Aku Bisa Lebih Baik

November 10, 2008

mikrotik v 3.10 loadbalancing 4 WAN di RB450

Filed under: General

RouterBoard RB450 indoor mempunyai 5 interface, apabila ingin membuatnya menjadi loadbalancing failover pada mikrotik versi 3.10 ini maka kita bisa menggunakan 4 jalur input WAN dan 1 jalur output yang ditujukan pada Local Area Network.
Disini diatur interface dengan setting ip :
- Local = 10.0.0.1/29
- Uplink 1 = Wan 1 = 10.111.0.2/30
- Uplink 2 = Wan 2 = 10.112.0.2/30
- Uplink 3 = Wan 3 = 10.113.0.2/30
- Uplink 4 = Wan 4 = 10.114.0.2/30


Apabila ditempat anda menggunakan telkom speedy maka lihat dulu line tersebut mempunyai gateway yang sama atau tidak.
Apabila gateway sama, maka anda yang ingin setting PPPOE ( mikrotik yang dial PPPOE sendiri ), maka anda pilih salah satu dari gateway yang sama itu buat PPPOE yang lain bikin setting PPPOE dial dari modem yaitu modem yang menjadi gateway.
Hal ini digunakan biar trafic jalan dengan maksimal, biasanya klo cuman PPPOE dial mikrotik dengan gateway yang sama loadbalancing kurang maksimal bahkan sering terjadi 1 gateway saja yang jalan aktif.

Setting di mikrotik versi 3.10 adalah sebagai berikut
/ ip firewall mangle
add chain=prerouting in-interface=Local connection-state=new nth=4,1 action=mark-connection new-connection-mark=conn1 passthrough=yes comment=”" disabled=no
add chain=prerouting in-interface=Local connection-mark=conn1 action=mark-routing new-routing-mark=conn1 passthrough=no comment=”" disabled=no
add chain=prerouting in-interface=Local connection-state=new nth=3,1 action=mark-connection new-connection-mark=conn2 passthrough=yes comment=”" disabled=no
add chain=prerouting in-interface=Local connection-mark=conn2 action=mark-routing new-routing-mark=conn2 passthrough=no comment=”" disabled=no
add chain=prerouting in-interface=Local connection-state=new nth=2,1 action=mark-connection new-connection-mark=conn3 passthrough=yes comment=”" disabled=no
add chain=prerouting in-interface=Local connection-mark=conn3 action=mark-routing new-routing-mark=conn3 passthrough=no comment=”" disabled=no
add chain=prerouting in-interface=Local connection-state=new action=mark-connection new-connection-mark=conn4 passthrough=yes comment=”" disabled=no
add chain=prerouting in-interface=Local connection-mark=conn4 action=mark-routing new-routing-mark=conn4 passthrough=no comment=”" disabled=no

/ ip firewall nat
add chain=srcnat connection-mark=conn1 action=masquerade out-interface=Uplink1 comment=”" disabled=no
add chain=srcnat connection-mark=conn2 action=masquerade out-interface=Uplink2 comment=”" disabled=no
add chain=srcnat connection-mark=conn3 action=masquerade out-interface=Uplink3 comment=”" disabled=no
add chain=srcnat connection-mark=conn4 action=masquerade out-interface=Uplink4 comment=”" disabled=no

/ ip route
add dst-address=0.0.0.0/0 gateway=10.111.0.1 scope=255 target-scope=10 routing-mark=conn1 comment=”" disabled=no
add dst-address=0.0.0.0/0 gateway=10.112.0.1 scope=255 target-scope=10 routing-mark=conn2 comment=”" disabled=no
add dst-address=0.0.0.0/0 gateway=10.113.0.1 scope=255 target-scope=10 routing-mark=conn3 comment=”" disabled=no
add dst-address=0.0.0.0/0 gateway=10.114.0.1 scope=255 target-scope=10 routing-mark=conn4 comment=”" disabled=no
add dst-address=0.0.0.0/0 gateway=10.111.0.1 scope=255 target-scope=10 comment=”" disabled=no

Udah deh test dulu mikrotik loadbalancing nya, klo memang download bisa lebih cepat dari biasanya. Tapi masalahnya untuk browsing HTTP kadang terasa lebih lambat karena routing masih menuju 4 gateway jadi bingung pilih2 katanya gak ndang budal2.
untuk mengatasi itu katanya disuruh mengelompok kan HTTP port untuk menuju 1 line gateway saja biar kecepatan tetep, jadi sepertinya loadbalancing hanya untuk download saja yah yg cepet. hehehehe
Moga aja ada yang bantu buat sempurnakan ntah di iptables nya atau di ip firewall mangle nya untuk redirect http port biar bisa dibagi sama dan tanpa pilih2 biar proses browsing lebih mak wus wus….

sumber : campuran teko ngendi2 sampe bingung sing cocok ndi, tapi sing penting sumbernya dari praktek dw iku sing mlaku daripada mikrotik 2.9 settingannya dimasukan ke v 3.10 gak mlaku blas malah menclek ra karuan hehehehehe……………..

Perkembangan baru …………………:
klo nth dibuat 2,2 semua sepertinya jalan lebih lancar lebih lanjut cobaen dw

6 Comments »

The URI to TrackBack this entry is: http://erfatah.blogsome.com/2008/11/10/mikrotik-v-310-loadbalancing-4-wan-di-rb450/trackback/

  1. kok aku coba di mt ku ngga bisa?????????
    aku cuman pake 3 line… jadi aku hapus mangel untuk conn 4 jadinya begini :
    =============================================================
    / ip firewall mangle
    add chain=prerouting in-interface=lokal connection-state=new nth=3,1 action=mark-connection new-connection-mark=conn1 passthrough=yes comment=”” disabled=no
    add chain=prerouting in-interface=lokal connection-mark=conn1 action=mark-routing new-routing-mark=conn1 passthrough=no comment=”” disabled=no
    add chain=prerouting in-interface=lokal connection-state=new nth=2,1 action=mark-connection new-connection-mark=conn2 passthrough=yes comment=”” disabled=no
    add chain=prerouting in-interface=lokal connection-mark=conn2 action=mark-routing new-routing-mark=conn2 passthrough=no comment=”” disabled=no
    add chain=prerouting in-interface=lokal connection-state=new nth=1,1 action=mark-connection new-connection-mark=conn3 passthrough=yes comment=”” disabled=no
    add chain=prerouting in-interface=lokal connection-mark=conn3 action=mark-routing new-routing-mark=conn3 passthrough=no comment=”” disabled=no

    / ip firewall nat
    add chain=srcnat connection-mark=conn1 action=masquerade out-interface=infotek comment=”” disabled=no
    add chain=srcnat connection-mark=conn2 action=masquerade out-interface=spd1 comment=”” disabled=no
    add chain=srcnat connection-mark=conn3 action=masquerade out-interface=spd2 comment=”” disabled=no

    / ip route
    add dst-address=0.0.0.0/0 gateway=192.168.1.1 scope=255 target-scope=10 routing-mark=conn1 comment=”” disabled=no
    add dst-address=0.0.0.0/0 gateway=192.168.2.1 scope=255 target-scope=10 routing-mark=conn2 comment=”” disabled=no
    add dst-address=0.0.0.0/0 gateway=192.168.3.1 scope=255 target-scope=10 routing-mark=conn3 comment=”” disabled=no
    add dst-address=0.0.0.0/0 gateway=192.168.1.1 scope=255 target-scope=10 comment=”” disabled=no
    ==========================================================
    kok ngga bisa??????
    bingung???

    Comment by all21 — February 2, 2009 @ 6:59 am

  2. coba ip firewall mangle nth yg 1,1 dihapus aja trus isi kedua 2,1 ketiga 3,2 dari pengalaman yg terbaru koq keliatannya lebih seimbang jalannya .
    trus itu pake mikrotik versi 3.10 keatas juga kan? apa 2.97 trus bajakan lagee, biasanya kurang sipp

    Comment by erfatah — February 4, 2009 @ 5:16 pm

  3. nice post… slm kenal…
    numpang backlink neh…. :)
    http://mikrotik-guide.net

    Comment by achim — February 18, 2009 @ 2:18 am

  4. hayah kok kemaki temen, OS ae paleng yo bajakan. urep no indonesia kwi kudune nek iso geratis……

    Comment by gogon — May 2, 2009 @ 5:59 pm

  5. ada yang mau mikrotik versi yg baru
    klik aja di www.vodoo3us.tk / vodoo3.blogspot.com
    eh ada mikrotik yg versi 4 juga dan tutorialnya

    vodoo3us team

    Comment by vodoo3us — June 2, 2009 @ 8:44 pm

  6. wow ini sangat membantu sekali contohnya, kami aplikasikan di data center kami, nuwun sewu ambil beberapa sample dari konf di atas. terima kasih

    Comment by Omadata Surabaya Data Center — October 20, 2009 @ 2:41 am

RSS feed for comments on this post.

Leave a comment

Line and paragraph breaks automatic, e-mail address never displayed, HTML allowed: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <code> <em> <i> <strike> <strong>


Get free blog up and running in minutes with Blogsome
Theme designed by Ian Main