Como criar um direcionamento para acessar mk-auth

Pedro, eu gostaria de acessar meu mk-auth depois do load balance minhas configurações do load balance RB 750 são essas, por favor alguém poderia me ajudar?

/ip address
add address=10.0.10.2/30 broadcast=10.0.10.3 comment="" disabled=no \
interface=ISP1 network=10.0.10.0
add address=10.0.20.2/30 broadcast=10.0.20.3 comment="" disabled=no \
interface=ISP2 network=10.0.20.0
add address=192.168.88.1/30 broadcast=192.168.88.3 comment="" disabled=no \
interface=Local network=192.168.88.0


/ip firewall mangle
add action=accept chain=prerouting comment=\
"====================================================================" \
disabled=no dst-address=192.168.88.0/30 src-address=192.168.88.0/30
add action=accept chain=prerouting comment="" disabled=no dst-address=\
10.0.10.0/30 src-address=192.168.88.0/30
add action=accept chain=prerouting comment="" disabled=no dst-address=\
10.0.20.0/30 src-address=192.168.88.0/30
add action=mark-connection chain=prerouting comment=\
"====================================================================" \
connection-mark=no-mark disabled=no in-interface=ISP1 \
new-connection-mark=ISP1_conn passthrough=yes
add action=mark-connection chain=prerouting comment="" connection-mark=\
no-mark disabled=no in-interface=ISP2 new-connection-mark=ISP2_conn \
passthrough=yes
add action=jump chain=prerouting comment=\
"====================================================================" \
connection-mark=no-mark disabled=no in-interface=Local jump-target=\
policy_router
add action=mark-routing chain=prerouting comment=\
"====================================================================" \
connection-mark=ISP1_conn disabled=no new-routing-mark=ISP1_trafic \
passthrough=yes src-address=192.168.88.0/30
add action=mark-routing chain=prerouting comment="" connection-mark=ISP2_conn \
disabled=no new-routing-mark=ISP2_trafic passthrough=yes src-address=\
192.168.88.0/30
add action=mark-routing chain=output comment=\
"====================================================================" \
connection-mark=ISP1_conn disabled=no new-routing-mark=ISP1_trafic \
passthrough=yes
add action=mark-routing chain=output comment="" connection-mark=ISP2_conn \
disabled=no new-routing-mark=ISP2_trafic passthrough=yes
add action=mark-connection chain=policy_router comment=\
"====================================================================" \
disabled=no dst-address-type=!local new-connection-mark=ISP1_conn \
passthrough=yes per-connection-classifier=both-addresses:2/0
add action=mark-connection chain=policy_router comment="" disabled=no \
dst-address-type=!local new-connection-mark=ISP2_conn passthrough=yes \
per-connection-classifier=both-addresses:2/1


/ip firewall nat
add action=masquerade chain=srcnat comment="" disabled=no out-interface=ISP1
add action=masquerade chain=srcnat comment="" disabled=no out-interface=ISP2

/ip route
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=10.0.10.1 \
routing-mark=ISP1_trafic scope=30 target-scope=10
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=10.0.20.1 \
routing-mark=ISP2_trafic scope=30 target-scope=10
add comment="" disabled=no distance=2 dst-address=0.0.0.0/0 gateway=10.0.10.1 \
scope=30 target-scope=10
add comment="" disabled=no distance=3 dst-address=0.0.0.0/0 gateway=10.0.20.1 \
scope=30 target-scope=10


/ip dns
set allow-remote-requests=no cache-max-ttl=1w cache-size=20480KiB \
max-udp-packet-size=512 servers=8.8.8.8,8.8.4.4

Para adicionar comentários, você deve ser membro de MK-AUTH.

Join MK-AUTH

Enviar-me um email quando as pessoas responderem –

Respostas

  • Vlw pela contribuição...

  • REGRA DIR-PORT LOAD-BALANCE

    add action=dst-nat chain=dstnat comment="Redireciona porta 80 P/ SERVER MIKROTIK" disabled=no dst-port=(Porta a qual deseja utilizar externamente) in-interface=(Interface do seu link) \
    protocol=tcp to-addresses=(IP do SERVIDOR MIKROTIK (MK-AUTH)) to-ports=80

    REGRA DIR-PORT SERVIDOR MIKROTIK (MK-AUTH)

    add action=dst-nat chain=dstnat comment="Redireciona porta 80 P/ SERVER MK-AUTH" disabled=no dst-port=80 in-interface=(Interface do seu link (LOAD-BALANCE)) \
    protocol=tcp to-addresses=(IP do SERVIDOR MK-AUTH) to-ports=80

    Bom amigo, espero que te ajude com isso, mais se não, favor postar aqui que tentaremos te ajudar da melhor forma possível, forte abraço.

This reply was deleted.