Follow us on...
Follow us on G+ Follow us on Twitter Follow us on Facebook Watch us on YouTube
Register
Results 1 to 7 of 7
  1. #1
    Status
    Offline
    b46ol's Avatar
    Baru Gabung
    Join Date
    Mar 2008
    Posts
    4
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0

    Tidak bisa akses ip public di Local (Load Balancing PCC)

    Misi para master, Click here to enlarge

    Saya mempunyai permasalahan loadbalancing pcc dengan 2 isp berbeda, untuk saat ini internetan lancar jaya Click here to enlarge
    tetapi begitu saya akses ip public (dari jaringan local dan domain yang sudah di redirect ke ip public) di akses via jaringan lokal
    kenapa tidak bisa kebuka ya Click here to enlarge loading tak ada hentinya Click here to enlargeClick here to enlarge


    untuk mangle nya:
    Code:
    0   ;;; LB
         chain=input action=mark-connection new-connection-mark=isp-1 
         passthrough=yes connection-state=new in-interface=internet1 
    
     1   chain=input action=mark-connection new-connection-mark=isp-2 passthrough=ye>
         connection-state=new in-interface=internet2 
    
     2   chain=output action=mark-routing new-routing-mark=jalur-1 passthrough=no 
         connection-mark=isp-1 
    
     3   chain=output action=mark-routing new-routing-mark=jalur-2 passthrough=no 
         connection-mark=isp-2 
    
     4   chain=prerouting action=mark-connection new-connection-mark=isp-1 
         passthrough=yes dst-address-type=!local in-interface=bridge1 
         per-connection-classifier=both-addresses-and-ports:2/0 
    
     5   chain=prerouting action=mark-connection new-connection-mark=isp-2 
         passthrough=yes dst-address-type=!local in-interface=bridge1 
         per-connection-classifier=both-addresses-and-ports:2/1 
    
     6   chain=prerouting action=mark-routing new-routing-mark=jalur-1 
         passthrough=yes in-interface=bridge1 connection-mark=isp-1 
    
     7   chain=prerouting action=mark-routing new-routing-mark=jalur-2 
         passthrough=yes in-interface=bridge1 connection-mark=isp-2
    untuk routes nya:
    Code:
    0 A S  0.0.0.0/0                          202.51.xxx.xxx              1     = mark jalur-1
     1 A S  0.0.0.0/0                          122.102.xxx.xxx            2    = mark jalur-2
     2 A S  0.0.0.0/0                          202.51.xxx.xxx              1
     3   S  0.0.0.0/0                          122.102.xxx.xxx            2
     6 ADC  122.102.xxx.xxx/29  122.102.xxx.xxx  internet2           0
     8 ADC  192.168.2.0/24     192.168.2.1     bridge1                   0
    10 ADC  202.51.xxx.xxx/30    202.51.xxx.xxx   internet1                  0
    kira-kira masalahnya dimana yah... Click here to enlargeClick here to enlarge

    mohon pencerahannya

  2. #2
    Status
    Offline
    c0nf's Avatar
    Contributor
    Join Date
    Jul 2007
    Location
    Bandung, Indonesia
    Posts
    1,816
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Coba utk ip publik nya, dibuat static routing.
    Invisible...

  3. #3
    Status
    Offline
    Anto.PJ's Avatar
    Forum Guru
    Join Date
    May 2011
    Location
    macz
    Posts
    1,697
    Reviews
    Read 0 Reviews
    Downloads
    7
    Uploads
    0
    Feedback Score
    0
    hapus rule ini
    Code:
    0   ;;; LB
         chain=input action=mark-connection new-connection-mark=isp-1 
         passthrough=yes connection-state=new in-interface=internet1 
    
     1   chain=input action=mark-connection new-connection-mark=isp-2 passthrough=ye>
         connection-state=new in-interface=internet2 
    
     2   chain=output action=mark-routing new-routing-mark=jalur-1 passthrough=no 
         connection-mark=isp-1 
    
     3   chain=output action=mark-routing new-routing-mark=jalur-2 passthrough=no 
         connection-mark=isp-2
    lalu tinggalkan bagian ini.
    Code:
     4   chain=prerouting action=mark-connection new-connection-mark=isp-1 
         passthrough=yes dst-address-type=!local in-interface=bridge1 
         per-connection-classifier=both-addresses-and-ports:2/0 
    
     5   chain=prerouting action=mark-connection new-connection-mark=isp-2 
         passthrough=yes dst-address-type=!local in-interface=bridge1 
         per-connection-classifier=both-addresses-and-ports:2/1 
    
     6   chain=prerouting action=mark-routing new-routing-mark=jalur-1 
         passthrough=yes in-interface=bridge1 connection-mark=isp-1 
    
     7   chain=prerouting action=mark-routing new-routing-mark=jalur-2 
         passthrough=yes in-interface=bridge1 connection-mark=isp-2
    ente g perlu load balance koneksi dari internet.

  4. #4
    Status
    Offline
    brutuz_1's Avatar
    VIP Member
    Join Date
    Feb 2010
    Posts
    792
    Reviews
    Read 0 Reviews
    Downloads
    3
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by b46ol Click here to enlarge
    Misi para master, Click here to enlarge

    Saya mempunyai permasalahan loadbalancing pcc dengan 2 isp berbeda, untuk saat ini internetan lancar jaya Click here to enlarge
    tetapi begitu saya akses ip public (dari jaringan local dan domain yang sudah di redirect ke ip public) di akses via jaringan lokal
    kenapa tidak bisa kebuka ya Click here to enlarge loading tak ada hentinya Click here to enlargeClick here to enlarge


    untuk mangle nya:
    Code:
    0   ;;; LB
         chain=input action=mark-connection new-connection-mark=isp-1 
         passthrough=yes connection-state=new in-interface=internet1 
    
     1   chain=input action=mark-connection new-connection-mark=isp-2 passthrough=ye>
         connection-state=new in-interface=internet2 
    
     2   chain=output action=mark-routing new-routing-mark=jalur-1 passthrough=no 
         connection-mark=isp-1 
    
     3   chain=output action=mark-routing new-routing-mark=jalur-2 passthrough=no 
         connection-mark=isp-2 
    
     4   chain=prerouting action=mark-connection new-connection-mark=isp-1 
         passthrough=yes dst-address-type=!local in-interface=bridge1 
         per-connection-classifier=both-addresses-and-ports:2/0 
    
     5   chain=prerouting action=mark-connection new-connection-mark=isp-2 
         passthrough=yes dst-address-type=!local in-interface=bridge1 
         per-connection-classifier=both-addresses-and-ports:2/1 
    
     6   chain=prerouting action=mark-routing new-routing-mark=jalur-1 
         passthrough=yes in-interface=bridge1 connection-mark=isp-1 
    
     7   chain=prerouting action=mark-routing new-routing-mark=jalur-2 
         passthrough=yes in-interface=bridge1 connection-mark=isp-2
    untuk routes nya:
    Code:
    0 A S  0.0.0.0/0                          202.51.xxx.xxx              1     = mark jalur-1
     1 A S  0.0.0.0/0                          122.102.xxx.xxx            2    = mark jalur-2
     2 A S  0.0.0.0/0                          202.51.xxx.xxx              1
     3   S  0.0.0.0/0                          122.102.xxx.xxx            2
     6 ADC  122.102.xxx.xxx/29  122.102.xxx.xxx  internet2           0
     8 ADC  192.168.2.0/24     192.168.2.1     bridge1                   0
    10 ADC  202.51.xxx.xxx/30    202.51.xxx.xxx   internet1                  0
    kira-kira masalahnya dimana yah... Click here to enlargeClick here to enlarge

    mohon pencerahannya
    emang yg diharapkan Om TS waktu ng-remote ip publik nya, yg kebuka apa..??? webfig mikrotik apa bukan..???
    Click here to enlarge Originally Posted by Anto.PJ Click here to enlarge
    hapus rule ini
    Code:
    0   ;;; LB
         chain=input action=mark-connection new-connection-mark=isp-1 
         passthrough=yes connection-state=new in-interface=internet1 
    
     1   chain=input action=mark-connection new-connection-mark=isp-2 passthrough=ye>
         connection-state=new in-interface=internet2 
    
     2   chain=output action=mark-routing new-routing-mark=jalur-1 passthrough=no 
         connection-mark=isp-1 
    
     3   chain=output action=mark-routing new-routing-mark=jalur-2 passthrough=no 
         connection-mark=isp-2
    lalu tinggalkan bagian ini.
    Code:
     4   chain=prerouting action=mark-connection new-connection-mark=isp-1 
         passthrough=yes dst-address-type=!local in-interface=bridge1 
         per-connection-classifier=both-addresses-and-ports:2/0 
    
     5   chain=prerouting action=mark-connection new-connection-mark=isp-2 
         passthrough=yes dst-address-type=!local in-interface=bridge1 
         per-connection-classifier=both-addresses-and-ports:2/1 
    
     6   chain=prerouting action=mark-routing new-routing-mark=jalur-1 
         passthrough=yes in-interface=bridge1 connection-mark=isp-1 
    
     7   chain=prerouting action=mark-routing new-routing-mark=jalur-2 
         passthrough=yes in-interface=bridge1 connection-mark=isp-2
    ente g perlu load balance koneksi dari internet.
    hmmm.... knp mesti di hapus Om anto ..??
    IMHO, kalo lihat chain nya (input dan output) saya rasa itu berguna untuk menandai trafik ke arah mikrotik supaya incoming (dari arah internet) dan outgoing (trafik balasannya) lewat gateway yg sama, a.k.a tidak akan ikut ke default gateway nya. kesimpulan saya sih rule tersebut bukan rule LB untuk trafik/koneksi dari internet .. Click here to enlarge
    CMIW



    (kwalat gw neh ...Click here to enlarge)

  5. #5
    Status
    Offline
    adhielesmana's Avatar
    Administrator
    Join Date
    Jan 2009
    Location
    http://www.adhielesmana.com
    Posts
    3,056
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    create rule prerouting with dst-address = ip public, in-interface = local there action = accept

    place it first

  6. #6
    Status
    Offline
    Anto.PJ's Avatar
    Forum Guru
    Join Date
    May 2011
    Location
    macz
    Posts
    1,697
    Reviews
    Read 0 Reviews
    Downloads
    7
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by brutuz_1 Click here to enlarge
    hmmm.... knp mesti di hapus Om anto ..??
    IMHO, kalo lihat chain nya (input dan output) saya rasa itu berguna untuk menandai trafik ke arah mikrotik supaya incoming (dari arah internet) dan outgoing (trafik balasannya) lewat gateway yg sama, a.k.a tidak akan ikut ke default gateway nya. kesimpulan saya sih rule tersebut bukan rule LB untuk trafik/koneksi dari internet .. Click here to enlarge
    CMIW

    (kwalat gw neh ...Click here to enlarge)
    hahahahahh.. kalo TS nya ngerti mestinya g ada masalah.. tapi kayaknya belum ngerti, jadi perlu di eliminasi sebagian rule.
    setidaknya LB jalan dulu, dan redirecting jalan.
    Click here to enlarge

  7. #7
    Status
    Offline
    brutuz_1's Avatar
    VIP Member
    Join Date
    Feb 2010
    Posts
    792
    Reviews
    Read 0 Reviews
    Downloads
    3
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by Anto.PJ Click here to enlarge
    hahahahahh.. kalo TS nya ngerti mestinya g ada masalah.. tapi kayaknya belum ngerti, jadi perlu di eliminasi sebagian rule.
    setidaknya LB jalan dulu, dan redirecting jalan.
    Click here to enlarge
    xixixixi... betul sekali Om, saya dulu juga waktu pertama belajar mikrotik dengan multi ISP, nyontek tutor LB disini, dan rata2 emang ada rule seperti itu, setelah dikit2 mengerti
    akhir nya rule tsb sebenarnya gk ngaruh juga untuk LB trafik dari client, cuman untuk keperluan remote-meremote mikrotik az rupanya ,, Click here to enlarge

    tapi kayak nya, sebnarnya untuk kasus TS simple, ingin akses nama domain yg udah didaftarkan ke ip publik nya, dan diarahkan ke client lokal.

    oleh karna itu, menurut saya daripada kita pusing dengan rule LB, kenapa kita gunakan cara lain,statik dns dimikrotik
    untuk TS, coba saja tambahkan entry statik untuk nama domainnya di dns mikrotik, dan paksa trafik dns client lokal menggunakan dns mikrotik.. Click here to enlarge

 

 

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. [ASK] IP Public tidak bisa dibuka di network local
    By hardika31 in forum General Networking
    Replies: 9
    Last Post: 15-07-2015, 10:11
  2. Replies: 3
    Last Post: 30-08-2014, 17:35
  3. Replies: 1
    Last Post: 05-02-2013, 14:26
  4. Replies: 7
    Last Post: 22-08-2011, 18:43
  5. setelah load balancing tidak bisa remote mikrotik
    By pentiumx in forum General Networking
    Replies: 9
    Last Post: 16-06-2009, 18:00

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •