Kiểu 1 : Chỉ cân bằng tải, không gộp băng thông
/ip firewall mangle
add action=mark-connection chain=input disabled=no in-interface=vnpt1 \
new-connection-mark=to_vnpt1 passthrough=yes
add action=mark-connection chain=input disabled=no in-interface=vnpt2 \
new-connection-mark=to_vnpt2 passthrough=yes
add action=mark-connection chain=prerouting connection-mark=no-mark disabled=\
no in-interface=vnpt1 new-connection-mark=to_vnpt1 passthrough=yes
add action=mark-connection chain=prerouting connection-mark=no-mark disabled=\
no in-interface=vnpt2 new-connection-mark=to_vnpt2 passthrough=yes
add action=mark-connection chain=prerouting connection-mark=no-mark disabled=\
no dst-address-type=!local in-interface=LAN new-connection-mark=\
to_vnpt1 passthrough=yes per-connection-classifier=both-addresses:2/0
add action=mark-connection chain=prerouting connection-mark=no-mark disabled=\
no dst-address-type=!local in-interface=LAN new-connection-mark=\
to_vnpt2 passthrough=yes per-connection-classifier=both-addresses:2/1
add action=mark-routing chain=prerouting connection-mark=to_vnpt1 disabled=\
no in-interface=LAN new-routing-mark=to_vnpt1 passthrough=yes
add action=mark-routing chain=prerouting connection-mark=vnpt6_conn disabled=\
no in-interface=LAN new-routing-mark=to_vnpt6 passthrough=yes
add action=mark-routing chain=output connection-mark=to_vnpt1 disabled=no \
new-routing-mark=to_vnpt1 passthrough=yes
add action=mark-routing chain=output connection-mark=to_vnpt2 disabled=no \
new-routing-mark=to_vnpt2 passthrough=yes
/ip firewall nat
add action=masquerade chain=srcnat disabled=no out-interface=vnpt1
add action=masquerade chain=srcnat disabled=no out-interface=vnpt2
/ip route
add check-gateway=ping disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\
vnpt1 routing-mark=to_vnpt1 scope=30 target-scope=10
add check-gateway=ping disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\
vnpt2 routing-mark=to_vnpt2 scope=30 target-scope=10
Kiểu 2 : Cân Bằng tải, Gộp băng thông download
/ip firewall mangleadd action=mark-connection chain=prerouting disabled=no in-interface=Lan_eth \ new-connection-mark=to_vnpt1 passthrough=yesadd action=mark-connection chain=prerouting disabled=no in-interface=Lan_eth \ new-connection-mark=to_vnpt2 passthrough=yes add action=mark-routing chain=prerouting disabled=no in-interface=Lan_eth \ new-routing-mark=to_vnpt1 passthrough=yes src-address-list=to_vnpt1add action=mark-routing chain=prerouting disabled=no in-interface=Lan_eth \ new-routing-mark=to_vnpt2 passthrough=yes src-address-list=to_vnpt2 add action=mark-connection chain=prerouting connection-state=new disabled=no \ in-interface=Lan_eth new-connection-mark=to_vnpt1 nth=2,1 passthrough=yesadd action=mark-connection chain=prerouting connection-state=new disabled=no \ in-interface=Lan_eth new-connection-mark=to_vnpt2 nth=2,2 passthrough=yes add action=add-src-to-address-list address-list=to_vnpt1 address-list-timeout=\ 1d chain=prerouting connection-mark=to_vnpt1 disabled=no in-interface=\ Lan_ethadd action=add-src-to-address-list address-list=to_vnpt2 address-list-timeout=\ 1d chain=prerouting connection-mark=to_vnpt2 disabled=no in-interface=\ Lan_eth add action=mark-routing chain=prerouting connection-mark=to_vnpt1 disabled=no \ in-interface=Lan_eth new-routing-mark=to_vnpt1 passthrough=yesadd action=mark-routing chain=prerouting connection-mark=to_vnpt2 disabled=no \ in-interface=Lan_eth new-routing-mark=to_vnpt2 passthrough=yes /ip firewall natadd action=masquerade chain=srcnat disabled=no out-interface=vnpt1add action=masquerade chain=srcnat disabled=no out-interface=vnpt2 /ip routeadd check-gateway=ping disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\ vnpt1 routing-mark=to_vnpt1 scope=30 target-scope=10add check-gateway=ping disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\ vnpt2 routing-mark=to_vnpt2 scope=30 target-scope=10
Kiểu 3 : Cân bằng tải, Gộp băng thông download và upload
/ip firewall mangleadd action=mark-connection chain=input disabled=no in-interface=vnpt1 \ new-connection-mark=to_vnpt1 passthrough=yesadd action=mark-connection chain=input disabled=no in-interface=vnpt2 \ new-connection-mark=to_vnpt2 passthrough=yesadd action=mark-routing chain=output connection-mark=to_vnpt1 disabled=no \ new-routing-mark=to_vnpt1 passthrough=yesadd action=mark-routing chain=output connection-mark=to_vnpt2 disabled=no \ new-routing-mark=to_vnpt2 passthrough=yesadd action=accept chain=prerouting disabled=no dst-address=192.168.0.0/24 \ in-interface=Lan_ethadd action=mark-connection chain=prerouting disabled=no dst-address-type=\ !local in-interface=Lan_eth new-connection-mark=to_vnpt1 passthrough=yes \ per-connection-classifier=both-addresses-and-ports:2/0add action=mark-connection chain=prerouting disabled=no dst-address-type=\ !local in-interface=Lan_eth new-connection-mark=to_vnpt2 passthrough=yes \ per-connection-classifier=both-addresses-and-ports:1/1add action=mark-routing chain=prerouting connection-mark=to_vnpt1 disabled=no \ in-interface=Lan_eth new-routing-mark=to_vnpt1 passthrough=yesadd action=mark-routing chain=prerouting connection-mark=to_vnpt2 disabled=no \ in-interface=Lan_eth new-routing-mark=to_vnpt2 passthrough=yes /ip firewall natadd action=masquerade chain=srcnat disabled=no out-interface=vnpt1add action=masquerade chain=srcnat disabled=no out-interface=vnpt2 /ip routeadd check-gateway=ping disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\ vnpt1 routing-mark=to_vnpt1 scope=30 target-scope=10add check-gateway=ping disabled=no distance=2 dst-address=0.0.0.0/0 gateway=\ vnpt2 routing-mark=to_vnpt2 scope=30 target-scope=10
Hướng dẫn load blancing mikrotik 2 WAN(PPPoE) to 1 LAN
nguồn (http://www.easyzonecorp.net/network/view.php?ID=1390) copy dán vào chạy
.
Script : 2 WAN(PPPoE) to 1 LAN
#|/ip address
/ip address add address=192.168.0.1/24 network=192.168.0.0 broadcast=192.168.0.255 interface=ether5 comment=”default configuration”#|/ip firewall mangle
/ip firewall mangle add chain=input in-interface=pppoe-out1 action=mark-connection new-connection-mark=ether1_conn
/ip firewall mangle add chain=input in-interface=pppoe-out2 action=mark-connection new-connection-mark=ether2_conn/ip firewall mangle add chain=output connection-mark=ether1_conn action=mark-routing new-routing-mark=to_ether1
/ip firewall mangle add chain=output connection-mark=ether2_conn action=mark-routing new-routing-mark=to_ether2/ip firewall mangle add chain=prerouting dst-address-type=!local in-interface=ether5 per-connection-classifier=both-addresses-and-ports:2/0 action=mark-connection new-connection-mark=ether1_conn passthrough=yes
/ip firewall mangle add chain=prerouting dst-address-type=!local in-interface=ether5 per-connection-classifier=both-addresses-and-ports:2/1 action=mark-connection new-connection-mark=ether2_conn passthrough=yes
/ip firewall mangle add chain=prerouting connection-mark=ether1_conn in-interface=ether5 action=mark-routing new-routing-mark=to_ether1
/ip firewall mangle add chain=prerouting connection-mark=ether2_conn in-interface=ether5 action=mark-routing new-routing-mark=to_ether2#|/ip route
/ip route add dst-address=0.0.0.0/0 gateway=pppoe-out1 routing-mark=to_ether1 check-gateway=ping
/ip route add dst-address=0.0.0.0/0 gateway=pppoe-out2 routing-mark=to_ether2 check-gateway=ping/ip route add dst-address=0.0.0.0/0 gateway=pppoe-out1 distance=1 check-gateway=ping
/ip route add dst-address=0.0.0.0/0 gateway=pppoe-out2 distance=2 check-gateway=ping#|/ip firewall nat
/ip firewall nat add chain=srcnat out-interface=pppoe-out1 action=masquerade
/ip firewall nat add chain=srcnat out-interface=pppoe-out2 action=masquerade#| DHCP server is on switch, with address pool 192.168.0.100-192.168.0.200
/ip pool add name=default-dhcp ranges=192.168.0.100-192.168.0.200
/ip dhcp-server add name=default address-pool=default-dhcp interface=ether5 disabled=no
/ip dhcp-server network add address=192.168.0.0/24 gateway=192.168.0.1 dns-server=192.168.0.1 comment=”default configuration”#| DNS
/ip dns set allow-remote-requests=yes
/ip dns static add name=router address=192.168.0.1#| Now Configure DNS server so users can resolve hostnames,
#| Ex.cache-size=5000KiB
#| DNS Google = 8.8.8.8,8.8.4.4
#| DNS 3BB = 110.164.252.222,110.164.252.223
/ip dns set allow-remote-requests=yes cache-max-ttl=1w cache-size=5000K max-udp-packet-size=512 servers=8.8.8.8,8.8.4.4sau khi chạy script xong chỉnh 1 chút là thành load pcc (tận dụng pc củ và lan cùi sẽ làm dc) :
+ETHER1: WAN VNPT
+ETHER2: WAN VIETTEL
+ETHER3: LOCAL