as documentation about LB & how it interacts with routes, NAT etc is quite confusing I have some questions:
- question 1: should I use
...
set interfaces pppoe pppoe0 no-default-route
...
set interfaces pppoe pppoe1 no-default-route
and than add something like:
set protocols static route 0.0.0.0/0 interface pppoe0
set protocols static route 0.0.0.0/0 interface pppoe1
looks odd ))
may be I should just let pppoe connection to automatically add the routes?
- Question 2: same odd thing with source NAT. Should have something like:
set nat source rule 100 source address "192.168.0.0/24"
set nat source rule 100 translation address masquerade
set nat source rule 100 outbound-interface pppoe pppoe0
set nat source rule 105 source address "192.168.0.0/24"
set nat source rule 105 translation address masquerade
set nat source rule 105 outbound-interface pppoe pppoe1
- and Question 3: why the SSH from the internet to my router on all WANs might not work when I turn LB on?
while internal servers publications like:
set nat destination rule 12 destination port 1022
set nat destination rule 12 inbound-interface pppoe0 # or pppoe1
set nat destination rule 12 protocol 'tcp'
set nat destination rule 12 translation address "192.168.0.10"
set nat destination rule 12 translation port '22'
work well.
LB looks like:
set load-balancing wan interface-health pppoe0 nexthop 'dhcp'
set load-balancing wan interface-health pppoe1 nexthop 'dhcp'
set load-balancing wan rule 100 inbound-interface 'eth3'
set load-balancing wan rule 100 interface pppoe0 weight 1
set load-balancing wan rule 100 interface pppoe1 weight 1
set load-balancing wan sticky-connections inbound
- Question 4: what I might miss?
thank you!