/interface bridge
add name=LAN
/interface ethernet
//esto en la parte superior es para crear un puente entre las interfaces que van a
funcionar como la LAN de mi infraestructura de red
/ip pool
add name=pool1LAN ranges=[Link]-[Link]
//esto hace referencia al pool o la cantidad de direcciones ip que va repartir el
servidor DHCP
/ip dhcp-server
add address-pool=pool1LAN disabled=no interface=LAN name=ServidorDhcpLAN
//configuracion del servidor DHCP para la interfaz creada como puente para la LAN
/ip address
add address=[Link]/24 interface=LAN network=[Link] /rango de direcciones
ip para la LAN de nuestra red
add address=[Link]/24 interface="ether1 WAN1" network=[Link]
//Direccion ip asignada estaticamente de nuestro proveedor de internet 1 en caso
de ser dinamico este valor se agrega automaticamente
add address=[Link]/24 interface="ether2 WAN2" network=[Link]
//Direccion ip asignada estaticamente de nuestro proveedor de internet 2 en caso
de ser dinamico este valor se agrega automaticamente
/ip dhcp-client
add default-route-distance=0 dhcp-options=hostname,clientid interface=\
"ether1 WAN1"
add default-route-distance=0 dhcp-options=hostname,clientid interface=\
"ether2 WAN2"
//esto se aplica solo en el caso de que las interfaces carguen las ip como clientes
DHCP
/ip dhcp-server network
add address=[Link]/24 dns-server=[Link],[Link] gateway=[Link] \
netmask=24
//servidor dhcp para la red LAN de nuestro equipo
/ip firewall mangle
add chain=prerouting dst-address=[Link]/24 in-interface=LAN
add chain=prerouting dst-address=[Link]/24 in-interface=LAN
//identificar los paquetes
add action=mark-connection chain=prerouting connection-mark=no-mark in-
interface="ether1" new-connection-mark=Wan1_Conn
add action=mark-connection chain=prerouting connection-mark=no-mark in-
interface="ether2" new-connection-mark=Wan2_Conn
add action=mark-connection chain=prerouting connection-mark=no-mark \
dst-address-type=!local in-interface=LAN new-connection-mark=Wan1_Conn \
per-connection-classifier=both-addresses:2/0
add action=mark-connection chain=prerouting connection-mark=no-mark \
dst-address-type=!local in-interface=LAN new-connection-mark=Wan2_Conn \
per-connection-classifier=both-addresses:2/1
add action=mark-routing chain=prerouting connection-mark=Wan1_Conn \
in-interface=LAN new-routing-mark=To_Wan1
add action=mark-routing chain=prerouting connection-mark=Wan2_Conn \
in-interface=LAN new-routing-mark=To_Wan2
add action=mark-routing chain=output connection-mark=Wan1_Conn \
new-routing-mark=To_Wan1
add action=mark-routing chain=output connection-mark=Wan2_Conn \
new-routing-mark=To_Wan2
/ip firewall nat
add action=masquerade chain=srcnat out-interface="ether1"
add action=masquerade chain=srcnat out-interface="ether2"
/ip route
add check-gateway=ping distance=1 gateway=[Link] routing-mark=\
To_Wan1
add check-gateway=ping distance=1 gateway=100.100.100.1routing-mark=\
To_Wan2
add check-gateway=ping distance=1 gateway=[Link]
add check-gateway=ping distance=1 gateway=[Link]
/system clock
set time-zone-name=America/Bogota
/system routerboard settings
set protected-routerboot=disabled