MAYAKNET
Newbie | Редактировать | Профиль | Сообщение | ICQ | Цитировать | Сообщить модератору [more] Fomichok2 Цитата: Сделайте в терминале на всех тиках ip firewall filter export и ip firewall nat export и пришлите сюда. | =============== Микротик А -------------- [neo@PRAJKA] > ip firewall filter export # jan/07/2013 00:15:50 by RouterOS 6.0rc6 # software id = NAWD-5KW5 # /ip firewall filter add chain=forward comment="MIKROBILL USERS RULE" src-address-list=\ MikroBill_Users add chain=input dst-port=1723 protocol=tcp add action=drop chain=forward comment=MikroBill_All_Drop dst-address=\ !85.21.96.248 src-address-list=MikroBill_All_Drop [neo@PRAJKA] > [neo@PRAJKA] > ip firewall nat export # jan/07/2013 00:17:07 by RouterOS 6.0rc6 # software id = NAWD-5KW5 # /ip firewall nat add action=netmap chain=dstnat comment="MIKROBILL WEB-CAP" dst-address=\ !192.168.1.11 dst-port=80 protocol=tcp src-address-list=\ MikroBill_OFF_Users to-addresses=85.21.96.248 to-ports=8080 add action=masquerade chain=srcnat comment=ALL-maskarad out-interface=\ INET-WAN !to-addresses !to-ports add action=masquerade chain=srcnat comment="MIKROBILL USERS NAT" \ src-address-list=MikroBill_All_Drop !to-addresses !to-ports add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ \ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \CC\C0\C3\C4\C8 \C2\C8\C4\C5\ \CE 212" dst-address=77.37.204.98 dst-port=8212 protocol=tcp \ to-addresses=192.168.111.212 to-ports=8212 add action=dst-nat chain=dstnat comment=80 dst-address=77.37.204.98 dst-port=\ 80 protocol=tcp to-addresses=192.168.111.37 to-ports=8037 add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ \ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 3" dst-address=\ 77.37.204.98 dst-port=8003 protocol=tcp to-addresses=192.168.111.3 \ to-ports=8003 add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ \ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \EA\EE\EC\EF \C8\ED\E3\E0" \ dst-address=77.37.204.98 dst-port=5900 protocol=tcp to-addresses=\ 192.168.111.234 to-ports=5906 add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ \ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 4" dst-address=\ 77.37.204.98 dst-port=8004 protocol=tcp to-addresses=192.168.111.4 \ to-ports=8004 add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ \ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 8" dst-address=\ 77.37.204.98 dst-port=8007 protocol=tcp to-addresses=192.168.111.7 \ to-ports=8007 add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ \ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 150" dst-address=\ 77.37.204.98 dst-port=8149 protocol=tcp to-addresses=192.168.111.149 \ to-ports=80 add action=netmap chain=dstnat comment="MIKROBILL 2WEB-CAP" dst-address=\ !192.168.1.11 dst-port=80 protocol=tcp src-address-list=!MikroBill_Users \ to-addresses=85.21.96.248 to-ports=8080 [neo@PRAJKA] > ------------------------------------ Микротик В ---------------- [neo@RAY] > ip firewall filter export # jan/06/2013 20:15:00 by RouterOS 6.0rc6 # software id = W8BZ-HKYN # /ip firewall filter add chain=forward comment="MIKROBILL USERS RULE" src-address-list=MikroBill_Users add chain=input comment="default configuration" protocol=icmp add chain=input comment="default configuration" connection-state=established add chain=input comment=neo dst-port=1723 protocol=tcp add chain=input comment=neo protocol=gre add chain=input comment="default configuration" connection-state=related add action=drop chain=forward comment=MikroBill_All_Drop dst-address=!85.21.96.248 src-address-list=MikroBill_All_Drop [neo@RAY] > ------------------------- [neo@RAY] > ip firewall nat export # jan/06/2013 20:18:57 by RouterOS 6.0rc6 # software id = W8BZ-HKYN # /ip firewall nat add action=netmap chain=dstnat comment="MIKROBILL WEB-CAP" dst-address=\ !192.168.1.11 dst-port=80 protocol=tcp src-address-list=\ MikroBill_OFF_Users to-addresses=85.21.96.248 to-ports=8080 add action=masquerade chain=srcnat comment="default configuration" \ out-interface=BEELINE-l2tp to-addresses=0.0.0.0 !to-ports add action=masquerade chain=srcnat comment="MIKROBILL USERS NAT" \ src-address-list=MikroBill_All_Drop !to-addresses !to-ports add action=dst-nat chain=dstnat comment=\ "\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 \ED\E0 AP-3" dst-address=\ 85.21.96.248 dst-port=8003 protocol=tcp to-addresses=192.168.112.3 \ to-ports=8003 add action=dst-nat chain=dstnat comment=\ "\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 80" dst-address=\ 85.21.96.248 dst-port=80 protocol=tcp to-addresses=192.168.112.37 \ to-ports=8037 add action=netmap chain=dstnat comment="MIKROBILL 2WEB-CAP" dst-address=\ !192.168.1.11 dst-port=80 protocol=tcp src-address-list=!MikroBill_Users \ to-addresses=85.21.96.248 to-ports=8080 [neo@RAY] > ------------------------------ Микротик С ------------------- [neo@SEVAK] > ip firewall filter export # jan/07/2013 00:20:33 by RouterOS 6.0rc6 # software id = 0A2C-BAXG # /ip firewall filter add chain=forward comment="MIKROBILL USERS RULE" src-address-list=\ MikroBill_Users add chain=input dst-port=1723 protocol=tcp add chain=input protocol=gre add action=drop chain=forward comment=MikroBill_All_Drop dst-address=\ !85.21.96.248 src-address-list=MikroBill_All_Drop [neo@SEVAK] > ---------- [neo@SEVAK] > ip firewall nat export # jan/07/2013 00:21:38 by RouterOS 6.0rc6 # software id = 0A2C-BAXG # /ip firewall nat add action=netmap chain=dstnat comment="MIKROBILL WEB-CAP" dst-address=!192.168.1.11 dst-port=80 protocol=tcp src-address-list=MikroBill_OFF_Users to-addresses=\ 85.21.96.248 to-ports=8080 add action=masquerade chain=srcnat comment=ALL-maskarad out-interface=vpn-L2TP-BEELINE !to-addresses !to-ports add action=masquerade chain=srcnat comment="MIKROBILL USERS NAT" src-address-list=MikroBill_All_Drop !to-addresses !to-ports add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 3" dst-address=78.107.253.91 dst-port=\ 8003 protocol=tcp to-addresses=192.168.114.3 to-ports=8003 add action=dst-nat chain=dstnat comment="BLOCK 80" dst-address=78.107.253.91 dst-port=80 protocol=tcp to-addresses=192.168.114.31 to-ports=8031 add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 Mikrotik SALON" dst-address=78.107.253.91 \ dst-port=8292 protocol=tcp to-addresses=192.168.114.243 to-ports=8292 add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 4" dst-address=78.107.253.91 dst-port=\ 8004 protocol=tcp to-addresses=192.168.114.4 to-ports=8004 add action=netmap chain=dstnat comment="MIKROBILL 2WEB-CAP" dst-address=!192.168.1.11 dst-port=80 protocol=tcp src-address-list=!MikroBill_Users to-addresses=85.21.96.248 \ to-ports=8080 [neo@SEVAK] > -------------------------- =============================== | Всего записей: 20 | Зарегистр. 02-01-2013 | Отправлено: 00:22 07-01-2013 | Исправлено: MAYAKNET, 00:26 07-01-2013 |
|