на роутере настроен cнат, основной аплинк получает адрес по дхцп резервный имеет статический адрес. никаких статически маршрутов нет. Внутрь сети смотрит один бридж, наружу два бриджа 20 и 21.
настроен нат так:
nat source
ruleset SNAT
to zone UPLINK
rule 10
match protocol any
match source-address any
match destination-address any
action source-nat interface
enable
exit
exit
exit
сам multiwan
настраивал так:
Код: Выделить всё
2017-07-18T20:06:31+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: ip route 0.0.0.0/0 wan load-balance rule 1
2017-07-18T20:06:47+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance rule 1
2017-07-18T20:07:13+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: outbound interface bridge 20
2017-07-18T20:07:18+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: outbound interface bridge 21
2017-07-18T20:07:26+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: enable
2017-07-18T20:07:33+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: exit
2017-07-18T20:07:46+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance target-list GOOGLE
2017-07-18T20:07:52+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: target 1
2017-07-18T20:08:05+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: ip address 8.8.8.8
2017-07-18T20:08:09+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: enable
2017-07-18T20:08:11+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: exit
2017-07-18T20:08:20+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: exit
2017-07-18T20:08:35+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: bridge 20
2017-07-18T20:09:05+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance nexthop 1.1.1.1
2017-07-18T20:09:14+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance target-list GOOGLE
2017-07-18T20:09:25+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance enable
2017-07-18T20:09:29+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: exit
2017-07-18T20:09:45+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: bridge 21
2017-07-18T20:10:00+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance nexthop 2.2.2.2
2017-07-18T20:10:11+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance target-list GOOGLE
2017-07-18T20:10:21+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance enable
2017-07-18T20:10:27+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: exit
2017-07-18T20:10:36+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance rule 1
2017-07-18T20:10:46+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: failover
2017-07-18T20:10:58+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: exit
2017-07-18T20:12:54+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: bridge 20
2017-07-18T20:13:04+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance nexthop dhcp enable !здесь я вспомнил что у меня ж дхцп на основном аплинке и добавил строчку про дхцп
2017-07-18T20:14:09+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: exit
2017-07-18T20:14:11+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: wan load-balance rule 1
2017-07-18T20:14:48+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: outbound interface bridge 20 1
2017-07-18T20:14:54+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: outbound interface bridge 21 10
2017-07-18T20:14:57+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: end
2017-07-18T20:15:50+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: show candidate-config
2017-07-18T20:16:01+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: configure
2017-07-18T20:16:03+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: bridge 11
2017-07-18T20:16:27+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: no ip policy route-map
2017-07-18T20:16:28+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: end
2017-07-18T20:16:53+07:00 <global_event_wait_try> (/config_applied)
2017-07-18T20:16:53+07:00 <global_event_wait_try> after wait (/config_applied), rc = 0
2017-07-18T20:16:53+07:00 %WAN-I-INSTANCE: IP interface bridge 20 changed state to inactive
2017-07-18T20:16:53+07:00 %WAN-I-INSTANCE: IP interface bridge 21 changed state to inactive
2017-07-18T20:16:53+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:16:53+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:16:53+07:00 Wrote 0 class decls to leases file.
2017-07-18T20:16:53+07:00 Wrote 99 leases to leases file.
2017-07-18T20:16:53+07:00 %CLI-I-CRIT: user admin from ssh 10.10.0.42 input: commit
после коммита связь не сломалась и я выдернул основной аплинк (gigabitethernet 1/0/4) ожидая что трафик пойдёт через резервный (gigabitethernet 1/0/3)
но связь не появилась в логах были такие надписи
Код: Выделить всё
2017-07-18T20:16:53+07:00 Server starting service.
2017-07-18T20:16:58+07:00 %WAN-I-INSTANCE: IP interface bridge 21 last check target 8.8.8.8 success
2017-07-18T20:16:58+07:00 %WAN-I-INSTANCE: IP interface bridge 21 changed state to active
2017-07-18T20:17:00+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:00+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:17:06+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:06+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:17:12+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:12+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:17:18+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:18+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:17:24+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:24+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:17:30+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:30+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:17:37+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:37+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:17:43+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:43+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:17:49+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:49+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:17:55+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:17:55+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:01+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:01+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:04+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: show candidate-config
2017-07-18T20:18:07+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:07+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:14+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:14+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:20+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:20+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:26+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:26+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:32+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:32+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:38+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:38+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:45+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:45+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:51+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:51+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:18:57+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:18:57+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:03+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:03+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:09+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:09+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:15+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:15+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:17+07:00 %LINK-W-DOWN: gigabitethernet 1/0/4 changed state to down
2017-07-18T20:19:22+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:22+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:28+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:28+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:34+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:34+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:40+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:40+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:46+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:46+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:52+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:52+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:19:59+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:19:59+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:20:03+07:00 %LINK-I-UP: gigabitethernet 1/0/4 changed state to up, speed 100M, full-duplex
2017-07-18T20:20:05+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:20:05+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:20:11+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:20:11+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:20:17+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:20:17+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:20:23+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:20:23+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:20:29+07:00 %WAN-W-ERR: <check_arp_exist> Inet_aton
2017-07-18T20:20:29+07:00 wan_lb: error on sending icmp packet: 0
2017-07-18T20:20:31+07:00 <global_event_wait_try> (/config_applied)
2017-07-18T20:20:31+07:00 <global_event_wait_try> after wait (/config_applied), rc = 0
2017-07-18T20:20:31+07:00 Wrote 0 class decls to leases file.
2017-07-18T20:20:31+07:00 Wrote 99 leases to leases file.
2017-07-18T20:20:31+07:00 Server starting service.
2017-07-18T20:20:31+07:00 %CLI-I-CMD: user admin from ssh 10.10.0.42 input: restore
что я сделал не так? как заставить фичу работать?