rekan2, saya kebingungan bagaimana cara yg tepat untuk memisahkan bandwidth Internasional (speedy) dan IIX (hypermedia wireless).
saat ini pemisahan agar koneksi internasional melewati line speedy belum berfungsi dgn benar. Click here to enlarge

acuan yang saya gunakan utk pengaturan mangle ada pada thread


mungkin rekan2 yg sudah master bisa membantu?
mungkinkah ada kesalahan pada gateway atau mangle?? Click here to enlarge



konfigurasi saya sbb::

MikroTik RouterOS 4.11

ip modem speedy 192.168.1.1
ip hypermedia 180.211.xxx.254 (public ip)
ip lokal kantor 192.168.5.x

ip address
Code:
[admin@ppu-artha] /ip address> print
Flags: X - disabled, I - invalid, D - dynamic 
#   ADDRESS            NETWORK         BROADCAST       INTERFACE      
0   192.168.1.247/24   192.168.1.0     192.168.1.255   speedy       
1   180.211.xxx.254/29 180.211.xxx.248 180.211.xxx.255 hypermedia
2   192.168.5.247/24   192.168.5.0     192.168.5.255   kantor
ip route
Code:
[admin@ppu-artha] /ip route> print
Flags: X - disabled, A - active, D - dynamic, 
C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme, 
B - blackhole, U - unreachable, P - prohibit 
 #      DST-ADDRESS        PREF-SRC        GATEWAY            DISTANCE
 0 A S  0.0.0.0/0                          180.211.95.249     1       
                                           192.168.1.1       
 1 ADC  180.211.xxx.248/29 180.211.xxx.254 hypermedia         0       
 2 ADC  192.168.1.0/24     192.168.1.247   speedy             0       
 3 ADC  192.168.5.0/24     192.168.5.247   kantor             0
ip firewall nat
Code:
[admin@ppu-artha] /ip firewall> nat print
Flags: X - disabled, I - invalid, D - dynamic 
 0   chain=srcnat action=masquerade out-interface=hypermedia 

 1   chain=dstnat action=dst-nat to-addresses=192.168.5.5 
     dst-address=180.211.xxx.254 

 2   chain=srcnat action=src-nat to-addresses=180.211.xxx.254 
     src-address=192.168.5.5 


configurasi 1 & 2, ip address public di gandeng ke satu server yg dibuka utk di akses dari luar
ip firewall mangle
Code:
[admin@ppu-artha] /ip firewall> mang print
Flags: X - disabled, I - invalid, D - dynamic 
 0   chain=prerouting action=mark-connection      new-connection-mark=speedy 
     passthrough=yes connection-state=new dst-address-list=!nice 
     in-interface=kantor nth=2,1 

 1   chain=prerouting action=mark-routing new-routing-mark=speedy 
     passthrough=no dst-address-list=!nice in-interface=kantor 
     connection-mark=speedy 

 2   chain=prerouting action=mark-connection      new-connection-mark=hypermedia 
     passthrough=yes connection-state=new in-interface=kantor 

 3   chain=prerouting action=mark-routing new-routing-mark=hypermedia 
     passthrough=no in-interface=kantor connection-mark=hypermedia 

 4 X chain=prerouting action=mark-connection new-connection-mark="" 
     passthrough=yes
terima kasih sebelumnya atas bantuan rekan2 Click here to enlarge