本帖最後由 张无忌 於 2018-5-9 10:52 編輯
现在又enabled fasttrack rules,但是有加了exclude rules 就是rules 7 and 8 (就是在Fasttrack rules之前先accept VPN的packets,走slow path),其他走fast path (rules 9 and 10)。- 7 ;;; VPN HK
- chain=forward action=accept connection-state=established,related in-interface=bridge-HK log=no log-prefix=""
- 8 chain=forward action=accept connection-state=established,related out-interface=bridge-HK log=no log-prefix=""
- 9 ;;; defconf: fasttrack
- chain=forward action=fasttrack-connection connection-state=established,related log=no log-prefix=""
- 10 ;;; defconf: accept established,related, untracked
- chain=forward action=accept connection-state=established,related,untracked log=no log-prefix=""
複製代碼 之前发现不能用VPN,需要disable fasttrack,但是平时的throughput减半,经过问MikroTik Support后,和看看下面的帖子
https://forum.mikrotik.com/viewtopic.php?t=107201#p532865
把interface bridge-HK放入fasttrack enable之前,不需要走fasttrack后,现在效果非常好!
VPN能正常使用,而平时的throughput都可以full speed 941Mbps。
加了以后,VPN能正常使用,而WAN->LAN有941Mbps。效果非常好!
哈哈!现在用得非常爽。
[attach]2040330[/attach] |