Thursday, May 05, 2016

#LOAD BALANCE
#RB750G
/ip address
add address=202.146.225.1/25 interface=ether1
add address=192.168.1.103/24 interface=ether2

/ip route
add gateway=192.168.1.128

/ip firewall nat
add action=masquerade chain=srcnat


#RB450G
/ip address
add address=202.146.225.43/25 interface=ether1-gateway
add address=202.146.225.26/25 interface=ether2-gateway
add address=192.168.4.1/24 interface=ether4
add address=192.168.5.1/24 interface=ether5

/ip route
add gateway=202.146.225.1
add gateway=202.146.225.1%ether1-gateway routing-mark=route43
add gateway=202.146.225.1%ether2-gateway routing-mark=route26

/ip firewall nat
add action=masquerade chain=srcnat out-interface=ether1-gateway
add action=masquerade chain=srcnat out-interface=ether2-gateway
add action=dstnat chain=dstnat to-address=192.168.4.2 to-ports=80 protocol=tcp dst-address=202.146.225.43 dst-port=80
add action=dstnat chain=dstnat to-address=192.168.4.2 to-ports=22 protocol=tcp dst-address=202.146.225.43 dst-port=22
add action=dstnat chain=dstnat to-address=192.168.4.2 to-ports=25 protocol=tcp dst-address=202.146.225.43 dst-port=25
add action=dstnat chain=dstnat to-address=192.168.4.2 to-ports=110 protocol=tcp dst-address=202.146.225.43 dst-port=110
add action=dstnat chain=dstnat to-address=192.168.4.2 to-ports=143 protocol=tcp dst-address=202.146.225.43 dst-port=143
add action=dstnat chain=dstnat to-address=192.168.5.2 to-ports=80 protocol=tcp dst-address=202.146.225.26 dst-port=80
add action=dstnat chain=dstnat to-address=192.168.5.2 to-ports=22 protocol=tcp dst-address=202.146.225.26 dst-port=22

/ip firewall mangle
add action=mark-routing chain=prerouting src-address=192.168.4.0/24 dst-address=!192.168.5.0/24 new-routing-mark=route43
add action=mark-routing chain=prerouting src-address=192.168.5.0/24 dst-address=!192.168.4.0/24 new-routing-mark=route26


#Hasil Akhir:
#Gateway 202.146.225.43 langsung memberi internet 192.168.4.2 , dan redirect ke tujuan port 80,22,25,110,143
#Gateway 202.146.225.26 langsung memberi internet 192.168.5.2 , dan redirect ke tujuan port 80,22
#Bisa langsung SSH dari 192.168.4.2 ke 192.168.5.2 dan sebaliknya