You are on page 1of 1

@MikroTik] > /ip address print

Flags: X - disabled, I - invalid, D - dynamic


# ADDRESS NETWORK INTERFACE
0 192.168.1.50/24 192.168.1.0 WAN-1 - ISP 1
1 192.168.88.1/24 192.168.88.0 LAN
2 192.168.0.100/24 192.168.0.0 WAN-2 - ISP 2

Gateway : 192.168.1.20 - WAN-1


192.168.0.1 - WAN-2

MikroTik] > /ip firewall mangle print


add chain=prerouting action=accept dst-address=192.168.1.0/24 in-interface=LAN
add chain=prerouting action=accept dst-address=192.168.0.0/24 in-interface=LAN

add chain=prerouting action=mark-connection new-connection-mark=WAN1_conn connection-


mark=no-mark in-interface=WAN-1
add chain=prerouting action=mark-connection new-connection-mark=WAN2_conn connection-
mark=no-mark in-interface=WAN-2

add chain=prerouting action=mark-connection new-connection-mark=WAN1_conn dst-address-type=!


local connection-mark=no-mark in-interface=LAN per-connection-classifier=both-addresses:2/0
add chain=prerouting action=mark-connection new-connection-mark=WAN2_conn dst-address-type=!
local connection-mark=no-mark in-interface=LAN per-connection-classifier=both-addresses:2/1

add chain=prerouting action=mark-routing new-routing-mark=to_WAN1 connection-


mark=WAN1_conn in-interface=LAN
add chain=prerouting action=mark-routing new-routing-mark=to_WAN2 connection-
mark=WAN2_conn in-interface=LAN

add chain=output action=mark-routing new-routing-mark=to_WAN1 connection-mark=ISP1_conn


add chain=output action=mark-routing new-routing-mark=to_WAN2 connection-mark=ISP2_conn

/ ip route
add dst-address=0.0.0.0/0 gateway=192.168.1.20 routing-mark=to_WAN1 check-
gateway=ping
add dst-address=0.0.0.0/0 gateway=10.112.0.1 routing-mark=to_WAN2 check-
gateway=ping

You might also like