Mikrotik : Load balancing 2 atau lebih ISP (Multi over gateway)
Friday March 27th 2009, 2:56 pm  Tagged , , ,
Filed under: Tips & Trik, Tutorial, Web/Tech, Weblogs

Tulisan ini hanya membahas langkah Load Balancing multi over gateway pada mikrotik dan dibatasi hanya pada 2 ISP dengan 1 LAN.

Setelah proses instalasi/setup mikrotik os selesai, pastikan ip address local telah di tentukan dan bisa di remote  melalui winbox ataupun konsole.

Login ke mikrotik via winbox sebagai admin, klik new terminal dan ketikkan perintah/syntax nya.

[admin@MikroTik] > /interface print
Flags: X - disabled, D - dynamic, R - running
#    NAME                         TYPE             RX-RATE    TX-RATE    MTU
0  R ether3                       ether            0          0          1500
1  R ether2                       ether            0          0          1500
2  R ether1                       ether            0          0          1500

* Asumsi IP Address local = 192.168.0.30/27, to ISP A = 192.168.1.2/29, to ISP B = 192.168.2.2/29

[admin@MikroTik] > /ip address add address=192.168.0.30/27 netmask=255.255.255.224 broadcast=192.168.0.31 network=192.168.0.0 interface=ether1
[admin@MikroTik] > /ip address add address=192.168.1.2/29 netmask=255.255.255.248 broadcast=192.168.1.7 network=192.168.1.0 interface=ether2
[admin@MikroTik] > /ip address add address=192.168.2.2/29 netmask=255.255.255.248 broadcast=192.168.2.7 network=192.168.2.0 interface=ether3
[admin@MikroTik] > /interface set ether1 name=local
[admin@MikroTik] > /interface set ether2 name=to-ISP-A
[admin@MikroTik] > /interface set ether3 name=to-ISP-B

[admin@MikroTik] > /ip address print
Flags: X - disabled, I - invalid, D - dynamic
#   ADDRESS            NETWORK         BROADCAST       INTERFACE
0   192.168.0.30/27    192.168.0.0     192.168.0.31    local
1   192.168.1.2/29     192.168.1.0     192.168.1.7     to-ISP-A
2   192.168.2.2/29     192.168.2.0     192.168.2.7     to-ISP-B

* asumsi u/setiap group = 14 komputer (client)

[admin@MikroTik] > /ip firewall mangle add chain=prerouting src-address=192.168.0.0/28 action=mark-routing new-routing-mark=GroupA
[admin@MikroTik] > /ip firewall mangle add chain=prerouting src-address=192.168.0.16/28 action=mark-routing new-routing-mark=GroupB

* NAT untuk lan

[admin@MikroTik] > /ip firewall nat add chain=srcnat src-address=192.168.0.0/27 action=masquerade

* Pisahkan gateway masing masing group

[admin@MikroTik] > /ip route add gateway=192.168.1.1 routing-mark=GroupA
[admin@MikroTik] > /ip route add gateway=192.168.2.1 routing-mark=GroupB

* Isi DNS sesuai ISP

[admin@MikroTik] > /ip dns set primary-dns=202.134.0.155 secondary-dns=202.134.1.10 allow-remote-requests=yes





     
No Comments so far



Leave a comment
Line and paragraph breaks automatic, e-mail address never displayed, HTML allowed: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

(required)

(required)