Отказоустойчивый OVPN Client с 2мя провайдерами

Обсуждение ПО и его настройки
Ответить
S
Сообщения: 1
Зарегистрирован: 11 апр 2019, 16:01

Добрый день.
есть Microtik hap
подключено 2 провайдера
поднят PPP - Interfaces - OVPN Client
При отключение первого провайдера OVPN падает и не запускается на втором провайдере.

Как настроить работу OVPN на обоих провайдерах?
направьте по правильному пути

Конфиг:

/interface bridge
add name=br1-lan
/interface ethernet
set [ find default-name=ether1 ] name=eth1-wan
set [ find default-name=ether4 ] name=eth4-yota
set [ find default-name=ether5 ] name=eth5-lan
set [ find default-name=ether6 ] disabled=yes
set [ find default-name=ether7 ] disabled=yes
set [ find default-name=ether8 ] disabled=yes
set [ find default-name=ether9 ] disabled=yes
set [ find default-name=ether10 ] disabled=yes
set [ find default-name=sfp1 ] disabled=yes
set [ find default-name=ether2 ] master-port=eth5-lan name=eth2-lan
set [ find default-name=ether3 ] master-port=eth5-lan name=eth3-SIP
/interface ethernet switch port
set 6 default-vlan-id=0
set 7 default-vlan-id=0
set 8 default-vlan-id=0
set 9 default-vlan-id=0
set 10 default-vlan-id=0
set 12 default-vlan-id=0
/ip pool
add name=dhcp ranges=192.168.0.100-192.168.0.200
/ip dhcp-server
add address-pool=dhcp disabled=no interface=br1-lan lease-time=8h name=\
dhcp-pc
/ppp profile
add name=ovpn
/interface ovpn-client
add add-default-route=yes certificate=1.crt_0 cipher=aes128 connect-to=\
*ovpn_serv* mac-address=************* name=ovpn-out1 port=**** \
profile=ovpn user=1
/interface bridge port
add bridge=br1-lan interface=eth5-lan
add bridge=br1-lan interface=wlan1
add bridge=br1-lan disabled=yes interface=eth1-wan
add bridge=br1-lan interface=ether6
add bridge=br1-lan interface=ether7
add bridge=br1-lan interface=ether8
add bridge=br1-lan interface=ether9
add bridge=br1-lan interface=ether10
add bridge=br1-lan interface=sfp1
/ip address
add address=192.168.0.1/24 interface=eth5-lan network=192.168.0.0
add address=195.1.1.1/30 interface=eth1-wan network=195.1.1.6
/ip dhcp-client
add default-route-distance=0 dhcp-options=hostname,clientid interface=\
eth1-wan
add default-route-distance=0 dhcp-options=hostname,clientid disabled=no
add default-route-distance=0 dhcp-options=hostname,clientid disabled=no \
interface=eth4-yota
/ip dhcp-server lease

/ip dns
set allow-remote-requests=yes servers=8.8.8.8,8.8.8.4
/ip firewall mangle
add action=mark-routing chain=prerouting comment=to_VPN dst-address=\
10.10.5.1 new-routing-mark=VPN passthrough=no
add action=mark-routing chain=prerouting comment=to_1C_RDP dst-address=\
ovpn_serv new-routing-mark=RDP passthrough=no
add action=mark-routing chain=prerouting comment=SIP_line dst-address=\
195.2.2.2 new-routing-mark=SIP passthrough=no
add action=mark-routing chain=prerouting comment=All_web connection-state=new \
dst-address=0.0.0.0/0 new-routing-mark=inet passthrough=no
/ip firewall nat
add action=masquerade chain=srcnat out-interface=eth1-wan
add action=masquerade chain=srcnat out-interface=eth4-yota
add action=masquerade chain=srcnat out-interface=ovpn-out1
/ip route
add distance=1 gateway=195.1.1.3 routing-mark=VPN
add distance=1 gateway=195.1.1.3 routing-mark=RDP
add distance=1 gateway=195.1.1.3 routing-mark=SIP
/ip route rule
add interface=eth1-wan routing-mark=VPN table=VPN
add interface=eth1-wan routing-mark=RDP table=RDP
add interface=eth1-wan routing-mark=SIP table=SIP
add interface=eth4-yota routing-mark=inet table=inet

/ip upnp interfaces
add interface=br1-lan type=internal
add interface=eth1-wan type=external


Ответить