You are on page 1of 1

/ip firewall mangle

add action=mark-connection chain=input comment="MARK INCOMING WAN" connection-ma


rk=no-mark \
in-interface=public1 new-connection-mark=cm_in_public1
add action=mark-connection chain=input connection-mark=no-mark in-interface=publ
ic2 \
new-connection-mark=cm_in_public2
add action=mark-routing chain=output connection-mark=cm_in_public1 new-routing-m
ark=via_public1
add action=mark-routing chain=output connection-mark=cm_in_public2 new-routing-m
ark=via_public2
add action=jump chain=prerouting comment="JUMP -> LOADBALANCE" dst-address-type=
!local hotspot=\
auth in-interface=local jump-target=loadbalance src-address=192.168.19.0/24
add action=mark-connection chain=loadbalance new-connection-mark=cm_lb_1 \
per-connection-classifier=both-addresses-and-ports:2/0
add action=mark-connection chain=loadbalance new-connection-mark=cm_lb_2 \
per-connection-classifier=both-addresses-and-ports:2/1
add action=mark-routing chain=prerouting connection-mark=cm_lb_1 in-interface=lo
cal \
new-routing-mark=via_public1 passthrough=no
add action=mark-routing chain=prerouting connection-mark=cm_lb_2 in-interface=lo
cal \
new-routing-mark=via_public2 passthrough=no
/ip route
add check-gateway=ping comment="TABLE PUBLIC 1" distance=1 gateway=192.168.1.1 r
outing-mark=\
via_public1
add check-gateway=ping comment="TABLE PUBLIC 2" distance=1 gateway=192.168.5.1 r
outing-mark=\
via_public2
add check-gateway=ping comment=DEFAULT distance=1 gateway=192.168.1.1
add check-gateway=ping comment=BACKUP distance=2 gateway=192.168.5.1

You might also like