No ipv4 rules setting up mwan3 multiwan package

After configuring members, policies and rules, mwan3 seems not to be adding ipv4 udp destination rules, or ip destination rules.

Any suggestions on how to debug the issue?

root@OpenWrt:/etc#  mwan3 status
Interface status:
 interface fibertel is online 00h:00m:11s, uptime 00h:56m:33s and tracking is active
 interface telefonica is online 00h:00m:12s, uptime 00h:56m:34s and tracking is active
 interface fourglte is online 00h:00m:12s, uptime 00h:56m:29s and tracking is active

Current ipv4 policies:
fibertel_only:
 fibertel (100%)
balanced:
 fourglte (25%)
 fibertel (75%)
telefonica_only:
 telefonica (100%)

Current ipv6 policies:
fibertel_only:
 unreachable
balanced:
 unreachable
telefonica_only:
 unreachable

Directly connected ipv4 networks:
10.0.1.0/24
10.0.1.0
10.0.3.0/24
10.1.1.255
10.0.3.0
192.168.20.0
10.1.1.0
127.255.255.255
192.168.20.0/24
10.0.1.1
224.0.0.0/3
127.0.0.1
192.168.20.255
127.0.0.0
10.0.3.100
10.0.3.255
10.0.1.255
192.168.20.100
127.0.0.0/8
10.1.1.0/24
10.1.1.2

Directly connected ipv6 networks:
fe80::/64
fd8f:c8d3:cb1f::/64

Active ipv4 user rules:

Active ipv6 user rules:
    0     0 - fibertel_only  all      *      *       ::/0                 ::/0

cat /etc/config/network:

config interface 'loopback'
        option device 'lo'
        option proto 'static'
        option ipaddr '127.0.0.1'
        option netmask '255.0.0.0'

config globals 'globals'
        option ula_prefix 'fd8f:c8d3:cb1f::/48'

config device
        option name 'br-lan'
        option type 'bridge'
        list ports 'eth0.1'

config interface 'lan'
        option device 'br-lan'
        option proto 'static'
        option netmask '255.255.255.0'
        option ip6assign '60'
        option ipaddr '10.0.1.1'

config device
        option name 'eth0'

config interface 'fibertel'
        option proto 'dhcp'
        option device 'eth0.101'
        option metric '100'

config interface 'telefonica'
        option proto 'dhcp'
        option device 'eth0.100'
        option metric '200'

config interface 'wan3'
        option proto 'dhcp'
        option device 'eth0.102'

config interface 'fourglte'
        option proto 'dhcp'
        option hostname 'ADMIN3'
        option metric '300'

cat /etc/config/mwan3

config globals 'globals'
        option mmx_mask '0x3F01'

config policy 'balanced'
        option last_resort 'unreachable'
        list use_member 'fibertel_m1_w3'
        list use_member 'telefonica_m1_w1'

config rule 'https'
        option sticky '1'
        option dest_port '443'
        option proto 'tcp'
        option use_policy 'balanced'
        option family 'ipv4'

config rule '1111'
        option family 'ipv4'
        option proto 'all'
        option dest_ip '1.1.1.1'
        option sticky '0'
        option use_policy 'blackhole'

config rule 'riotgames'
        option proto 'udp'
        option dest_port '5000:5000,7000:7500'
        option sticky '0'
        option use_policy 'telefonica_only'
        option family 'ipv4'

config rule 'superpeople'
        option proto 'udp'
        option dest_port '8800'
        option use_policy 'telefonica_only'
        option family 'ipv4'
        option sticky '1'

config rule 'superpeople_single_ip'
        option family 'ipv4'
        option proto 'all'
        option dest_ip '18.184.166.74'
        option sticky '0'
        option use_policy 'telefonica_only'

config rule 'default_rule_v4'
        option dest_ip '0.0.0.0/0'
        option family 'ipv4'
        option proto 'all'
        option sticky '0'
        option use_policy 'balanced'

config rule 'default_rule_v6'
        option dest_ip '::/0'
        option family 'ipv6'
        option proto 'all'
        option sticky '0'
        option use_policy 'fibertel_only'

config interface 'fibertel'
        option enabled '1'
        option initial_state 'online'
        option family 'ipv4'
        list track_ip '8.8.8.8'
        list track_ip '208.67.222.222'
        list track_ip '1.1.1.1'
        list track_ip '4.2.2.4'
        option track_method 'ping'
        option reliability '2'
        option count '1'
        option size '56'
        option max_ttl '60'
        option timeout '4'
        option interval '10'
        option failure_interval '5'
        option recovery_interval '5'
        option down '5'
        option up '5'
        list flush_conntrack 'ifup'

config member 'fibertel_m1_w3'
        option interface 'fibertel'
        option metric '1'
        option weight '3'

config member 'fibertel_m2_w3'
        option interface 'fibertel'
        option metric '2'
        option weight '3'

config interface 'telefonica'
        option enabled '1'
        option initial_state 'online'
        option family 'ipv4'
        list track_ip '8.8.4.4'
        list track_ip '208.67.220.220'
        list track_ip '1.1.1.1'
        list track_ip '4.2.2.2'
        option track_method 'ping'
        option reliability '2'
        option count '1'
        option size '56'
        option max_ttl '60'
        option timeout '4'
        option interval '10'
        option failure_interval '5'
        option recovery_interval '5'
        option down '5'
        option up '5'
        list flush_conntrack 'ifup'

config member 'telefonica_m1_w2'
        option interface 'telefonica'
        option metric '1'
        option weight '2'

config member 'telefonica_m2_w2'
        option interface 'telefonica'
        option metric '2'
        option weight '2'

config policy 'fibertel_only'
        list use_member 'fibertel_m1_w3'
        option last_resort 'unreachable'

config policy 'telefonica_only'
        list use_member 'telefonica_m1_w2'
        option last_resort 'unreachable'

Just found out the logread command.

Found that iptables-restore for v4 rules (which is triggered by mwan3) was returning a port range error... Then fixed my riotgames port range ( 5000:5000 ) to 5000:5500 and ipv4 started to show correctly.

Also superpeople_single_ip was too long for an ipv4 rule name.

All fixed.

This topic was automatically closed 10 days after the last reply. New replies are no longer allowed.