•
Routes, Equal Cost Multipath Routing, Policy Routing
•
NAT
•
Mangle
•
Filter
Packet Flow
Description
MikroTik RouterOS is designed to be easy to operate in various aspects, including IP firewall.
Therefore regular firewall policies can be created and deployed without the knowledge about how
the packets are processed in the router. For example, if all that required is just natting internal
clients to a public address, the following command can be issued (assuming the interface to the
Internet in named Public):
/ip firewall nat add action=masquerade out-interface=Public chain=srcnat
Regular packet filtering, bandwith management or packet marking can be configured with ease in a
similar manner. However, a more complicated configuration could be deployed only with a good
understanding of the underlying processes in the router.
The packet flow through the router is depicted in the following diagram:
Page 466 of 695
Copyright 1999-2007, MikroTik. All rights reserved. Mikrotik, RouterOS and RouterBOARD are trademarks of Mikrotikls SIA.
Other trademarks and registred trademarks mentioned herein are properties of their respective owners.