MikroTik做单线多拨负载均衡
漏油器版本:x86_64_7.9
创建pppoe
/interface pppoe-client add interface=wan user=* password=* add-default-route=no name=pppoe-out1 disabled=no /interface pppoe-client add interface=wan user=* password=* add-default-route=no name=pppoe-out2 disabled=no /interface pppoe-client add interface=wan user=* password=* add-default-route=no name=pppoe-out3 disabled=no
注:user宽带帐号 password宽带密码
创建路由标记tables
/routing table add name=PPPoE_Rout_1 fib add name=PPPoE_Rout_2 fib add name=PPPoE_Rout_3 fib
创建mangle
劫持TCP Mss
/ip firewall mangle add action=change-mss chain=forward comment="chang mss" new-mss=clamp-to-pmtu passthrough=yes protocol=tcp tcp-flags=syn out-interface=pppoe-out1 place-before=0 /ip firewall mangle add action=change-mss chain=output new-mss=clamp-to-pmtu passthrough=yes protocol=tcp tcp-flags=syn place-before=1
注:out-interface=pppoe-out1 可以不选择 这条7.0版本无用
源进
/ip firewall mangle add action=mark-connection chain=prerouting comment="In_source" connection-mark=no-mark connection-state=new in-interface=pppoe-out1 new-connection-mark=In_Conn_1 passthrough=yes add action=mark-connection chain=prerouting connection-mark=no-mark connection-state=new in-interface=pppoe-out2 new-connection-mark=In_Conn_2 passthrough=yes add action=mark-connection chain=prerouting connection-mark=no-mark connection-state=new in-interface=pppoe-out3 new-connection-mark=In_Conn_3 passthrough=yes
源出
/ip firewall mangle add action=mark-routing chain=output comment="Out_source" connection-mark=In_Conn_1 new-routing-mark=PPPoE_Rout_1 passthrough=yes add action=mark-routing chain=output connection-mark=In_Conn_2 new-routing-mark=PPPoE_Rout_2 passthrough=yes add action=mark-routing chain=output connection-mark=In_Conn_3 new-routing-mark=PPPoE_Rout_3 passthrough=yes
/ip firewall mangle add action=mark-connection chain=prerouting comment="Pcc_1" dst-address-type=!local in-interface=Bridge connection-mark=no-mark connection-state=new new-connection-mark=In_Conn_1 passthrough=yes per-connection-classifier=src-address-and-port:3/0 add action=mark-routing chain=prerouting connection-mark=In_Conn_1 in-interface=Bridge new-routing-mark=PPPoE_Rout_1 passthrough=yes add action=mark-connection chain=prerouting comment="Pcc_2" dst-address-type=!local in-interface=Bridge connection-mark=no-mark connection-state=new new-connection-mark=In_Conn_2 passthrough=yes per-connection-classifier=src-address-and-port:3/1 add action=mark-routing chain=prerouting connection-mark=In_Conn_2 in-interface=Bridge new-routing-mark=PPPoE_Rout_2 passthrough=yes add action=mark-connection chain=prerouting comment="Pcc_3" dst-address-type=!local in-interface=Bridge connection-mark=no-mark connection-state=new new-connection-mark=In_Conn_3 passthrough=yes per-connection-classifier=src-address-and-port:3/2 add action=mark-routing chain=prerouting connection-mark=In_Conn_3 in-interface=Bridge new-routing-mark=PPPoE_Rout_3 passthrough=yes
创建伪装nat
/ip firewall nat add chain=srcnat out-interface=pppoe-out1 action=masquerade comment="Src_A" place-before=0 add chain=srcnat out-interface=pppoe-out2 action=masquerade comment="Src_B" place-before=1 add chain=srcnat out-interface=pppoe-out3 action=masquerade comment="Src_C" place-before=2
注:V7版本只创一条NAT可以不选择out-interface=pppoe-out1
创建路由Route
/ip route add dst-address=0.0.0.0/0 gateway=pppoe-out1 distance=1 routing-table=main conmment=ISP1 Default Route add dst-address=0.0.0.0/0 gateway=pppoe-out1 distance=1 routing-table=PPPoE_Rout_1 conmment=ISP1 Load Balanced Route add dst-address=0.0.0.0/0 gateway=pppoe-out2 distance=2 routing-table=main conmment=ISP2 Default Route add dst-address=0.0.0.0/0 gateway=pppoe-out2 distance=2 routing-table=PPPoE_Rout_2 conmment=ISP2 Load Balanced Route add dst-address=0.0.0.0/0 gateway=pppoe-out3 distance=3 routing-table=main conmment=ISP3 Default Route add dst-address=0.0.0.0/0 gateway=pppoe-out3 distance=3 routing-table=PPPoE_Rout_3 conmment=ISP3 Load Balanced Route
宽带是300兆测试下叠加效果:
如上图:上传和下载都有叠加 最开始这宽带是只能单拨,受接入光猫上传与下载限制 有热心群友已经测试过单帐号可以200多拨
电信也正常叠加:
某都联通
Tr069 vlan id=4040
Voip vlan id=3500
Internet vlan id=100
Iptv vlan id=3300
IGMP snooping组播=4075
常见问题FAQ
- 免费下载或者VIP会员专享资源能否直接商用?
版权声明:原创作品,允许转载,转载时请务必以超链接形式标明文章
原始出处 、作者信息和本声明。否则将追究法律责任。
楼主是个高手,向您多多学习取精!!哈哈!!可惜现在宽带商基本都不能多拨了或者多拨都端口限速了,基本没有啥意义了!!
楼主成都的电信也是可以的吗?
楼主的网站几天打不开,我还以为楼主失踪了呢!