구글에 ,160;색해도 PCC 구성에 NAS 구성Ȣ16;lj16; 해외 글 찾기가 Ǻ12;/140;워서
결국 여기다 1656;문1012; 올/140;봅니다.
1068;단 1228;가 구성 Ȣ16;/140;lj16; 목1201;1008;
0120;크/196;ᔘ1; PCC 2WAN 구성1004;/196; /196;드 벨런싱 .104;면서
NAS를 외ǥ12;에서 1217;속 가능Ȣ16;,172; Ȣ16;/140;고 합니다.
현1116; 세ᔚ1;1004;/196; PCC /196;드벨런싱1008; 1096; .104;고 1080;lj16;데
NAS 외ǥ12; 1217;속만 안.104;고 1080;습니다.
사용1473;1064; 라우터lj16; CCR2116 1077;니다
다만160;
/ip/route 1032;
ISP2 1452;소1901;에 Distance 값1012; 2/196; 우선순위를 낮추면 NASlj16; ISP1 1452;소를 통해
외ǥ12;에서 1217;속1060; .104;고, NJ17;연Ȣ16;,192;1648;만 PCC /196;드벨런싱1060; .104;1648; 않고 ISP1에 ǥ12;Ȣ16;가 1665;1473;.121;니다...
비활성화 .108; 세ᔚ1;1012; 1228;외Ȣ16;고 세ᔚ1; 값1012; 올/140;봅니다
(1068;ǥ12; IP1452;소와 포트 번호lj16; 실1228; 사용Ȣ16;lj16; 세ᔚ1;과 다른 시놀/196;1648; 기본 포트 또lj16; 1076;1032;1032; 포트번호/196; .104;Ǻ12; 1080;습니다.)
그리고 비활성화.108; 사용Ȣ16;1648; 않lj16; 세ᔚ1;1008; 생략해서 세ᔚ1; 번호 순서가 비Ǻ12; 1080;lj16; ,172; 1080;1012; 수 1080;습니다.
/ip/firewall/nat
160;6 160; 160;;;; PCC to NAS
160; 160; 160; chain=srcnat action=masquerade connection-mark=NAS_conn160;
160; 160; 160; out-interface=ISP1 log=no log-prefix=""160;
160;7 160; 160;;;; Loop Back
160; 160; 160; chain=srcnat action=masquerade src-address=192.168.***.0/24 log=no160;
160; 160; 160; log-prefix=""160;
160;8 160; 160;;;; ISP1 Synology 2400 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=2400160;
160; 160; 160; protocol=udp dst-address=180.***.***.*** dst-port=2400 log=no160;
160; 160; 160; log-prefix=""160;
160;9 160; 160;;;; ISP2 Synology 2400 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=2400160;
160; 160; 160; protocol=udp dst-address=210.***.***.*** dst-port=2400 log=no160;
160; 160; 160; log-prefix=""160;
10 160; 160;;;; ISP1 Synology 5001 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5001160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=5001 log=no160;
160; 160; 160; log-prefix=""160;
11 160; 160;;;; ISP2 Synology 5001 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5001160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=5001 log=no160;
160; 160; 160; log-prefix=""160;
12 160; 160;;;; ISP1 Synology 5002 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5002160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=5002 log=no160;
160; 160; 160; log-prefix=""160;
13 160; 160;;;; ISP2 Synology 5002 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5002160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=5002 log=no160;
160; 160; 160; log-prefix=""160;
14 160; 160;;;; ISP1 Synology 5004 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5004160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=5004 log=no160;
160; 160; 160; log-prefix=""160;
15 160; 160;;;; ISP2 Synology 5004 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5004160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=5004 log=no160;
160; 160; 160; log-prefix=""160;
16 160; 160;;;; ISP1 Synology 20000 -> 5001 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5001160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=20000 log=no160;
160; 160; 160; log-prefix=""160;
17 160; 160;;;; ISP2 Synology 20000 -> 5001 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5001160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=20000 log=no160;
160; 160; 160; log-prefix=""160;
18 160; 160;;;; ISP1 Synology 45500 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=45500160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=45500 log=no160;
160; 160; 160; log-prefix=""160;
19 160; 160;;;; ISP2 Synology 45500 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=45500160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=45500 log=no160;
160; 160; 160; log-prefix=""160;
20 160; 160;;;; ISP1 Synology 45550 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=45550160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=45550 log=no160;
160; 160; 160; log-prefix=""160;
21 160; 160;;;; ISP2 Synology 45550 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=45550160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=45550 log=no160;
160; 160; 160; log-prefix=""160;
44 160; 160;;;; ISP1 Synology 55500 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=55500160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=55500 log=no160;
160; 160; 160; log-prefix=""160;
23 160; 160;;;; ISP2 Synology 55500 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=55500160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=55500 log=no160;
160; 160; 160; log-prefix=""160;
24 160; 160;;;; ISP1 Synology 5524 FTP Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=44160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=5524 log=no160;
160; 160; 160; log-prefix=""160;
25 160; 160;;;; ISP2 Synology 5524 FTP Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=44160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=5524 log=no160;
160; 160; 160; log-prefix=""160;
28 160; 160;;;; ISP2 Synology 2400 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=2400160;
160; 160; 160; protocol=udp dst-address=210.***.***.*** dst-port=2400 log=no160;
160; 160; 160; log-prefix=""160;
29 160; 160;;;; ISP1 Synology 9001-9004 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=9001-9004160;
160; 160; 160; protocol=udp dst-address=180.***.***.*** dst-port=9001-9004 log=no160;
160; 160; 160; log-prefix=""160;
30 160; 160;;;; ISP2 Synology 9001 - 9004 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=9001-9004160;
160; 160; 160; protocol=udp dst-address=210.***.***.*** dst-port=9001-9004 log=no160;
160; 160; 160; log-prefix=""160;
31 160; 160;;;; ISP1 Synology 25050 -> 5006 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5006160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=25050 log=no160;
160; 160; 160; log-prefix=""160;
32 160; 160;;;; ISP2 Synology 25050 -> 5006 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=5006160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=25050 log=no160;
160; 160; 160; log-prefix=""160;
33 160; 160;;;; ISP1 Synology 6050 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=6050160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=6050 log=no160;
160; 160; 160; log-prefix=""160;
34 160; 160;;;; ISP2 Synology 6050 Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=6050160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=6050 log=no160;
160; 160; 160; log-prefix=""160;
35 160; 160;;;; ISP1 Synology Reverse Proxy Port
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=800160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=800 log=no log-prefix=""160;
36 160; 160;;;; ISP2 Synology Reverse Proxy Port
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=800160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=800 log=no160;
160; 160; 160; log-prefix=""160;
37 160; 160;;;; ISP1 Synology Http Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=80160;
160; 160; 160; protocol=tcp dst-address=180.***.***.*** dst-port=80 log=no log-prefix=""160;
38 160; 160;;;; ISP2 Synology Http Port Forwarding
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.32 to-ports=80160;
160; 160; 160; protocol=tcp dst-address=210.***.***.*** dst-port=80 log=no log-prefix=""160;
39 160; 160;;;; 180.***.***.*** ALL TCP Port
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.0/24 protocol=tcp160;
160; 160; 160; dst-address=180.***.***.*** log=no log-prefix=""160;
40 160; 160;;;; 210.***.***.*** ALL TCP Port
160; 160; 160; chain=dstnat action=dst-nat to-addresses=192.168.***.0/24 protocol=tcp160;
160; 160; 160; dst-address=210.***.***.*** log=no log-prefix=""160;
48 160; 160;chain=srcnat action=masquerade out-interface=ISP1160;
/ip/firewall/mangle
160;3 160; 160;chain=prerouting action=accept dst-address=180.***.***.***/24160;
160; 160; 160; in-interface=Local160;
160;4 160; 160;chain=prerouting action=accept dst-address=210.***.***.***/24160;
160; 160; 160; in-interface=Local log=no log-prefix=""160;
160;5 160; 160;chain=prerouting action=mark-connection new-connection-mark=ISP1_conn160;
160; 160; 160; connection-mark=no-mark in-interface=ISP1160;
160;6 160; 160;chain=prerouting action=mark-connection new-connection-mark=ISP2_conn160;
160; 160; 160; connection-mark=no-mark in-interface=ISP2160;
160;7 160; 160;chain=prerouting action=mark-connection new-connection-mark=ISP1_conn160;
160; 160; 160; passthrough=yes dst-address-type=!local connection-mark=no-mark160;
160; 160; 160; in-interface=Local per-connection-classifier=both-addresses:2/0 log=no160;
160; 160; 160; log-prefix=""160;
160;8 160; 160;chain=prerouting action=mark-connection new-connection-mark=ISP2_conn160;
160; 160; 160; passthrough=yes dst-address-type=!local connection-mark=no-mark160;
160; 160; 160; in-interface=Local per-connection-classifier=both-addresses:2/1 log=no160;
160; 160; 160; log-prefix=""160;
160;9 160; 160;chain=prerouting action=mark-connection new-connection-mark=NAS_conn160;
160; 160; 160; passthrough=yes dst-address=192.168.***.32160;
10 160; 160;chain=prerouting action=mark-routing new-routing-mark=to_ISP1160;
160; 160; 160; passthrough=yes connection-mark=NAS_conn160;
11 160; 160;chain=prerouting action=mark-routing new-routing-mark=to_ISP1160;
160; 160; 160; connection-mark=ISP1_conn in-interface=Local160;
12 160; 160;chain=prerouting action=mark-routing new-routing-mark=to_ISP2160;
160; 160; 160; connection-mark=ISP2_conn in-interface=Local160;
13 160; 160;chain=output action=mark-routing new-routing-mark=to_ISP1160;
160; 160; 160; connection-mark=ISP1_conn160;
14 160; 160;chain=output action=mark-routing new-routing-mark=to_ISP2160;
160; 160; 160; connection-mark=ISP2_conn160;
PCC 2WAN 셋ᔚ1;1060; .104;면서 NAS 1217;속 가능Ȣ16;,172; 세ᔚ1; Ȣ16;lj16; 0169;법 알/140;1452;시면 감사합니다.
아무리 찾아봐도 해NJ17; 세ᔚ1;에 관한 내용1012; 찾1012; 수가 없네요...
1221; 안.104;면 영문1004;/196; /112;딧에 1656;문글1012; 올/140;야 Ȣ16;나 고0124;1473;1077;니다... 12636;,.12636;
(¿¹¸¦ µé¾î¼ ether1¿¡¼ ¿À´Â ƯÁ¤ ÇÁ·ÎÅäÄÝ/Æ÷Æ® Á¶ÇÕÀÇ connectionÀ» ÃßÀûÇØ¼ ether1¿¡ ´ëÇÑ ¶ó¿ìÆÃ ¸¶Å© ºÎ¿©, ether2¿¡¼ µé¾î¿À´Â ƯÁ¤ ÇÁ·ÎÅäÄÝ/Æ÷Æ® Á¶ÇÕÀÇ connectionÀ» ÃßÀûÇØ¼ ether2¿¡ ´ëÇÑ ¶ó¿ìÆÃ ¸¶Å© ºÎ¿©)
¾ÆÁ÷ ¹ÌÅ©·Îƽ ¶ó¿ìÅÍ ¼ÂÆÃ ºÎºÐ¿¡¼ Ãʺ¸´Ù º¸´Ï ¾û¼ºÇÑ ºÎºÐÀÌ ¸¹½À´Ï´Ù..
Ȥ½Ã ¿¹½Ã·Î Ä¿³Ø¼Ç ÃßÀû°ú ¶ó¿ìÆÃ Å×À̺í Ãß°¡ ¼¼ÆÃÀÌ ¾Æ·¡¿Í °°³ª¿ä?
/ip/firewall/mangle
add chain=prerouting in-interface=ether1 protocol=tcp dst-port=8080 connection-mark=no-mark action=mark-connection new-connection-mark=ether1_conn
add chain=prerouting in-interface=ether2 protocol=udp dst-port=53 connection-mark=no-mark action=mark-connection new-connection-mark=ether2_conn
add chain=prerouting connection-mark=ether1_conn action=mark-routing new-routing-mark=ether1_route
add chain=prerouting connection-mark=ether2_conn action=mark-routing new-routing-mark=ether2_route
/ip/route
add dst-address=0.0.0.0/0 gateway=192.168.1.1 routing-mark=ether1_route
add dst-address=0.0.0.0/0 gateway=192.168.2.1 routing-mark=ether2_route
¸»¾¸ÇϽг»¿ëÀÌ Àß ÀÌÇØ µÇÁö ¾Ê¾Æ êgpt ¿¡ ¹°¾îºÃ´õ´Ï »ó¼¼ ¼³¸í°ú À§¿Í °°Àº ¿¹½Ã¸¦ º¸¿©Áá´Âµ¥
ÀÌ ¿¹½Ã¸¦ Âü°íÇØ¼ ¼¼ÆÃÇÏ´Â°Ô ¸Â´ÂÁö È®ÀÎÂ÷ ¹°¾îº¾´Ï´Ù ^ ^
±×·¯¸é À§ ³»¿ë Ãß°¡ ¾øÀ̵µ ´ëºÎºÐÀº µÇ´Âµ¥, NAS(ƯÈ÷ ½Ã³î·ÎÁö)°¡ °¡²û ¹®Á¦°¡ µÇ´Â µí ½Í½À´Ï´Ù.
9´Â ºñȰ¼º, ¾Æ·¡ ³»¿ëÀ» ¼öÁ¤Çؼ Ãß°¡ ¹× fast-trackÀ» ºñȰ¼º ÇØº¸½Ê½Ã¿À.
PCC ±¸Çö½Ã fast-trackÀÌ ÄÑÁ® ÀÖÀ¸¸é PCC°¡ Á¦´ë·Î µ¿ÀÛÀÌ ¾ÈµÉ ¼ö ÀÖ½À´Ï´Ù.
À̰ÍÀ¸·Î ÇØ°áÀÌ µÇ¾úÀ¸¸é ÁÁ°Ú³×¿ä.
/ip firewall mangle
add action=mark-connection chain=forward comment=\
"mark conn to port forwarding going in from wan1" connection-state=new \
in-interface=ether1 new-connection-mark=ether1_pfw passthrough=no
add action=mark-routing chain=prerouting comment=\
"mark routing to port forwarding going in from wan1" connection-mark=\
ether1_pfw in-interface=bridge1 new-routing-mark=to_wan1 passthrough=no
add action=mark-connection chain=forward comment=\
"mark conn to port forwarding going in from wan2" connection-state=new \
in-interface=ether2 new-connection-mark=ether2_pfw passthrough=no
add action=mark-routing chain=prerouting comment=\
"mark routing to port forwarding going in from wan2" connection-mark=\
ether2_pfw in-interface=bridge1 new-routing-mark=to_wan2 passthrough=no
À̹ø ÁÖ¸»¿¡ Çѹø ½Ãµµ ÇØºÁ¾ß °Ú³×¿ä 128077;