Can this be real? Hap ax3 has 1GB of RAM.This is probably true-memory overflow, and subsequent reboot in order to clear it (at the moment, the rest of the memory is 30-35 MB)
Statistics: Posted by AtisE — Fri Mar 29, 2024 1:22 pm
Statistics: Posted by korg — Fri Mar 29, 2024 1:19 pm
Statistics: Posted by anav — Fri Mar 29, 2024 1:14 pm
Statistics: Posted by anav — Fri Mar 29, 2024 1:13 pm
Statistics: Posted by mkx — Fri Mar 29, 2024 1:05 pm
Statistics: Posted by holvoetn — Fri Mar 29, 2024 12:58 pm
Statistics: Posted by holvoetn — Fri Mar 29, 2024 12:55 pm
add client-endpoint=endpoint.dns.name endpoint-port=15847 allowed-address=192.168.34.3 interface=int-wireguard private-key="MC4CAQAwBQYDK2VuBCIEIKgK/XB5nVWICe7sgyj2psIBBJPjBtnrDJHbDnf6yrhn" public-key="MCowBQYDK2VuAyEAx99o0n3hPfnEJAmYtaIyVufc2veV9CaHSKE8ubFOKQc="
[Interface]ListenPort = 51820PrivateKey = MC4CAQAwBQYDK2VuBCIEIKgK/XB5nVWICe7sgyj2psIBBJPjBtnrDJHbDnf6yrhnAddress = 192.168.177.2/24[Peer]PublicKey = MTl3/lv1yI9r4t/FsJufTrFQy1iyqs1etDxMqzRaODU=AllowedIPs = 0.0.0.0/0, ::/0Endpoint = endpoint.dns.name:16321
Statistics: Posted by sebus46 — Fri Mar 29, 2024 12:40 pm
Statistics: Posted by holvoetn — Fri Mar 29, 2024 12:34 pm
Statistics: Posted by abdullanetworking — Fri Mar 29, 2024 12:26 pm
Statistics: Posted by infabo — Fri Mar 29, 2024 12:21 pm
Statistics: Posted by mrz — Fri Mar 29, 2024 12:19 pm
Statistics: Posted by CGGXANNX — Fri Mar 29, 2024 12:18 pm
Statistics: Posted by holvoetn — Fri Mar 29, 2024 12:16 pm
#model = L41G-2axD/interface bridgeadd name=bridge1 vlan-filtering=yes/interface wifiset [ find default-name=wifi1 ] channel.band=2ghz-ax .width=20/40mhz configuration.country=Spain .mode=ap .ssid=VLAN10-HOME disabled=no name=VLAN10-HOME/interface bridge portadd bridge=bridge1 interface=ether1add bridge=bridge1 interface=ether2add bridge=bridge1 interface=ether3add bridge=bridge1 interface=ether4add bridge=bridge1 interface=VLAN10-HOME pvid=10/interface bridge vlanadd bridge=bridge1 tagged=ether1 vlan-ids=10/ip dhcp-clientadd interface=bridge1/system noteset show-at-login=no/system routerboard settingsset auto-upgrade=yes
#model = L41G-2axD/interface bridgeadd name=bridge1/interface wifiset [ find default-name=wifi1 ] channel.band=2ghz-ax .frequency=2452 .width=20/40mhz-Ce configuration.country=Spain .mode=ap .ssid=VLAN10-TEST datapath.vlan-id=10 disabled=no name=VLAN10-TEST/interface bridge portadd bridge=bridge1 interface=ether2add bridge=bridge1 interface=ether1add bridge=bridge1 interface=ether3add bridge=bridge1 interface=ether4add bridge=bridge1 interface=VLAN10-TEST pvid=10/system noteset show-at-login=no/system routerboard settingsset auto-upgrade=yes
Statistics: Posted by fibracapi — Fri Mar 29, 2024 12:12 pm
Statistics: Posted by danriis — Fri Mar 29, 2024 12:04 pm
Statistics: Posted by collerok — Fri Mar 29, 2024 12:00 pm
Statistics: Posted by Adephx — Fri Mar 29, 2024 11:40 am
Favorite: one-on-one interaction with an expert. Second-best: well-written text (optionally with pictures). Least favorite: podcasts & youtube videos.What is your favorite way to learn?
Statistics: Posted by cmmike — Fri Mar 29, 2024 11:21 am
Statistics: Posted by bratislav — Fri Mar 29, 2024 11:14 am
Statistics: Posted by ondrejstepanek — Fri Mar 29, 2024 11:11 am
Statistics: Posted by Buckeye — Fri Mar 29, 2024 11:06 am
Statistics: Posted by DenisPDA — Fri Mar 29, 2024 11:05 am
version: 2.17status: ERROR: file not found
Statistics: Posted by Valathar — Fri Mar 29, 2024 11:04 am
host upgrade.mikrotik.comupgrade.mikrotik.com is an alias for global-balancer-e.mikrotik.com.global-balancer-e.mikrotik.com has address 159.148.147.251global-balancer-e.mikrotik.com has IPv6 address 2a02:610:7501:3000::251
whois 159.148.147.251inetnum: 159.148.147.226 - 159.148.147.255netname: MIKROTIKLSSIAabuse-c: AR23365-RIPEdescr: MIKROTIKLS SIAcountry: LV
Statistics: Posted by pe1chl — Fri Mar 29, 2024 11:03 am
Statistics: Posted by cmmike — Fri Mar 29, 2024 10:53 am
Yeah, that option exists but causes no CC at all (for me, anyway).That's why I suggested you using subtitles (forgot to mention with the option "Auto-translate" )
Statistics: Posted by Buckeye — Fri Mar 29, 2024 10:50 am
# 2024-03-29 11:18:42 by RouterOS 7.14.1## model = RBD52G-5HacD2HnD/caps-man channeladd band=2ghz-g/n control-channel-width=20mhz extension-channel=disabled name=2.4ghz reselect-interval=30m save-selected=yes tx-power=17add band=5ghz-n/ac control-channel-width=20mhz extension-channel=XXXX name=5ghz reselect-interval=30m save-selected=yes/interface bridgeadd admin-mac=48:8F:5A:4F:18:FB arp=proxy-arp auto-mac=no comment=defconf name=bridge port-cost-mode=short/interface wireless# managed by CAPsMAN# channel: 2447/20-Ce/gn(14dBm), SSID: al, CAPsMAN forwardingset [ find default-name=wlan1 ] band=2ghz-b/g/n channel-width=20/40mhz-XX country=israel distance=indoors frequency=auto installation=indoor keepalive-frames=disabled mode=ap-bridge multicast-buffering=disabled multicast-helper=disabled ssid=al-router-2.4G wireless-protocol=802.11 wmm-support=enabled wps-mode=disabled# managed by CAPsMAN# channel: 5260/20-Ceee/ac/DP(17dBm), SSID: al, CAPsMAN forwardingset [ find default-name=wlan2 ] band=5ghz-a/n/ac channel-width=20/40/80mhz-XXXX country=israel distance=indoors frequency=auto installation=indoor keepalive-frames=disabled mode=ap-bridge multicast-buffering=disabled multicast-helper=disabled ssid=al-router-5G wireless-protocol=802.11 wmm-support=enabled/caps-man datapathadd bridge=bridge name=common/caps-man ratesadd basic=12Mbps name="no b" supported=12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps/caps-man securityadd authentication-types=wpa2-psk disable-pmkid=yes encryption=aes-ccm group-encryption=aes-ccm group-key-update=1h name=common/caps-man configurationadd channel=2.4ghz country=israel datapath=common distance=indoors hw-protection-mode=rts-cts installation=any name=2.4ghz rates="no b" security=common ssid=aladd channel=5ghz country=israel datapath=common distance=indoors hw-protection-mode=rts-cts installation=any name=5ghz rates="no b" security=common ssid=aladd channel=2.4ghz country=israel datapath=common distance=indoors hw-protection-mode=rts-cts installation=indoor name="2.4ghz: slave" rates="no b" security=common ssid=al-2.4/caps-man interfaceadd channel.extension-channel=XX .frequency=2412,2437,2462 configuration=2.4ghz disabled=no l2mtu=1600 mac-address=08:55:31:45:83:D8 master-interface=none name=2.4-cap-1 radio-mac=08:55:31:45:83:D8 radio-name=0855314583D8add configuration="2.4ghz: slave" configuration.installation=any disabled=no l2mtu=1600 mac-address=0A:55:31:45:83:D8 master-interface=2.4-cap-1 name=2.4-cap-1-1 radio-mac=00:00:00:00:00:00 radio-name=0A55314583D8add channel.extension-channel=Ce .frequency=2422,2447 configuration=2.4ghz disabled=no l2mtu=1600 mac-address=48:8F:5A:4F:18:FF master-interface=none name=2.4-router-1 radio-mac=48:8F:5A:4F:18:FF radio-name=488F5A4F18FFadd configuration="2.4ghz: slave" configuration.installation=any disabled=no l2mtu=1600 mac-address=4A:8F:5A:4F:18:FF master-interface=2.4-router-1 name=2.4-router-1-1 radio-mac=00:00:00:00:00:00 radio-name=4A8F5A4F18FFadd channel.control-channel-width=20mhz .extension-channel=Ceee .frequency=5180 .tx-power=25 configuration=5ghz disabled=no l2mtu=1600 mac-address=08:55:31:45:83:D9 master-interface=none name=5-cap-1 radio-mac=08:55:31:45:83:D9 radio-name=0855314583D9add channel.extension-channel=Ceee .frequency=5260 configuration=5ghz disabled=no l2mtu=1600 mac-address=48:8F:5A:4F:19:00 master-interface=none name=5-router-1 radio-mac=48:8F:5A:4F:19:00 radio-name=488F5A4F1900/interface listadd comment=defconf name=WANadd comment=defconf name=LANadd name=5ghzadd name=2.4ghz/interface lte apnset [ find default=yes ] ip-type=ipv4 use-network-apn=no/interface wireless security-profilesset [ find default=yes ] authentication-types=wpa-psk,wpa2-psk group-key-update=1h mode=dynamic-keys supplicant-identity=MikroTik/ip ipsec peeradd name=l2tpserver passive=yes/ip ipsec proposalset [ find default=yes ] auth-algorithms=sha256 enc-algorithms=3des/ip pooladd name=dhcp ranges=10.0.5.25-10.0.5.254add name=ovpn ranges=10.0.5.18-10.0.5.24/ip dhcp-serveradd address-pool=dhcp interface=bridge lease-script=":local scriptName \"dhcp2dns\"\n:do {\n :local scriptSrc [ /system script get [ find name=\$scriptName ] source ]\n :local scriptObj [ :parse \$scriptSrc ]\n \$scriptObj leaseBound=\$leaseBound leaseServerName=\$leaseServerName\_leaseActIP=\$leaseActIP leaseActMAC=\$leaseActMAC\n} on-error={ :log warning \"DHCP server '\$leaseServerName' lease script\_error\" };" lease-time=10m name=defconf/ip smb usersset [ find default=yes ] disabled=yes/ppp profileadd dns-server=10.0.5.17 interface-list=LAN local-address=10.0.5.17 name=ovpn remote-address=ovpn use-encryption=yes/queue treeadd comment="Uplink QoS" max-limit=105M name=QoS_ether1 parent=ether1 queue=wireless-defaultadd comment="Queue Priority 1" name="IP Precedence 7. Network Control (Top Priority) - ether1" packet-mark=ip_precedence_7 parent=QoS_ether1 priority=1 queue=wireless-defaultadd comment="Queue Priority 2" name="IP Precedence 6. Internetwork Control (High Priority) - ether1" packet-mark=ip_precedence_6 parent=QoS_ether1 priority=2 queue=wireless-defaultadd comment="Queue Priority 3" name="IP Precedence 5. Voice (Medium-High Priority) - ether1" packet-mark=ip_precedence_5 parent=QoS_ether1 priority=3 queue=wireless-defaultadd comment="Queue Priority 4" name="IP Precedence 4. Interactive Video (Medium Priority) - ether1" packet-mark=ip_precedence_4 parent=QoS_ether1 priority=4 queue=wireless-defaultadd comment="Queue Priority 5" name="IP Precedence 3. Critical Data or Call Signaling (Medium-Low Priority) - ether1" packet-mark=ip_precedence_3 parent=QoS_ether1 priority=5 queue=wireless-defaultadd comment="Queue Priority 6" name="IP Precedence 0. Best Effort (Low Priority) - ether1" packet-mark=no-mark parent=QoS_ether1 priority=6 queue=wireless-defaultadd comment="Queue Priority 7" name="IP Precedence 2. Background (Very Low Priority) - ether1" packet-mark=ip_precedence_2 parent=QoS_ether1 priority=7 queue=wireless-defaultadd comment="Queue Priority 8" name="IP Precedence 1. Scavenger (Bottom Priority) - ether1" packet-mark=ip_precedence_1 parent=QoS_ether1 queue=wireless-defaultadd comment="Downlink QoS" max-limit=990M name=QoS_bridge parent=bridge queue=wireless-defaultadd comment="Queue Priority 1" name="IP Precedence 7. Network Control (Top Priority) - bridge" packet-mark=ip_precedence_7 parent=QoS_bridge priority=1 queue=wireless-defaultadd comment="Queue Priority 2" name="IP Precedence 6. Internetwork Control (High Priority) - bridge" packet-mark=ip_precedence_6 parent=QoS_bridge priority=2 queue=wireless-defaultadd comment="Queue Priority 3" name="IP Precedence 5. Voice (Medium-High Priority) - bridge" packet-mark=ip_precedence_5 parent=QoS_bridge priority=3 queue=wireless-defaultadd comment="Queue Priority 4" name="IP Precedence 4. Interactive Video (Medium Priority) - bridge" packet-mark=ip_precedence_4 parent=QoS_bridge priority=4 queue=wireless-defaultadd comment="Queue Priority 5" name="IP Precedence 3. Critical Data or Call Signaling (Medium-Low Priority) - bridge" packet-mark=ip_precedence_3 parent=QoS_bridge priority=5 queue=wireless-defaultadd comment="Queue Priority 6" name="IP Precedence 0. Best Effort (Low Priority) - bridge" packet-mark=no-mark parent=QoS_bridge priority=6 queue=wireless-defaultadd comment="Queue Priority 7" name="IP Precedence 2. Background (Very Low Priority) - bridge" packet-mark=ip_precedence_2 parent=QoS_bridge priority=7 queue=wireless-defaultadd comment="Queue Priority 8" name="IP Precedence 1. Scavenger (Bottom Priority) - bridge" packet-mark=ip_precedence_1 parent=QoS_bridge queue=wireless-default/routing bgp templateset default disabled=no output.network=bgp-networks/routing ospf instanceadd disabled=no name=default-v2/routing ospf areaadd disabled=yes instance=default-v2 name=backbone-v2/caps-man access-listadd action=accept allow-signal-out-of-range=3s comment="5ghz: nice strong signal" disabled=no interface=5ghz signal-range=-76..120 ssid-regexp="" time=0s-1d,sun,mon,tue,wed,thu,fri,satadd action=accept allow-signal-out-of-range=10s comment="2.4ghz: client specifically wants 2.4ghz" disabled=no signal-range=-76..120 ssid-regexp=al-2.4 time=0s-1d,sun,mon,tue,wed,thu,fri,satadd action=accept allow-signal-out-of-range=3s comment="2.4ghz: client is probably too far for 5ghz" disabled=no interface=2.4ghz signal-range=-76..-56 ssid-regexp="" time=0s-1d,sun,mon,tue,wed,thu,fri,satadd action=accept allow-signal-out-of-range=3s comment="2.4ghz: client should know better" disabled=no interface=2.4ghz signal-range=-76..120 ssid-regexp="" time=0s-1d,sun,mon,tue,wed,thu,fri,satadd action=reject allow-signal-out-of-range=10s disabled=no signal-range=-120..120 ssid-regexp="" time=0s-1d,sun,mon,tue,wed,thu,fri,sat/caps-man managerset ca-certificate=CAPsMAN-CA-488F5A4F18FA certificate=CAPsMAN-488F5A4F18FA enabled=yes require-peer-certificate=yes upgrade-policy=require-same-version/caps-man manager interfaceadd disabled=no interface=bridge/caps-man provisioningadd action=create-enabled hw-supported-modes=g master-configuration=2.4ghz name-format=prefix-identity name-prefix=2.4 slave-configurations="2.4ghz: slave"add action=create-enabled hw-supported-modes=ac master-configuration=5ghz name-format=prefix-identity name-prefix=5/interface bridge portadd bridge=bridge comment=defconf ingress-filtering=no interface=ether2 internal-path-cost=10 path-cost=10add bridge=bridge comment=defconf ingress-filtering=no interface=ether3 internal-path-cost=10 path-cost=10add bridge=bridge comment=defconf ingress-filtering=no interface=ether4 internal-path-cost=10 path-cost=10add bridge=bridge comment=defconf ingress-filtering=no interface=ether5 internal-path-cost=10 path-cost=10/ip firewall connection trackingset udp-timeout=10s/ip neighbor discovery-settingsset discover-interface-list=none/ip settingsset max-neighbor-entries=8192/ipv6 settingsset disable-ipv6=yes max-neighbor-entries=8192/interface l2tp-server serverset authentication=mschap1,mschap2 default-profile=default use-ipsec=required/interface list memberadd comment=defconf interface=bridge list=LANadd comment=defconf interface=ether1 list=WANadd interface=2.4-cap-1 list=2.4ghzadd interface=5-cap-1 list=5ghzadd interface=2.4-router-1 list=2.4ghzadd interface=5-router-1 list=5ghz/interface ovpn-server serverset auth=sha1 certificate=server cipher=blowfish128,aes128-cbc,aes192-cbc,aes256-cbc default-profile=ovpn enabled=yes port=443/interface wireless cap# set bridge=bridge caps-man-addresses=127.0.0.1 certificate=CAPsMAN-488F5A4F18FA discovery-interfaces=bridge enabled=yes interfaces=wlan2,wlan1 lock-to-caps-man=yes/ip addressadd address=10.0.5.1/24 comment=defconf interface=ether2 network=10.0.5.0/ip dhcp-clientadd comment=defconf interface=ether1/ip dhcp-server networkadd address=10.0.5.0/24 comment=defconf domain=lan gateway=10.0.5.1 netmask=24/ip dnsset allow-remote-requests=yes/ip dns staticadd address=10.0.5.1 comment=defconf name=router.lanadd address=10.0.5.4 name=printer.lanadd address=10.0.5.3 name=sip.lanadd address=10.0.5.5 name=nas.lanadd address=10.0.5.46 comment=defconf-08:55:31:45:83:D6 name=cap.lan ttl=10m/ip firewall address-listadd address=10.0.5.4 list=lan-only/ip firewall filteradd action=accept chain=input comment="Allow OpenVPN" dst-port=443 protocol=tcpadd action=accept chain=input comment="defconf: accept established,related,untracked" connection-state=established,related,untrackedadd action=drop chain=input comment="defconf: drop invalid" connection-state=invalidadd action=accept chain=input comment="defconf: accept ICMP" disabled=yes protocol=icmpadd action=accept chain=input comment="defconf: accept to local loopback (for CAPsMAN)" dst-address=127.0.0.1add action=drop chain=input comment="defconf: drop all not coming from LAN" in-interface-list=!LANadd action=drop chain=forward comment="block untrusted local clients from accessing WAN" out-interface-list=WAN src-address-list=lan-onlyadd action=drop chain=forward comment="block the printer by MAC too, just in case" out-interface-list=WAN src-mac-address=30:CD:A7:1E:63:02add action=accept chain=forward comment="defconf: accept in ipsec policy" ipsec-policy=in,ipsecadd action=accept chain=forward comment="defconf: accept out ipsec policy" ipsec-policy=out,ipsecadd action=accept chain=forward comment="bypass fasttrack for non-zero DSCP" connection-state=established,related dscp=!0add action=fasttrack-connection chain=forward comment="defconf: fasttrack" connection-state=established,related hw-offload=yesadd action=accept chain=forward comment="defconf: accept established,related, untracked" connection-state=established,related,untrackedadd action=drop chain=forward comment="defconf: drop invalid" connection-state=invalidadd action=drop chain=forward comment="defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat connection-state=new in-interface-list=WAN/ip firewall mangleadd action=set-priority chain=postrouting comment="respect DSCP tagging" new-priority=from-dscp-high-3-bits passthrough=yesadd action=set-priority chain=postrouting comment="prioritize ACKs" new-priority=6 packet-size=0-123 passthrough=yes protocol=tcp tcp-flags=ackadd action=accept chain=postrouting comment="precedence 0 - best effort (low priority) (default)" priority=0add action=mark-packet chain=postrouting comment="IP Precedence (aka Packet Priority) 6 - Internetwork Control (High Priority) (apply packet mark ip_precedence_6)" new-packet-mark=ip_precedence_6 passthrough=no priority=6add action=mark-packet chain=postrouting comment="IP Precedence (aka Packet Priority) 1 - Scavenger (Bottom Priority) (apply packet mark ip_precedence_1)" new-packet-mark=ip_precedence_1 passthrough=no priority=1add action=mark-packet chain=postrouting comment="IP Precedence (aka Packet Priority) 2 - Background (Very Low Priority) (apply packet mark ip_precedence_2)" new-packet-mark=ip_precedence_2 passthrough=no priority=2add action=mark-packet chain=postrouting comment="IP Precedence (aka Packet Priority) 3 - Critical Data or Call Signaling (Medium-Low Priority) (apply packet mark ip_precedence_3)" new-packet-mark=ip_precedence_3 passthrough=no priority=3add action=mark-packet chain=postrouting comment="IP Precedence (aka Packet Priority) 4 - Interactive Video (Medium Priority) (apply packet mark ip_precedence_4)" new-packet-mark=ip_precedence_4 passthrough=no priority=4add action=mark-packet chain=postrouting comment="IP Precedence (aka Packet Priority) 5 - Voice (Medium-High Priority) (apply packet mark ip_precedence_5)" new-packet-mark=ip_precedence_5 passthrough=no priority=5add action=mark-packet chain=postrouting comment="IP Precedence (aka Packet Priority) 7 - Network Control (Top Priority) (apply packet mark ip_precedence_7)" new-packet-mark=ip_precedence_7 passthrough=no priority=7/ip firewall natadd action=masquerade chain=srcnat comment="defconf: masquerade" ipsec-policy=out,none out-interface-list=WAN/ip firewall service-portset sip ports=5060,5061,5065/ip ipsec identityadd generate-policy=port-override peer=l2tpserver/ip ipsec policyset 0 dst-address=0.0.0.0/0 src-address=0.0.0.0/0/ip serviceset telnet disabled=yesset ftp disabled=yesset www disabled=yesset www-ssl certificate=webfig disabled=no port=444set api disabled=yesset api-ssl disabled=yes/ip smb sharesset [ find default=yes ] directory=/flash/pub/ip sshset strong-crypto=yes/ip traffic-flowset enabled=yes/ip traffic-flow targetadd dst-address=0.0.0.0 port=1234 version=5/ip upnpset enabled=yes/ip upnp interfacesadd interface=bridge type=internaladd interface=ether1 type=external/ppp secretadd name=admin profile=ovpnadd name=admin profile=*2 remote-address=10.0.9.1 service=l2tp/routing bfd configurationadd disabled=no/system clockset time-zone-name=Asia/Jerusalem/system identityset name=router/system noteset show-at-login=no/system ntp clientset enabled=yes/system ntp client serversadd address=pool.ntp.org/system scriptadd comment="reflect dhcp leases in dns" dont-require-permissions=no name=dhcp2dns owner=admin policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="###\ \n# Script entry point\ \n#\ \n# Expected environment variables:\ \n# leaseBound 1 = lease bound, 0 = lease removed\ \n# leaseServerName Name of DHCP server\ \n# leaseActIP IP address of DHCP client\ \n# leaseActMAC MAC address of DHCP client\ \n###\ \n\ \n:local LogPrefix \"DHCP2DNS (\$leaseServerName)\"\ \n\ \n# \"a.b.c.d\" -> \"a-b-c-d\" for IP addresses used as replacement for missing host names\ \n:local ip2Host do={\ \n :local outStr\ \n :for i from=0 to=([:len \$inStr] - 1) do={\ \n :local tmp [:pick \$inStr \$i];\ \n :if (\$tmp =\".\") do={\ \n :set tmp \"-\"\ \n }\ \n :set outStr (\$outStr . \$tmp)\ \n }\ \n :return \$outStr\ \n}\ \n\ \n:local mapHostName do={\ \n# param: name\ \n# max length = 63\ \n# allowed chars a-z,0-9,-\ \n :local allowedChars \"abcdefghijklmnopqrstuvwxyz0123456789-\";\ \n :local numChars [:len \$name];\ \n :if (\$numChars > 63) do={:set numChars 63};\ \n :local result \"\";\ \n\ \n :for i from=0 to=(\$numChars - 1) do={\ \n :local char [:pick \$name \$i];\ \n :if ([:find \$allowedChars \$char] < 0) do={:set char \"-\"};\ \n :set result (\$result . \$char);\ \n }\ \n :return \$result;\ \n}\ \n\ \n:local lowerCase do={\ \n# param: entry\ \n :local lower \"abcdefghijklmnopqrstuvwxyz\";\ \n :local upper \"ABCDEFGHIJKLMNOPQRSTUVWXYZ\";\ \n :local result \"\";\ \n :for i from=0 to=([:len \$entry] - 1) do={\ \n :local char [:pick \$entry \$i];\ \n :local pos [:find \$upper \$char];\ \n :if (\$pos > -1) do={:set char [:pick \$lower \$pos]};\ \n :set result (\$result . \$char);\ \n }\ \n :return \$result;\ \n}\ \n\ \n:local token \"\$leaseServerName-\$leaseActMAC\";\ \n\ \n:if ( [ :len \$leaseActIP ] <= 0 ) do={\ \n :log error \"\$LogPrefix: empty lease address\"\ \n :error \"empty lease address\"\ \n}\ \n\ \n:if ( \$leaseBound = 1 ) do={\ \n\ \n# new DHCP lease added\ \n# :log info \"\$LogPrefix: new lease for \$token\"\ \n /ip dhcp-server\ \n :local dnsttl [ get [ find name=\$leaseServerName ] lease-time ]\ \n network\ \n :local domain [ get [ find \$leaseActIP in address ] domain ]\ \n :if ( [ :len \$domain ] <= 0 ) do={ :set domain \"lan\" }\ \n# :log info \"\$LogPrefix: DNS domain is \$domain\"\ \n\ \n :local hostname \"\"\ \n :do {\ \n :set hostname [/ip dhcp-server lease get value-name=host-name [find mac-address=\$leaseActMAC and server=\$leaseServerName]]\ \n } on-error={ :log warning \"\$LogPrefix: failed to retrieve hostname for \$token\" }\ \n# :log info \"\$LogPrefix: DHCP hostname is \$hostname\"\ \n\ \n#Hostname cleanup\ \n :if ( [ :len \$hostname ] <= 0 ) do={\ \n :set hostname [ \$ip2Host inStr=\$leaseActIP ]\ \n :log info \"\$LogPrefix: Empty hostname for '\$leaseActIP', using generated host name '\$hostname'\"\ \n }\ \n :set hostname [\$lowerCase entry=\$hostname]\ \n :set hostname [\$mapHostName name=\$hostname]\ \n# :log info \"\$LogPrefix: Clean hostname for FQDN is \$hostname\";\ \n\ \n :if ( [ :len \$domain ] <= 0 ) do={\ \n :log warning \"\$LogPrefix: Empty domainname for '\$leaseActIP', cannot create static DNS name\"\ \n :error \"Empty domainname for '\$leaseActIP'\"\ \n }\ \n\ \n :local fqdn (\$hostname . \".\" . \$domain)\ \n# :log info \"\$LogPrefix: FQDN for DNS is \$fqdn\"\ \n\ \n :if ([/ip dhcp-server lease get [find mac-address=\$leaseActMAC and server=\$leaseServerName]]) do={\ \n :log info message=\"\$LogPrefix: \$leaseActMAC -> \$hostname\"\ \n :do {\ \n :local old [/ip dns static find name=\$fqdn comment~\"^\$leaseServerName-\"]\ \n :if ( \$old != \"\" ) do {\ \n :log info \"\$logPrefix: removing existing record \$old\"\ \n /ip dns static remove \$old\ \n :log info \"\$logPrefix: done\"\ \n }\ \n /ip dns static add address=\$leaseActIP name=\$fqdn ttl=\$dnsttl comment=\$token;\ \n } on-error={:log error message=\"\$LogPrefix: Failure during dns registration of \$fqdn with \$leaseActIP\"}\ \n }\ \n\ \n} else={\ \n\ \n# DHCP lease removed\ \n :local record [/ip dns static find comment=\$token]\ \n :if ( \$record != \"\" ) do={\ \n :log info \"\$logPrefix: removing \$record\"\ \n /ip dns static remove \$record\ \n :log info \"\$logPrefix: done\"\ \n }\ \n}\ \n"/tool bandwidth-serverset enabled=no/tool graphing interfaceadd interface=ether1add allow-address=10.0.5.110/32 interface=bridge/tool graphing queueadd/tool graphing resourceadd/tool mac-serverset allowed-interface-list=none/tool mac-server mac-winboxset allowed-interface-list=none/tool mac-server pingset enabled=no
Statistics: Posted by cmmike — Fri Mar 29, 2024 10:48 am
Statistics: Posted by redjahred — Fri Mar 29, 2024 10:45 am
Statistics: Posted by patrikg — Fri Mar 29, 2024 10:38 am
Statistics: Posted by mgx — Fri Mar 29, 2024 10:37 am
Easy, just apply the default "WAN" config only after you set your initial password. Problem solved.
This is not sufficient for devices that work by default without you ever having to log in.
50k Cisco devices do absolutely nothing when you power them up first time, you need to do a lot of configuration.
But a MikroTik router connected to a line with DHCP will often work with the default config, and the user never has to log in.
Statistics: Posted by pe1chl — Fri Mar 29, 2024 10:27 am
Statistics: Posted by Buckeye — Fri Mar 29, 2024 10:26 am
Statistics: Posted by mkx — Fri Mar 29, 2024 9:45 am
Statistics: Posted by eddieb — Fri Mar 29, 2024 9:44 am
Statistics: Posted by tesme33 — Fri Mar 29, 2024 9:16 am
/interface vlan...add interface=Dave name=Security vlan-id=200.../ip firewall filter...add action=drop chain=forward comment="Block internet security" \ out-interface="Bell PPPoE" src-address-list=Security...
Statistics: Posted by CGGXANNX — Fri Mar 29, 2024 9:07 am
Statistics: Posted by mkx — Fri Mar 29, 2024 8:59 am
Statistics: Posted by Jotne — Fri Mar 29, 2024 8:49 am
Statistics: Posted by InfraErik — Fri Mar 29, 2024 8:44 am
Statistics: Posted by fengyuclub — Fri Mar 29, 2024 8:40 am
Statistics: Posted by kevinds — Fri Mar 29, 2024 8:34 am
Statistics: Posted by kevinds — Fri Mar 29, 2024 8:24 am
Statistics: Posted by CGGXANNX — Fri Mar 29, 2024 7:46 am
It's a brand new device, so it is empty, only confguration was restored. No extra files, nothing.
Statistics: Posted by CGGXANNX — Fri Mar 29, 2024 7:22 am
/interface wifi set wifi1 configuration.country=Australia channel.frequency=5745/interface wifi set wifi2 configuration.country=Australia channel=1
> /interface/wifi/monitor 0,1 state: running running channel: 5745/ax/Ceee 2412/ax registered-peers: 6 5 authorized-peers: 6 5 tx-power: 9 15
> /interface/wifi/radio/reg-info country="Australia" number=1 ranges: 2402-2482/20 5170-5250/23/indoor 5250-5330/23/indoor/dfs 5490-5590/30/dfs 5650-5730/30/dfs 5735-5835/36
Statistics: Posted by mke — Fri Mar 29, 2024 6:50 am
Statistics: Posted by aarntesla — Fri Mar 29, 2024 6:08 am
/interface/wifi/monitor 0,1
Statistics: Posted by mke — Fri Mar 29, 2024 6:04 am
Statistics: Posted by lvdcarvalho — Fri Mar 29, 2024 5:58 am
Statistics: Posted by rplant — Fri Mar 29, 2024 5:39 am
Statistics: Posted by rarlup — Fri Mar 29, 2024 5:36 am
Statistics: Posted by kiyre — Fri Mar 29, 2024 4:46 am
Statistics: Posted by dalami — Fri Mar 29, 2024 4:41 am
Statistics: Posted by trmns — Fri Mar 29, 2024 4:00 am
Statistics: Posted by Dimas2810 — Fri Mar 29, 2024 3:53 am
This is not sufficient for devices that work by default without you ever having to log in.All other brands I've used so far (from cheap Chinese ones to 50k Cisco ones - with the exception of Fritz), simply force you to set a password on first login.
Statistics: Posted by Cha0s — Fri Mar 29, 2024 3:41 am
Statistics: Posted by Amm0 — Fri Mar 29, 2024 3:28 am
Statistics: Posted by Amm0 — Fri Mar 29, 2024 3:08 am
Statistics: Posted by loloski — Fri Mar 29, 2024 3:00 am
Statistics: Posted by gotsprings — Fri Mar 29, 2024 2:40 am
Statistics: Posted by getfeus — Fri Mar 29, 2024 2:33 am
# model = RB750r2/interface bridgeadd auto-mac=no comment=defconf name=bridge vlan-filtering=yes/interface ethernetset [ find default-name=ether5 ] name=ether5access/interface pppoe-clientadd add-default-route=yes disabled=no interface=ether1 name=pppoe-out1 use-peer-dns=yes user=miuserpppoe/interface vlanadd interface=bridge name=vlan10-home vlan-ids=10add interface=bridge name=vlan20-guests vlan-ids=20add interface=bridge name=vlan30-iot vlan-ids=30/interface listadd comment=defconf name=WANadd comment=defconf name=LANadd name=TRUSTED/ip pooladd name=dhcp_pool10 ranges=192.168.10.2-192.168.10.254add name=dhcp_pool20 ranges=192.168.20.10-192.168.20.254add name-dhcp_poo30 ranges=192.168.30.2-192.168.30.254/ip dhcp-serveradd address-pool=dhcp_pool10 interface=vlan10-home name=server-homeadd address-pool=dhcp_pool20 interface=vlan20-guests name=server-guestsadd address-pool=dhcp_pool30 interface=vlan20-guests name=server-iot/interface bridge portadd bridge=bridge ingress-filtering=yes frame-types=admit-priority-and-untagged interface=ether2 pvid=10 comment="home PC"add bridge=bridge ingress-filtering=yes frame-types=admit-priority-and-untagged interface=ether3 pvid=10 comment="home PC"add bridge=bridge ingress-filtering=yes frame-types=admit-only-vlan-tagged interface=ether4 pvid=10 comment="trunk to haplite"/ip neighbor discovery-settingsset discover-interface-list=TRUSTED/interface bridge vlanadd bridge=bridge tagged=bridge,ether4 untagged=ether2,ether3 vlan-ids=10add bridge=bridge tagged=bridge,ether4 vlan-ids=20,30/interface list memberadd comment=defconf interface=pppoe-out1 list=WANadd interface=vlan10-home list=LANadd interface=vlan20-home list=LANadd interface=vlan30-home list=LANadd interface=vlan10-home list=TRUSTEDadd interface=ether5access list=TRUSTED/ip addressadd address=192.168.10.1/24 interface=vlan10-home network=192.168.10.0add address=192.168.20.1/24 interface=vlan20-guests network=192.168.20.0add address=192.168.30.1/24 interface=vlan30-iot network=192.168.30.0add address=192.168.55.1/24 interface=ether5access network=192.168.55.0/ip dhcp-clientadd comment=defconf interface=ether1 default-route=yes/ip dhcp-server networkadd address=192.168.10.0/24 dns-server=192.168.10.1 gateway=192.168.10.1add address=192.168.20.0/24 dns-server=192.168.20.1 gateway=192.168.20.1add address=192.168.30.0/24 dns-server=192.168.30.1 gateway=192.168.30.1/ip dnsset allow-remote-requests=yes servers=1.1.1.1/ip firewall address-list { using static set DHCP leases }add address=192.168.10.XY list=Authorized comment='admin pc wired"add address=192.168.10.AB list=Authorized comment='admin laptop wifi"add address=192.168.10.DE list=Authorized comment='admin smartphone wifi"add address=192.168.55.0/24 list=Authorized comment="config via ether5 "/ip firewall filteradd action=accept chain=input comment=\ "defconf: accept established,related,untracked" connection-state=\ established,related,untrackedadd action=drop chain=input comment="defconf: drop invalid" connection-state=\ invalidadd action=accept chain=input comment="defconf: accept ICMP" protocol=icmpadd action=accept chain=input comment=\ "defconf: accept to local loopback (for CAPsMAN)" dst-address=127.0.0.1add action=accept chain=input comment="admin access only" in-interface-list=TRUSTED src-address-list=Authorizedadd action=accept chain=input comment="user access to dns" in-interface-list=LAN dst-port=53 protocol=udpadd action=accept chain=input comment="user access to dns" in-interface-list=LAN dst-port=53 protocol=tcpadd action=drop chain=input comment="Drop all else" { add this rule LAST }+++++++++++++++++++++++++++++++++add action=fasttrack-connection chain=forward comment="defconf: fasttrack" \ connection-state=established,related hw-offload=yesadd action=accept chain=forward comment=\ "defconf: accept established,related, untracked" connection-state=\ established,related,untrackedadd action=drop chain=forward comment="defconf: drop invalid" \ connection-state=invalidadd action=accept chain=forward comment=internet traffic in-inteface-list=LAN out-interface-list=WAN add action=accept chain=forward comment="port fowarding" connection-nat-state=dstnat disabled=yes { enable if required }add action=drop chain=forward comment="Drop all else"/ip firewall natadd action=masquerade chain=srcnat out-interface-list=WAN/tool mac-serverset allowed-interface-list=NONE/tool mac-server mac-winboxset allowed-interface-list=TRUSTED# model = L41G-2axD/interface bridgeadd name=bridge1 vlan-filtering=yes/interface vlanadd interface=bridge name=vlan10-house vlan-ids=10/interface ethernetset [ find default-name=ether5 ] name=ether5access/interface wifiset [ find default-name=wifi1 ] channel.band=2ghz-ax .width=20/40mhz configuration.country=Spain .mode=ap .ssid=HOME-users name=wifi-homeset [ find default-name=wifi2 ] channel.band=2ghz-ax .width=20/40mhz configuration.country=Spain .mode=ap .ssid=GUEST-users name=wifi-guestsset master=wifi-guests configuration.country=Spain .mode=ap .ssid=IOTs name=wifi-iot/interface listadd name=TRUSTED/ip neighbor discovery-settingsset discover-interface-list=TRUSTED/interface bridge portadd bridge=bridge1 ingress-filtering=yes frame-types=admit-only-vlan-tagged interface=ether1 comment="trunk port from hex"add bridge=bridge1 ingress-filtering=yes frame-types=admit-priority-and-untagged interface=ether2 pvid=10add bridge=bridge1 ingress-filtering=yes frame-types=admit-priority-and-untagged interface=ether3 pvid=10add bridge=bridge1 ingress-filtering=yes frame-types=admit-priority-and-untagged interface=ether4 pvid=10add bridge=bridge1 ingress-filtering=yes frame-types=admit-priority-and-untagged interface=wifi-home pvid=10add bridge=bridge1 ingress-filtering=yes frame-types=admit-priority-and-untagged interface=wifi-guests pvid=20add bridge=bridge1 ingress-filtering=yes frame-types=admit-priority-and-untagged interface=wifi-iot pvid=30/interface bridge vlanadd bridge=bridge1 tagged=bridge1,ether1 untagged=ether2,ether3,ether4,wifi-home vlan-ids=10add bridge=bridge tagged=bridge untagged=wifi-guests vlan-ids=20add bridge=bridge tagged=bridge untagged=wifi-iot vlan-ids=30/interface list membersadd interface=vlan10-house list=TRUSTEDadd interface=ether5access list=TRUSTED/ip addressadd address=192.168.10.X/24 interface=vlan10-house network=192.168.10.0 comment="static setting of haplite IP address"/ip dnsset allow-remote-requests=yes servers=192.168.10.1/ip dhcp-clientadd interface= disabled=yes/ip routeadd dst-address=0.0.0.0/0 gateway=192.168.10.1/tool mac-serverset allowed-interface-list=NONE/tool mac-server mac-winboxset allowed-interface-list=TRUSTED
Statistics: Posted by anav — Fri Mar 29, 2024 2:20 am
I tested with (192.168.88.1) but I still have the same issue.127.0. 0.1 is a loopback IP address that is reserved for the local host or computer or router.
Yes it's run on my laptop, how to run it on MT router.NtRadPing is probably run on a laptop, not on the MT router.
it's done (see attachment).For MT router check the firewall setting, to allow the Radius ports 1812 and 1813 as input.
Statistics: Posted by menyarito — Fri Mar 29, 2024 2:15 am
Statistics: Posted by emunt6 — Fri Mar 29, 2024 2:04 am
Statistics: Posted by jaclaz — Fri Mar 29, 2024 1:51 am
Statistics: Posted by stef70 — Fri Mar 29, 2024 1:47 am
Statistics: Posted by AtomikRoach — Fri Mar 29, 2024 1:45 am
Statistics: Posted by Nullcaller — Fri Mar 29, 2024 1:40 am
Statistics: Posted by Nullcaller — Fri Mar 29, 2024 1:21 am
Statistics: Posted by Nullcaller — Fri Mar 29, 2024 1:19 am
/interface bridgeadd comment=defconf name=bridge vlan-filtering=yes/interface bridge portadd bridge=bridge comment=defconf interface=ether2add bridge=bridge comment=defconf interface=ether3add bridge=bridge comment=defconf interface=ether4add bridge=bridge comment=defconf interface=ether5/interface bridge vlanadd bridge=bridge tagged=bridge,ether2,ether3 vlan-ids=10
Statistics: Posted by fibracapi — Fri Mar 29, 2024 1:00 am
Statistics: Posted by fibracapi — Fri Mar 29, 2024 12:58 am
Statistics: Posted by f008600 — Fri Mar 29, 2024 12:56 am
# 2024-03-29 04:40:50 by RouterOS 7.14# software id = M8KE-V5ID## model = RB750Gr3# serial number = HD2******AS/interface bridgeadd name=Bridge-LAN/interface ethernetset [ find default-name=ether1 ] name=WAN1set [ find default-name=ether2 ] name=WAN2/interface wireguardadd listen-port=13231 mtu=1420 name=wireguard1/interface listadd name=WAN/interface wireless security-profilesset [ find default=yes ] supplicant-identity=MikroTik/ip hotspot profileset [ find default=yes ] html-directory=hotspot/ip pooladd name=dhcp_pool0 ranges=192.168.13.100-192.168.13.254add name=dhcp_pool1 ranges=192.168.14.100-192.168.14.105/ip dhcp-serveradd address-pool=dhcp_pool0 interface=Bridge-LAN lease-time=1d name=dhcp1add address-pool=dhcp_pool1 interface=ether5 lease-time=5d name=dhcp2/routing tableadd disabled=no fib name=via-WG1/interface bridge portadd bridge=Bridge-LAN interface=ether3add bridge=Bridge-LAN interface=ether4/interface list memberadd interface=WAN1 list=WANadd interface=WAN2 list=WAN/interface wireguard peersadd allowed-address=0.0.0.0/0 endpoint-address=5.172.1**.95 endpoint-port=\ 13231 interface=wireguard1 persistent-keepalive=25s public-key=\ "ySD/xFuT**********************xyT6wE="/ip addressadd address=192.168.13.1/24 interface=Bridge-LAN network=192.168.13.0add address=192.168.1.99/24 interface=WAN1 network=192.168.1.0add address=192.168.2.98/24 interface=WAN2 network=192.168.2.0add address=192.168.32.20/24 interface=wireguard1 network=192.168.32.0add address=192.168.14.1/24 interface=ether5 network=192.168.14.0/ip dhcp-clientadd disabled=yes interface=WAN1add disabled=yes interface=WAN2/ip dhcp-server networkadd address=192.168.13.0/24 dns-server=192.168.32.1 gateway=192.168.13.1add address=192.168.14.0/24 gateway=192.168.14.1/ip dnsset allow-remote-requests=yes servers=1.1.1.1/ip firewall mangleadd action=change-mss chain=forward new-mss=1380 out-interface=wireguard1 \ passthrough=yes protocol=tcp tcp-flags=syn tcp-mss=1381-65535/ip firewall natadd action=masquerade chain=srcnat out-interface-list=WANadd action=masquerade chain=srcnat out-interface=wireguard1/ip routeadd check-gateway=ping disabled=no distance=1 dst-address=0.0.0.0/0 gateway=\ 192.168.1.1 pref-src="" routing-table=main scope=30 suppress-hw-offload=\ no target-scope=10add disabled=no distance=5 dst-address=0.0.0.0/0 gateway=192.168.2.1 \ pref-src="" routing-table=main scope=30 suppress-hw-offload=no \ target-scope=10add disabled=no dst-address=0.0.0.0/0 gateway=wireguard1 routing-table=\ via-WG1 suppress-hw-offload=no/routing ruleadd action=lookup-only-in-table disabled=yes src-address=192.168.13.0/24 \ table=mainadd action=lookup disabled=no src-address=192.168.13.0/24 table=via-WG1/system clockset time-zone-name=Europe/Athens/system noteset show-at-login=no
Statistics: Posted by LeoNaXe — Fri Mar 29, 2024 12:55 am
That's a generic problem for a LOT of brands and highly depends on the quality of the used USB device.
Same with bluetooth.
It all operates in the same 2 - 2.5 GHz-range, you see.
No way a firmware upgrade can fix that. That's a physical problem.
Statistics: Posted by Nullcaller — Fri Mar 29, 2024 12:49 am
Statistics: Posted by jaclaz — Fri Mar 29, 2024 12:21 am
Statistics: Posted by Nullcaller — Fri Mar 29, 2024 12:19 am
Statistics: Posted by emunt6 — Fri Mar 29, 2024 12:18 am
Statistics: Posted by sebus46 — Fri Mar 29, 2024 12:12 am