[more] [more]
Fomichok2 Цитата: Сделайте в терминале на всех тиках ip firewall filter export и ip firewall nat export и пришлите сюда.
===============
Микротик А
--------------
[neo@PRAJKA] > ip firewall filter export
# jan/07/2013 00:15:50 by RouterOS 6.0rc6
# software id = NAWD-5KW5
#
/ip firewall filter
add chain=forward comment="MIKROBILL USERS RULE" src-address-list=\
MikroBill_Users
add chain=input dst-port=1723 protocol=tcp
add action=drop chain=forward comment=MikroBill_All_Drop dst-address=\
!85.21.96.248 src-address-list=MikroBill_All_Drop
[neo@PRAJKA] >
[neo@PRAJKA] > ip firewall nat export
# jan/07/2013 00:17:07 by RouterOS 6.0rc6
# software id = NAWD-5KW5
#
/ip firewall nat
add action=netmap chain=dstnat comment="MIKROBILL WEB-CAP" dst-address=\
!192.168.1.11 dst-port=80 protocol=tcp src-address-list=\
MikroBill_OFF_Users to-addresses=85.21.96.248 to-ports=8080
add action=masquerade chain=srcnat comment=ALL-maskarad out-interface=\
INET-WAN !to-addresses !to-ports
add action=masquerade chain=srcnat comment="MIKROBILL USERS NAT" \
src-address-list=MikroBill_All_Drop !to-addresses !to-ports
add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\
\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \CC\C0\C3\C4\C8 \C2\C8\C4\C5\
\CE 212" dst-address=77.37.204.98 dst-port=8212 protocol=tcp \
to-addresses=192.168.111.212 to-ports=8212
add action=dst-nat chain=dstnat comment=80 dst-address=77.37.204.98 dst-port=\
80 protocol=tcp to-addresses=192.168.111.37 to-ports=8037
add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\
\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 3" dst-address=\
77.37.204.98 dst-port=8003 protocol=tcp to-addresses=192.168.111.3 \
to-ports=8003
add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\
\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \EA\EE\EC\EF \C8\ED\E3\E0" \
dst-address=77.37.204.98 dst-port=5900 protocol=tcp to-addresses=\
192.168.111.234 to-ports=5906
add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\
\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 4" dst-address=\
77.37.204.98 dst-port=8004 protocol=tcp to-addresses=192.168.111.4 \
to-ports=8004
add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\
\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 8" dst-address=\
77.37.204.98 dst-port=8007 protocol=tcp to-addresses=192.168.111.7 \
to-ports=8007
add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\
\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 150" dst-address=\
77.37.204.98 dst-port=8149 protocol=tcp to-addresses=192.168.111.149 \
to-ports=80
add action=netmap chain=dstnat comment="MIKROBILL 2WEB-CAP" dst-address=\
!192.168.1.11 dst-port=80 protocol=tcp src-address-list=!MikroBill_Users \
to-addresses=85.21.96.248 to-ports=8080
[neo@PRAJKA] >
------------------------------------
Микротик В
----------------
[neo@RAY] > ip firewall filter export
# jan/06/2013 20:15:00 by RouterOS 6.0rc6
# software id = W8BZ-HKYN
#
/ip firewall filter
add chain=forward comment="MIKROBILL USERS RULE" src-address-list=MikroBill_Users
add chain=input comment="default configuration" protocol=icmp
add chain=input comment="default configuration" connection-state=established
add chain=input comment=neo dst-port=1723 protocol=tcp
add chain=input comment=neo protocol=gre
add chain=input comment="default configuration" connection-state=related
add action=drop chain=forward comment=MikroBill_All_Drop dst-address=!85.21.96.248 src-address-list=MikroBill_All_Drop
[neo@RAY] >
-------------------------
[neo@RAY] > ip firewall nat export
# jan/06/2013 20:18:57 by RouterOS 6.0rc6
# software id = W8BZ-HKYN
#
/ip firewall nat
add action=netmap chain=dstnat comment="MIKROBILL WEB-CAP" dst-address=\
!192.168.1.11 dst-port=80 protocol=tcp src-address-list=\
MikroBill_OFF_Users to-addresses=85.21.96.248 to-ports=8080
add action=masquerade chain=srcnat comment="default configuration" \
out-interface=BEELINE-l2tp to-addresses=0.0.0.0 !to-ports
add action=masquerade chain=srcnat comment="MIKROBILL USERS NAT" \
src-address-list=MikroBill_All_Drop !to-addresses !to-ports
add action=dst-nat chain=dstnat comment=\
"\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 \ED\E0 AP-3" dst-address=\
85.21.96.248 dst-port=8003 protocol=tcp to-addresses=192.168.112.3 \
to-ports=8003
add action=dst-nat chain=dstnat comment=\
"\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 80" dst-address=\
85.21.96.248 dst-port=80 protocol=tcp to-addresses=192.168.112.37 \
to-ports=8037
add action=netmap chain=dstnat comment="MIKROBILL 2WEB-CAP" dst-address=\
!192.168.1.11 dst-port=80 protocol=tcp src-address-list=!MikroBill_Users \
to-addresses=85.21.96.248 to-ports=8080
[neo@RAY] >
------------------------------
Микротик С
-------------------
[neo@SEVAK] > ip firewall filter export
# jan/07/2013 00:20:33 by RouterOS 6.0rc6
# software id = 0A2C-BAXG
#
/ip firewall filter
add chain=forward comment="MIKROBILL USERS RULE" src-address-list=\
MikroBill_Users
add chain=input dst-port=1723 protocol=tcp
add chain=input protocol=gre
add action=drop chain=forward comment=MikroBill_All_Drop dst-address=\
!85.21.96.248 src-address-list=MikroBill_All_Drop
[neo@SEVAK] >
----------
[neo@SEVAK] > ip firewall nat export
# jan/07/2013 00:21:38 by RouterOS 6.0rc6
# software id = 0A2C-BAXG
#
/ip firewall nat
add action=netmap chain=dstnat comment="MIKROBILL WEB-CAP" dst-address=!192.168.1.11 dst-port=80 protocol=tcp src-address-list=MikroBill_OFF_Users to-addresses=\
85.21.96.248 to-ports=8080
add action=masquerade chain=srcnat comment=ALL-maskarad out-interface=vpn-L2TP-BEELINE !to-addresses !to-ports
add action=masquerade chain=srcnat comment="MIKROBILL USERS NAT" src-address-list=MikroBill_All_Drop !to-addresses !to-ports
add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 3" dst-address=78.107.253.91 dst-port=\
8003 protocol=tcp to-addresses=192.168.114.3 to-ports=8003
add action=dst-nat chain=dstnat comment="BLOCK 80" dst-address=78.107.253.91 dst-port=80 protocol=tcp to-addresses=192.168.114.31 to-ports=8031
add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 Mikrotik SALON" dst-address=78.107.253.91 \
dst-port=8292 protocol=tcp to-addresses=192.168.114.243 to-ports=8292
add action=dst-nat chain=dstnat comment="\CF\E5\F0\E5\ED\E0\EF\F0\E0\E2\EB\E5\ED\E8\E5 \E2\ED\E5\F8\ED\E5\E3\EE IP \ED\E0 \E0\ED\F2 4" dst-address=78.107.253.91 dst-port=\
8004 protocol=tcp to-addresses=192.168.114.4 to-ports=8004
add action=netmap chain=dstnat comment="MIKROBILL 2WEB-CAP" dst-address=!192.168.1.11 dst-port=80 protocol=tcp src-address-list=!MikroBill_Users to-addresses=85.21.96.248 \
to-ports=8080
[neo@SEVAK] >
--------------------------
=============================== [/more] [/more]