Port-forwarding in RouterOS

preview_player
Показать описание
#mikrotik #routeros #networking #portforwarding
Рекомендации по теме
Комментарии
Автор

You can additionally limit the port forward to WAN in interface list, and if you have a dynamic IP you can make a simple script to pull your current public IP, as it'll be available somewhere in ROS, and save it/update it to an address list with a single entry. After that you set the Dst. address list to that list and now it's a pretty tight port forward rule.

The only thing I need to figure out is how to probe local addresses to see if there's a service behind a port, so that the port forward rules can be dynamically turned on and off depending on the client status. Something like UPnP, but assigned manually, therefore safer.

supra
Автор

But input chain goes AFTER dst-nat in packet flow diagram. Why do you add accept rule in input?

AndyChernov
Автор

Thank you for this awsome tutorial but i really need how to NTH load balance in routerOS v7 i treid so many times always somthing wrong please provide anything tell us how it works... thank you

momensobhy
Автор

Doesn't DSTNAT before the Filter? Why use input not forward?
After dstnat, the packet will have dst IP address of the host behind mikrotik, so it is a forward chain

erazelyou
Автор

Why not just "Dst. Address List: WAN" instead of "Dst. Address"?

tcsoft
Автор

Someone should reread packet flow diagram and renew MTCNA ;)

alexn
Автор

How you make that the winbox look so clear on Linux?

m-electronics