Community discussions

MikroTik App

Search found 55 matches

by nzjimmy
Sun Apr 14, 2024 8:39 am
Forum: The User Manager
Topic: Hotspot with PayPal problems
Replies: 0
Views: 617

Hotspot with PayPal problems

Hello, I had a bunch of sites working well with UM Hotspot using PayPal for many years, but then it suddenly stopped. Whilst trying to fix it I got the SSL working but never managed to fix the payment issue properly. I spent many hours trying to sort and have failed. It's the only problem i've never...
by nzjimmy
Wed Aug 24, 2022 7:51 am
Forum: General
Topic: IPSec crashes winbox
Replies: 3
Views: 394

Re: IPSec crashes winbox

Oh sure, sorry. I'm on a mac using Winbox 3.16 and ROS is 6.48.5 I though if it was a Winbox error i'd not have got the error message, as this looks to be a legit error. The Winbox locking up could be of course - I assumed it was ROS issue seeing as enabling one of the existing rules gets an error. ...
by nzjimmy
Tue Aug 23, 2022 7:32 am
Forum: General
Topic: IPSec crashes winbox
Replies: 3
Views: 394

IPSec crashes winbox

Hello, When I try to enable one of my IPSec policies, it say's "peer not set" and won't allow it. If I click "add" button to make a new policy, Winbox crashes. Ive looked at next stable release info and there's nothing that looks like it would address this. I only have one peer, ...
by nzjimmy
Tue Aug 02, 2022 1:19 am
Forum: General
Topic: VLANs on a Bridge instead of Eth Interface?
Replies: 10
Views: 5033

Re: VLANs on a Bridge instead of Eth Interface?

Thanks so much, Sindy!

I love Mikrotik.

Cheers!
by nzjimmy
Mon Aug 01, 2022 10:47 am
Forum: General
Topic: VLANs on a Bridge instead of Eth Interface?
Replies: 10
Views: 5033

Re: VLANs on a Bridge instead of Eth Interface?

Thanks, Sindy! So, just to confirm, there's no need to put these 200VLANs onto a bridge, to save CPU? If they're on an eth interface it will be the CPU processing them, so wouldn't it make sense to put them on a bridge and make that bridge the special one? Sorry if you've answered this already, I ju...
by nzjimmy
Mon Aug 01, 2022 4:03 am
Forum: General
Topic: VLANs on a Bridge instead of Eth Interface?
Replies: 10
Views: 5033

Re: VLANs on a Bridge instead of Eth Interface?

One thing I don't understand is why that apartment router, when updated, created a bridge and put all the VLANs on it. Previously all VLANs were directly on an ethernet interface, just like I have my WISP setup now. I wonder if it was because there were two LAN ports, with the old 'master port' func...
by nzjimmy
Mon Aug 01, 2022 2:04 am
Forum: General
Topic: VLANs on a Bridge instead of Eth Interface?
Replies: 10
Views: 5033

Re: VLANs on a Bridge instead of Eth Interface?

Thank you all so much, appreciate the info. I'm hoping very much that LACP isn't going to cause such problems, and that the LACP algorithm will distribute traffic evenly, rather than putting all VLANs down one side. I seem to learn OK from videos so will watch any posted on these two topics. Thanks ...
by nzjimmy
Sun Jul 31, 2022 7:49 am
Forum: General
Topic: VLANs on a Bridge instead of Eth Interface?
Replies: 10
Views: 5033

VLANs on a Bridge instead of Eth Interface?

Hello, I have a small WISP (200 homes) and use VLANs, with one per customer. I use the switches to keep broadcast domains smaller to avoid typical L2 WISP problems. It works fine. My question is; I remember a few years back there was a change with Mikrotik OS, and [at an apartment complex site] all ...
by nzjimmy
Thu Nov 11, 2021 6:52 am
Forum: General
Topic: First 100Mbps WAN1, next 100Mbps WAN2
Replies: 5
Views: 1855

Re: First 100Mbps WAN1, next 100Mbps WAN2

Hello again, I just finished building a WISP for 50 customers but 200 have joined. I've started upgrading backhauls and everything is going great. I need some help employing Tomas' script for this site as i'm upgrading to 2Gb backhauls and want to get this additional capacity through to customers. T...
by nzjimmy
Thu Nov 11, 2021 6:35 am
Forum: General
Topic: My wisp network design is strange?
Replies: 3
Views: 1587

Re: My wisp network design is strange?

Sorry I never replied. I built the WISP and 200 customers joined : )
by nzjimmy
Mon Jun 21, 2021 1:34 am
Forum: General
Topic: hAP AC2 Wifi fault
Replies: 5
Views: 1066

Re: hAP AC2 Wifi fault

Lol you sound like a nob head. Ive been building wifi networks for 10 years - this is not a network, its one router in a small house in the country. This is an old lady with once device - an iPhone12. I turn it up full as she likes to facetime her friends from the garden, and only 2.4 up full knacke...
by nzjimmy
Sun Jun 20, 2021 8:26 am
Forum: General
Topic: hAP AC2 Wifi fault
Replies: 5
Views: 1066

hAP AC2 Wifi fault

Hi everyone, On of my customers complained of poor wifi performance - on checking their router i'm watching their device's (iPhone 12) rssi switching from -64 to -88 over and over, and sometimes dropping altogether. They are not moving their device while this is happening. They said it happens on al...
by nzjimmy
Wed Sep 16, 2020 1:14 am
Forum: The User Manager
Topic: SSL handshake error using PayPal starting 10th September
Replies: 6
Views: 7352

Re: SSL handshake error using PayPal starting 10th September

Thank you for such a quick fix, Mikrotik.
by nzjimmy
Tue Sep 15, 2020 7:50 am
Forum: The User Manager
Topic: PayPal payments failing
Replies: 3
Views: 6295

Re: PayPal payments failing

Hi saburtwo,

thanks for the reply. I have updated to 6.48beta35 and issue still there. Can you confirm its resolved for you? If so, which fw did you load?

Thank you

James
by nzjimmy
Tue Sep 15, 2020 6:45 am
Forum: The User Manager
Topic: SSL handshake error using PayPal starting 10th September
Replies: 6
Views: 7352

Re: SSL handshake error using PayPal starting 10th September

Hi,

Thanks for the info - Did you mean beta38 or beta 35?

I've upgraded to beta 6.48.beta35 and still have the PayPal issue. Am I missing something?

Cheers. James
by nzjimmy
Mon Sep 14, 2020 1:15 am
Forum: The User Manager
Topic: PayPal payments failing
Replies: 3
Views: 6295

PayPal payments failing

Hello, As of 10/09 NZ time all Paypal payments via Usermanager are failing. The error is PayPal - ssl connection error: handshake failed: unable to get local issuer certificate (6) Ive never used an SSL cert as customer didn't care about security warning in browser. I see others that do have cert ar...
by nzjimmy
Mon Sep 14, 2020 1:04 am
Forum: The User Manager
Topic: SSL handshake error using PayPal starting 10th September
Replies: 6
Views: 7352

Re: SSL handshake error using PayPal starting 10th September

I have the same issue. Never had an SSL cert to start with and was thinking maybe it was time to ad one but, you have one and the issue is still happening?

Anyone else having troubles?

Cheers, James
by nzjimmy
Fri Apr 26, 2019 12:54 pm
Forum: General
Topic: Powerbox Pro as PoE VLAN Trunk Switch
Replies: 2
Views: 1371

Powerbox Pro as PoE VLAN Trunk Switch

Hello, I have a powerbox pro that needs to run as a L2 poe switch with every port acting as a trunk port for a handful of vlans. I do not need any ports untagged and every port can be the same. I can achieve this by adding the same vlan interfaces to all ports, and bridging but I know this is the wr...
by nzjimmy
Sun Jan 20, 2019 4:31 am
Forum: General
Topic: My wisp network design is strange?
Replies: 3
Views: 1587

My wisp network design is strange?

Hello, I'm looking for feedback on my network design because I want it to be as good as I can make it, but think I may be making it strange. I see no other way of achieving what I want, but you may?! Core mt router -> ptp link -> ptp link -> ptp link -> ptp link -> AP - - - - > subscribers. At each ...
by nzjimmy
Sun Dec 02, 2018 9:43 pm
Forum: Beginner Basics
Topic: One /25 public subnet for 100 vlans without 1:1 nat?
Replies: 3
Views: 1092

Re: One /25 public subnet for 100 vlans without 1:1 nat?

What method of layers2 isolation are you referring to? More details would be good.

Thank you
by nzjimmy
Sun Dec 02, 2018 3:05 am
Forum: Beginner Basics
Topic: One /25 public subnet for 100 vlans without 1:1 nat?
Replies: 3
Views: 1092

One /25 public subnet for 100 vlans without 1:1 nat?

Hello, Can one subnet provide addressing for many vlans without 1:1 natting? I want one vlan per customer's CPE router, but instead of each vlan having its own /30, just one /25 is used across all vlans. The reason I want to do it this way is to avoid the use of PPPoE but still keep customer's traff...
by nzjimmy
Thu Sep 27, 2018 4:15 am
Forum: General
Topic: PCQ the VLANs
Replies: 15
Views: 4263

Re: PCQ the VLANs

A /23 for everyone is must be then - my understanding of queuing is limited at best.

Thanks again XVO and Sindy
by nzjimmy
Wed Sep 26, 2018 6:50 am
Forum: General
Topic: PCQ the VLANs
Replies: 15
Views: 4263

Re: PCQ the VLANs

XVO was right, I just changed the masks from 32 to 27 in queue types and it worked as desired, sweet. As much as i'd like to say solved, not quite yet. I have one subnet (hotspot) that is a /23 and the rest are all /27. Yes I could make them all /23 but that's yuk and not proper. Anyone have any ide...
by nzjimmy
Wed Sep 26, 2018 12:01 am
Forum: General
Topic: PCQ the VLANs
Replies: 15
Views: 4263

Re: PCQ the VLANs

Thanks for your time Sindy, and thanks xvo for the possible solution. I will do testing and report back.

Thank you
by nzjimmy
Tue Sep 25, 2018 7:23 am
Forum: General
Topic: PCQ the VLANs
Replies: 15
Views: 4263

Re: PCQ the VLANs

Hi Sindy, Thanks for such a detailed explanation. I think I actually understand you now, correct me if I am wrong - each vlan (with multiple hosts) will be presented (to queuing) as one IP address, then all the vlan's IPs will be queued in the same way the hosts IPs currently are PCQ'ed? The IPIP tu...
by nzjimmy
Thu Sep 20, 2018 11:44 pm
Forum: General
Topic: PCQ the VLANs
Replies: 15
Views: 4263

Re: PCQ the VLANs

Thank you Sindy. I think it would be OK to just balance the bandwidth between VLANs and then let the hosts on each VLAN fight for available bandwidth, as the goal is to replicate a typical one circuit per apartment setup so , just like it would be if each had their own connection/router. Having said...
by nzjimmy
Thu Sep 20, 2018 12:14 pm
Forum: General
Topic: PCQ the VLANs
Replies: 15
Views: 4263

Re: PCQ the VLANs

Hi Sindy, Sorry I never responded. I am revisiting this now as I must find a solution. Would you consider the method you speak of regarding src-nat to be a work-around or best practice? I must do it the 'proper' way as I will be rolling it out across many sites soon and can't let my lack of knowledg...
by nzjimmy
Thu Jul 05, 2018 7:02 am
Forum: The User Manager
Topic: Paypal
Replies: 25
Views: 14753

Re: Paypal

Hi,

Thought i'd post I have updated to the latest RC and everything seems OK on CCR1009, AH1100x2 and 2011.

Cheers
by nzjimmy
Tue Jul 03, 2018 7:30 am
Forum: The User Manager
Topic: Paypal
Replies: 25
Views: 14753

Re: Paypal

The next RC that will be released, will contain the required changes for Paypal to work again.
Is there a date for this? Or at least an estimated date?
by nzjimmy
Sat Jun 30, 2018 12:42 am
Forum: The User Manager
Topic: Paypal
Replies: 25
Views: 14753

Re: Paypal

The next RouterOS release will add TLS 1.2 and fix this issue. Normis, do you have any idea when this will be? Will UM need to be running https as well or will http still work for Usermanager? I have hundreds of customers that can no longer purchase accounts, is there anything I can do to remedy th...
by nzjimmy
Sun Jun 24, 2018 11:49 am
Forum: Beginner Basics
Topic: Public subnet routed through public ip
Replies: 12
Views: 6891

Re: Public subnet routed through public ip

Thanks Sob, I will do some testing to see it working, then it will make sense. I do have another site setup with second router with public IP as you describe - a /29 with WAN bridge on R1 for R2 and gateway for both at ISP. This current site had to be done this way as ISP accidentally provided much ...
by nzjimmy
Sun Jun 24, 2018 1:57 am
Forum: Beginner Basics
Topic: Public subnet routed through public ip
Replies: 12
Views: 6891

Re: Public subnet routed through public ip

Thank you Sob, very helpful. I do however lose understanding with the point to point addressing, I have not done addressing where the network ID is in a different subnet from IP address. I need to understand why it works, and why any random IP works for the gateway for all. All private addresses are...
by nzjimmy
Sat Jun 23, 2018 2:20 am
Forum: Beginner Basics
Topic: Public subnet routed through public ip
Replies: 12
Views: 6891

Re: Public subnet routed through public ip

Hello, I have an additional /30 public subnet routed through an existing /30 connection to ISP in the same way and wonder if you can help me also? My goal is to have a second router public facing, with a WAN IP from the new subnet. I have this working by adding the new subnet to an interface on R1 a...
by nzjimmy
Mon Apr 30, 2018 7:07 am
Forum: General
Topic: PCQ the VLANs
Replies: 15
Views: 4263

Re: PCQ the VLANs

Thanks Sindy, unfortunately that went over my head.

I understand how to packet mark. All vlans are configured like 10.200.112.0/27 = vlan 112 etc. Can you break it down more or give me an example?

Thank you
by nzjimmy
Mon Apr 30, 2018 7:01 am
Forum: The User Manager
Topic: Backup via ssh
Replies: 0
Views: 4316

Backup via ssh

Hello clever people, I need to backup UM database every night from a bunch of routers to a Ubuntu server. I have been doing this via ftp to a windows box but it is not secure and the windows box is now a Ubuntu box. All routers are in different locations and are public facing, as is the server. Any ...
by nzjimmy
Sun Apr 29, 2018 4:27 am
Forum: General
Topic: PCQ the VLANs
Replies: 15
Views: 4263

PCQ the VLANs

Hello, I need to configure my queues in such a manner as to achieve an equal distribution of available bandwidth between a bunch of vlans. I have 15 vlans that each represent a residential unit, plus one more vlan that is a mikrotik hotspot. Current I am using a simple queue with pcq to evenly distr...
by nzjimmy
Sun Apr 08, 2018 11:24 am
Forum: General
Topic: Two routers one service
Replies: 13
Views: 2607

Re: Two routers one service

Really? Nice tip. Thanks :)
by nzjimmy
Mon Apr 02, 2018 12:12 pm
Forum: General
Topic: Two routers one service
Replies: 13
Views: 2607

Re: Two routers one service

Update: The ISP ended up changing the current /30 to a /29 rather than routing another subnet down the existing /30. To get the result I wanted I applied one of addresses to eth1, created a bridge and added eth1 and eth2 to the bridge. Then connected the second router to eth2 and applied one of the ...
by nzjimmy
Thu Mar 08, 2018 9:52 am
Forum: General
Topic: Two routers one service
Replies: 13
Views: 2607

Re: Two routers one service

That is an interesting option. I wonder what RB#2 WAN settings would be though seeing as every address in the subnet will be routed to me ... What would the gateway address be? and would WAN be a /32?

Thanks
by nzjimmy
Thu Mar 08, 2018 1:01 am
Forum: General
Topic: Two routers one service
Replies: 13
Views: 2607

Re: Two routers one service

Thanks people, I think I should clarify the existing connection more, and how the new subnet will be available to use. The existing service is dedicated dark-fibre 400Mbps with static /30 addressing. No PPPoE or DHCP. Its is a routed connection where the gateway address is one of the 3 addresses in ...
by nzjimmy
Wed Mar 07, 2018 9:45 am
Forum: General
Topic: Two routers one service
Replies: 13
Views: 2607

Re: Two routers one service

Thanks for the suggestion. I do wonder what the second router's config would be though, would its WAN address be one of the routed publics as a /32? and its gateway would be ??

Can't be that simple surely ;)
by nzjimmy
Wed Mar 07, 2018 12:16 am
Forum: General
Topic: Two routers one service
Replies: 13
Views: 2607

Two routers one service

Hello, I must configure a second MT router with its own public IP and connect via the first MT router. I do not want to use 1:1 NAT as I need the second router to be UPnP capable, just as the first router is. The current connection is routed from ISP as a /30 and I can request them to route an addit...
by nzjimmy
Mon Jan 15, 2018 1:16 am
Forum: The User Manager
Topic: Locked iPhone means no notifications - MT Hotspot [SOLVED]
Replies: 7
Views: 15487

Re: Locked iPhone means no notifications - MT Hotspot [SOLVED]

Ok I have an update. I believe the problem not to be caused by MT Hotspot. Issue now fixed by the following simple steps. - 'reset network settings' on iPhone - connect to hotspot network FIRST and log into hotspot. This resolved the issue. I know it seems simple, and it is. Previously I was connect...
by nzjimmy
Sat Dec 30, 2017 12:39 pm
Forum: The User Manager
Topic: Locked iPhone means no notifications - MT Hotspot [SOLVED]
Replies: 7
Views: 15487

Re: Locked iPhone means no notifications - MT Hotspot [SOLVED]

I apologise for not being clear in my original post - when I said "bypass" the hotspot, I actually meant not employing the hotspot at all. The test was run using MT router with UBNT UAP. Two vlans on router associate with two ssids on AP. First vlan interface is for hotspot, second vlan is...
by nzjimmy
Thu Dec 28, 2017 3:05 am
Forum: The User Manager
Topic: Locked iPhone means no notifications - MT Hotspot [SOLVED]
Replies: 7
Views: 15487

Re: Locked iPhone means no notifications - MT Hotspot [SOLVED]

Users are not logged out of hotspot when this problem occurs. Keep-alives also fail..

Problem also occurs if phone is added to bypass list and can browse fine without traditional authentication steps.

Cheers man
by nzjimmy
Thu Dec 28, 2017 2:14 am
Forum: The User Manager
Topic: Locked iPhone means no notifications - MT Hotspot [SOLVED]
Replies: 7
Views: 15487

Locked iPhone means no notifications - MT Hotspot [SOLVED]

Hello, When using MT Hotspot, as soon as an iPhone goes to sleep (about 10 seconds after locking) iMessages and notifications fail. Once the screen is touched and phone wakes, notifications and messages arrive. The phone is not logged-out during the time when notifications fail. Using hotspot - I pi...
by nzjimmy
Tue Nov 28, 2017 8:47 am
Forum: General
Topic: LAN host cannot browse until DHCP lease removed/reset
Replies: 3
Views: 971

Re: LAN host cannot browse until DHCP lease removed/reset

Hey man thanks for reply, I have previously checked all those things and everything looks fine. The hotspot vlan has /23 with plenty of addresses left. There are a bunch of /28 vlans that have not yet had this issue, although there are not as many hosts compared to the hotspot vlan so sample size mi...
by nzjimmy
Tue Nov 28, 2017 6:45 am
Forum: General
Topic: LAN host cannot browse until DHCP lease removed/reset
Replies: 3
Views: 971

Re: LAN host cannot browse until DHCP lease removed/reset

Any ideas anyone? Went to site today and both my iPhone and macbook got hotspot dhcp addresses but couldn't login/browse or even ping gateway. How is it possible to be connected to wifi network, have a valid dhcp and router address but not be able to ping the gateway?? I removed both my host address...
by nzjimmy
Sun Nov 26, 2017 11:53 pm
Forum: General
Topic: LAN host cannot browse until DHCP lease removed/reset
Replies: 3
Views: 971

LAN host cannot browse until DHCP lease removed/reset

Hello, I have a problem I cannot solve myself and need your help please - Every day or two I get a call from a user saying they cannot browse the Internet. When I remove their LAN IP from DHCP lease list, they get a new IP and the problem is gone, until next time. The user can (but not always) get t...
by nzjimmy
Mon Oct 16, 2017 11:59 pm
Forum: Scripting
Topic: FTP backup via IPSec tunnel
Replies: 4
Views: 1488

Re: FTP backup via IPSec tunnel

Thank you for the suggestion but I would need more information to get this working, and automated ... The wiki was empty

Cheers
by nzjimmy
Sun Oct 08, 2017 1:16 pm
Forum: Scripting
Topic: FTP backup via IPSec tunnel
Replies: 4
Views: 1488

Re: FTP backup via IPSec tunnel

Thank you for response andriys. Yes policy-based IPsec tunnel. If i removed the /tool fetch and entered details manually to each necessay line could that solve the issue? And if so, could you possibly show me an example of what it would look like with source address included? If the above is not pos...
by nzjimmy
Sat Oct 07, 2017 1:28 am
Forum: Scripting
Topic: FTP backup via IPSec tunnel
Replies: 4
Views: 1488

FTP backup via IPSec tunnel

Hello, I am using a script to backup router and user-manager every day but cannot find a way to chose the existing IPSec tunnel for securely uploading this files to ftp server. The tunnel is working in both directions, can access devices on each LAN in both directions.. The tunnel exists is between ...
by nzjimmy
Sat Oct 07, 2017 1:13 am
Forum: General
Topic: First 100Mbps WAN1, next 100Mbps WAN2
Replies: 5
Views: 1855

Re: First 100Mbps WAN1, next 100Mbps WAN2

Thanks Tomas!
by nzjimmy
Wed Oct 04, 2017 10:52 pm
Forum: General
Topic: First 100Mbps WAN1, next 100Mbps WAN2
Replies: 5
Views: 1855

Re: First 100Mbps WAN1, next 100Mbps WAN2

Great presentation, this is exactly what I needed. Thank you.

Is it possible for me to see the slides in this presentation? It would be a great help.
by nzjimmy
Wed Oct 04, 2017 12:43 am
Forum: General
Topic: First 100Mbps WAN1, next 100Mbps WAN2
Replies: 5
Views: 1855

First 100Mbps WAN1, next 100Mbps WAN2

Hello, my first post ... am newbie Is there a way to route all traffic up to 100Mbps to come from WAN1 and the rest from WAN2? Also, if WAN1 goes down all traffic to route through WAN2? I have been looking at connection bytes with mangel rules but cannot find any posts where this is being done. Main...