Johnboss
Junior Member | Редактировать | Профиль | Сообщение | Цитировать | Сообщить модератору Долго "курил" и интернет заработал в режиме балансировки и с доступом снаружи. Но теперь из локалки открываются не все сайты (например vk.com) Вот мой конфиг. Подскажите, где копать, пожалуйста # apr/18/2017 22:41:52 by RouterOS 6.38.5 # software id = FHCT-8PAM # /interface ethernet set [ find default-name=ether1 ] name=ISP1 set [ find default-name=ether5 ] name=ISP2 set [ find default-name=ether3 ] name=LAN /ip hotspot profile set [ find default=yes ] html-directory=flash/hotspot /ip address add address=62.118.138.175/24 interface=ISP1 network=62.118.138.0 add address=192.168.0.250/24 interface=LAN network=192.168.0.0 /ip dhcp-client add add-default-route=no dhcp-options=hostname,clientid disabled=no \ interface=ISP2 use-peer-dns=no /ip dns set allow-remote-requests=yes servers=8.8.8.8 /ip firewall filter add action=accept chain=input protocol=icmp add action=accept chain=forward protocol=icmp add action=accept chain=input connection-state=established add action=accept chain=forward connection-state=established add action=accept chain=input connection-state=related add action=accept chain=forward connection-state=related add action=drop chain=input connection-state=invalid add action=drop chain=forward connection-state=invalid add action=accept chain=input protocol=udp add action=accept chain=forward protocol=udp add action=accept chain=forward src-address=192.168.0.0/24 add action=accept chain=input src-address=192.168.0.0/24 add action=drop chain=input /ip firewall mangle add action=mark-connection chain=forward in-interface=ISP1 \ new-connection-mark=ISP1-con passthrough=yes add action=mark-connection chain=forward in-interface=ISP2 \ new-connection-mark=ISP2-con passthrough=yes add action=mark-routing chain=prerouting connection-mark=ISP1-con \ new-routing-mark=ISP1-rt passthrough=yes src-address=192.168.0.0/24 add action=mark-routing chain=prerouting connection-mark=ISP2-con \ new-routing-mark=ISP2-rt passthrough=yes src-address=192.168.0.0/24 /ip firewall nat add action=masquerade chain=srcnat add action=netmap chain=dstnat dst-port=80 protocol=tcp to-addresses=\ 192.168.0.249 to-ports=80 add action=netmap chain=dstnat dst-port=20-21 protocol=tcp to-addresses=\ 192.168.0.249 to-ports=20-21 /ip route add comment=Route_to_ISP1 distance=1 gateway=ISP1 routing-mark=ISP1-rt add comment=Route_to_ISP2 distance=1 gateway=ISP2 routing-mark=ISP2-rt add distance=1 gateway=62.118.138.1,88.151.88.1 /ip service set www port=81 /system clock set time-zone-name=Europe/Moscow /system routerboard settings # Firmware upgraded successfully, please reboot for changes to take effect! # Warning: memory not running at default frequency set memory-frequency=1200DDR |