=yes in-interface=bridge-local connection-mark=wan2_conn
/ip route
add check-gateway=ping distance=1 dst-address=0.0.0.0/0 gateway=x.x.x.1 routing-mark=to_wan1 scope=30 target-scope=10
add check-gateway=ping distance=1 dst-address=0.0.0.0/0 gateway=y.y.y.1 routing-mark=to_wan2 scope=30 target-scope=10
add check-gateway=ping distance=1 dst-address=0.0.0.0/0 gateway=x.x.x.1 scope=30 target-scope=10
add check-gateway=ping distance=2 dst-address=0.0.0.0/0 gateway=y.y.y.1 scope=30 target-scope=10
I already tried to add these rules but my friend say they still see me sending packets with 2 ip wan
Code: Select all
/ip firewall mangle
add chain=prerouting src-address=192.168.1.180 action=mark-routing new-routing-mark=to_wan1
/ip route
add dst-address=0.0.0.0/0 routing-mark=to_wan1 gateway=x.x.x.1