dalookda88 发表于 2009-7-3 19:55:58

3.11多线负载设置。客户机不定时掉线。。

帮忙看看那里设置有问题??客户机是pppoe拔号。。QQ,QQ游戏,网游。不定时掉线!!!

/ip address
add address=192.168.20.200/24 broadcast=192.168.20.255 comment="" disabled=no \
    interface=lan network=192.168.20.0

/ip route
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\
    pppoe-out2 routing-mark=wan2
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\
    pppoe-out3 routing-mark=wan3
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\
    pppoe-out4 routing-mark=wan4
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\
    pppoe-out1 routing-mark=wan1
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\
    pppoe-out2

/ip firewall mangle
add action=mark-connection chain=prerouting comment="" connection-state=new \
    disabled=yes dst-port=443 new-connection-mark=v2 passthrough=yes \
    protocol=tcp src-address-list=user
add action=mark-routing chain=prerouting comment="" connection-mark=v7 \
    disabled=yes dst-port=443 new-routing-mark=v2 passthrough=no protocol=tcp \
    src-address-list=user
add action=mark-connection chain=prerouting comment=1 connection-state=new \
    disabled=no new-connection-mark=wan1 nth=4,1 passthrough=yes \
    src-address-list=user
add action=mark-routing chain=prerouting comment="" connection-mark=wan1 \
    disabled=no new-routing-mark=wan1 passthrough=no src-address-list=user
add action=mark-connection chain=prerouting comment=2 connection-state=new \
    disabled=no new-connection-mark=wan2 nth=3,1 passthrough=yes \
    src-address-list=user
add action=mark-routing chain=prerouting comment="" connection-mark=wan2 \
    disabled=no new-routing-mark=wan2 passthrough=no src-address-list=user
add action=mark-connection chain=prerouting comment=3 connection-state=new \
    disabled=no new-connection-mark=wan3 nth=2,1 passthrough=yes \
    src-address-list=user
add action=mark-routing chain=prerouting comment="" connection-mark=wan3 \
    disabled=no new-routing-mark=wan3 passthrough=no src-address-list=user
add action=mark-connection chain=prerouting comment=5 connection-state=new \
    disabled=no new-connection-mark=wan4 nth=1,1 passthrough=yes \
    src-address-list=user
add action=mark-routing chain=prerouting comment="" connection-mark=wan4 \
    disabled=no new-routing-mark=wan4 passthrough=no src-address-list=user
add action=change-mss chain=forward comment="" disabled=yes new-mss=1440 \
    protocol=tcp tcp-flags=syn


/ip firewall nat
add action=masquerade chain=srcnat comment=1 disabled=no out-interface=\
    pppoe-out1
add action=masquerade chain=srcnat comment=3 disabled=no out-interface=\
    pppoe-out2
add action=masquerade chain=srcnat comment=2 disabled=no out-interface=\
    pppoe-out3
add action=masquerade chain=srcnat comment=4 disabled=no out-interface=\
    pppoe-out4




/ppp profile
set default change-tcp-mss=yes comment="" name=default only-one=default \
    use-compression=default use-encryption=default use-vj-compression=default
add change-tcp-mss=default comment="" dns-server=202.96.128.86,202.96.128.166 \
    local-address=23.25.16.56 name="\D5\FD\B3\A3\BF\CD\BB\A7\BB\FA\D3" \
    only-one=yes remote-address="\D5\FD\B3\A3\BF\CD\BB\A7\BB\FA\D3" \
    use-compression=yes use-encryption=yes use-vj-compression=yes
add change-tcp-mss=default comment="" dns-server=202.96.128.86,202.96.128.166 \
    local-address=26.65.45.89 name=GANE only-one=yes remote-address=GANE \
    use-compression=yes use-encryption=yes use-vj-compression=yes
add change-tcp-mss=default comment="" dns-server=202.96.128.86,202.96.128.166 \
    local-address=10.12.13.14 name="\CE\E5\D3\C3\CF\DF\C2\B7" only-one=yes \
    remote-address="\CE\E5\D3\C3\CF\DF\C2\B7" use-compression=default \
    use-encryption=yes use-vj-compression=default
add change-tcp-mss=default comment="" dns-server=202.96.128.86,202.96.128.166 \
    local-address=11.11.0.1 name=profile11qrtr only-one=default \
    remote-address=pool1 use-compression=yes use-encryption=yes \
    use-vj-compression=yes
set default-encryption change-tcp-mss=yes comment="" name=default-encryption \
    only-one=default use-compression=default use-encryption=yes \
    use-vj-compression=default

xxxyyy888 发表于 2009-7-3 22:46:41

passthrough=yes \
改成passthrough=no

WGHBOY 发表于 2009-7-4 01:06:49

nth=1,1有这个值吗,还有443的好像不太对吧

dalookda88 发表于 2009-7-4 17:21:13

443是禁用的。还有我是多个vlan,要不要在pppoe server中对每个VLAN建立PPPOE服务,如果不建立会不会客户机掉线。。

WGHBOY 发表于 2009-7-4 17:31:47

/ppp profile
这个为什么要这样设置,可以不要的

dalookda88 发表于 2009-7-5 08:50:53

我的客户机全是pppoe拔号的。。如果不设置,请问怎么拔号。

wijjiam 发表于 2009-7-5 09:26:45

最好不要开PPOE的帐号登陆功能如果开了会遇到这样的问题

最好不要用PPPOE的拨号直接设INTERFACE的网关直接用网关上

开了拨号太大内存了`

dalookda88 发表于 2009-7-5 20:21:14

请问怎样做,可以写个脚本吗?万分感谢。。。
页: [1]
查看完整版本: 3.11多线负载设置。客户机不定时掉线。。