Community discussions

MikroTik App
 
msozturk
just joined
Topic Author
Posts: 9
Joined: Thu May 24, 2007 2:32 pm

A stupid mistake

Tue Dec 29, 2009 2:42 pm

Hi guyz,

I have made a stupid mistake. I was trying to block the worms who try root password via SSH, and I entered
/ip firewall filter add chain=input src-address="10.0.0.0/24" action=accept
/ip firewall filter add chain=input action=drop

And via webmin interface I was playing with these rules I have put drop rule above the accept rule and bam. I lost connection to the Router.

Now I need to access the router but this is a routerboard 1000U device and I need an idea on how to access the router here.

Any ideas? Since the rules are on input chain it didn't affect the devices and the access @ my network but I have to access the router in the end.

Any idea would be greatly appreciated.

Regards,
 
msozturk
just joined
Topic Author
Posts: 9
Joined: Thu May 24, 2007 2:32 pm

Re: A stupid mistake

Tue Dec 29, 2009 2:53 pm

Well I have solved my problem. Keep in mind guyz if you can't access your router via IP address, you still can using Mac Address.

I connected my notebook to the router and gave that port's Mac Address and Bam, I connected and changed the filter now.
 
rodolfo
Long time Member
Long time Member
Posts: 553
Joined: Sat Jul 05, 2008 11:50 am

Re: A stupid mistake

Tue Dec 29, 2009 2:59 pm

you can access the console using the com port and a termininal application.
 
User avatar
janisk
MikroTik Support
MikroTik Support
Posts: 6263
Joined: Tue Feb 14, 2006 9:46 am
Location: Riga, Latvia

Re: A stupid mistake

Tue Dec 29, 2009 3:00 pm

well, you can block even mac-telnet/winbox access :)

but general rules, example, one you added, do not bloc mac-telnet/winbox
 
User avatar
Chupaka
Forum Guru
Forum Guru
Posts: 8709
Joined: Mon Jun 19, 2006 11:15 pm
Location: Minsk, Belarus
Contact:

Re: A stupid mistake

Tue Dec 29, 2009 5:53 pm

and how can one block mac telnet? :)
 
kirshteins
MikroTik Support
MikroTik Support
Posts: 592
Joined: Tue Dec 02, 2008 10:55 am

Re: A stupid mistake

Wed Dec 30, 2009 9:01 am

and how can one block mac telnet? :)
You can turn off this service
/tool mac-server set 0 interface=all disabled=yes
Also the mac-winbox
/tool mac-server mac-winbox set 0 interface=all disabled=yes
 
User avatar
Chupaka
Forum Guru
Forum Guru
Posts: 8709
Joined: Mon Jun 19, 2006 11:15 pm
Location: Minsk, Belarus
Contact:

Re: A stupid mistake

Wed Dec 30, 2009 9:37 am

thanks, Janis, but it's disabling, I know about it. I thought, it can be blocked by firewall =)

Who is online

Users browsing this forum: No registered users and 94 guests