Community discussions

MikroTik App

Search found 466 matches

  • 1
  • 2
by mozerd
Sat Oct 31, 2020 2:40 pm
Forum: Wireless Networking
Topic: Wireless MESH Advice
Replies: 2
Views: 121

Re: Wireless MESH Advice

Nice thing about Mikrotik (as you probably know) you can use ANY Mikrotik device for such a system and play around/extend it as you want. But in overall Wifi throughput you will not be able , today with current ROS, to reach Netgear Wifi throughput. @WeWiNet, I tip my hat to YOU .... outstanding re...
by mozerd
Sat Oct 24, 2020 5:13 pm
Forum: General
Topic: Network config help on HEX S & Cisco Switches.
Replies: 32
Views: 997

Re: Network config help on HEX S & Cisco Switches.

Out of curiousity Mozerd, at home do you run MT with mOAB or are you using CISCO with UTM. What do you recommend for your clients.............. ie what threshold do you insist they move to CISCO At home I run MikroTik with MOAB For my clients -- majority is MikroTik + MOAB Threshold = level of clie...
by mozerd
Sat Oct 24, 2020 3:07 pm
Forum: General
Topic: Network config help on HEX S & Cisco Switches.
Replies: 32
Views: 997

Re: Network config help on HEX S & Cisco Switches.

To those who have actually used these type of subscription features, do you feel they are worth the price, and which subscription features do you use? If you have used them and are now no longer paying for the features, what made you change? @Sindy provided a very nice description of Layer 7 work :...
by mozerd
Sat Oct 24, 2020 1:13 pm
Forum: General
Topic: Network config help on HEX S & Cisco Switches.
Replies: 32
Views: 997

Re: Network config help on HEX S & Cisco Switches.

Thats okay Mozerd is going to pay for them!! ;-P One should be held responsible for promises of 'wow' security!!!!!!!! Yes YOU are 100% correct :-) Because 92% of Internet Traffic today is encrypted .. malware, virus and Ransomewhere hides very easily -- and the only way to detect that is to decryp...
by mozerd
Fri Oct 23, 2020 2:42 pm
Forum: Announcements
Topic: v6.47.6 [stable] is released!
Replies: 39
Views: 6502

Re: v6.47.6 [stable] is released!

On my CCR1009-7G-1C-1S+ updating from 6.47.4 to 6.47.6 went without one hicup On my CRS326-24G-2S+ updating from 6.47.1 [long term] to 6.47.6 [stable] 1. software update .... at the 2 minute mark -- after the update -- could not login into Winbox 2. BUT waiting to the 3 minute mark succeeded in logi...
by mozerd
Fri Oct 23, 2020 2:29 pm
Forum: General
Topic: Network config help on HEX S & Cisco Switches.
Replies: 32
Views: 997

Re: Network config help on HEX S & Cisco Switches.

RV340 is severely limited and handicapped - only a dual wan router, NOT multiwan ;-P
@anav :-)
@Bionic does not need multi-wan but Bionic does need dual wan :-) PLUS Bionic would benefit greatly from the security mechanisms that come with the Cisco device.
by mozerd
Fri Oct 23, 2020 2:55 am
Forum: General
Topic: Network config help on HEX S & Cisco Switches.
Replies: 32
Views: 997

Re: Network config help on HEX S & Cisco Switches.

Have you had an opportunity to use the Cisco Business Dashboard? Yes I have .... that’s why I stated outstanding. Btw, it’s really not a fair comparison between the RB4011 and the RV340 ... the Cisco is a security appliance plus it does near line rate NAT +++ Anyway, this is MikroTik forum so let’s...
by mozerd
Thu Oct 22, 2020 8:24 pm
Forum: General
Topic: Network config help on HEX S & Cisco Switches.
Replies: 32
Views: 997

Re: Network config help on HEX S & Cisco Switches.

So to better prepare myself for the future what Mikrotik router would you all recommend? Or would it be better to go with a cisco router since all the other equipment I am using is cisco, and be able to use there single pane of glass managment and monitoring solution called Cisco Business Dashboard...
by mozerd
Wed Oct 21, 2020 8:14 pm
Forum: General
Topic: Network config help on HEX S & Cisco Switches.
Replies: 32
Views: 997

Re: Network config help on HEX S & Cisco Switches.

If you have practical experience that says otherwise, that is more valuable. Many Home networks are far more demanding than Business networks by a country mile :-) There are some niche business networks that require POWER but for the most part the majority of office environments are as boring as wa...
by mozerd
Wed Oct 21, 2020 7:07 pm
Forum: General
Topic: Network config help on HEX S & Cisco Switches.
Replies: 32
Views: 997

Re: Network config help on HEX S & Cisco Switches.

One connection is different from many connections and the CPU and ram accordingly is designed for a home environment and you have something far greater in the planning. @anav, I am using the hEX S for some of my business clients [30 people] and they all are very pleased. I 4 1 do not believe that t...
by mozerd
Fri Oct 16, 2020 3:44 pm
Forum: Wireless Networking
Topic: Sonos with Capsman not working
Replies: 17
Views: 697

Re: Sonos with Capsman not working

The safe move... Like I stated before and have done at home for around 10 years... Get a Boost and wire it to your switch. Setup all Sonos to use SonosNet. You will get YEARS of uptime out of a system like this. I have had to pull the power for cause 2 times in 10 years. I used to use the first ZP ...
by mozerd
Fri Oct 09, 2020 3:07 pm
Forum: Wireless Networking
Topic: WIFI 6 Roadmap
Replies: 35
Views: 23331

Re: WIFI 6 Roadmap

. Mikrotik can route... But she it comes to wifi... It's an "also ran". @gotsprings, you are being very kind ..... In the modern world -- for the G7 nations -- and in the wireless realm MikroTik wireless is unable to compete. But perhaps its existing product lineup satisfies its current supply chai...
by mozerd
Sat Oct 03, 2020 5:26 pm
Forum: Wireless Networking
Topic: What MT boxes can support spectral scan? - Cheap spectrum analyzer instead? [SOLVED]
Replies: 23
Views: 1297

Re: What MT boxes can support spectral scan? - Cheap spectrum analyzer instead? [SOLVED]

For the wireless pro and Spectral Scanning my suggestion is The Chanalyzer Essential Bundle - Professional Spectrum Analysis $900.00 https://shop.metageek.com/products/chanalyzer-essential Chanalyzer Essential is a deep dive into spectrum analysis. Monitor your 2.4 and 5GHz WiFi networks in real tim...
by mozerd
Wed Sep 23, 2020 4:59 pm
Forum: Announcements
Topic: Newsletter 97 (September 2020)
Replies: 86
Views: 13667

Re: Newsletter 97 (September 2020)

Finally you decided to add external antennas to routers, what happened to all the talk how they are not needed you where tell us all this years when we complained about poor signal? :D Sush! Don't bring this out, they might decide not to do it for future devices. Antenna designs for MIMO systems A ...
by mozerd
Sun Sep 20, 2020 10:51 pm
Forum: General
Topic: hAP ac2 over heated vent holes mod
Replies: 16
Views: 952

Re: hAP ac2 over heated vent holes mod

Why not slide the board out of the case?
Actually a DARN good idea .... would solve the heat [HOT] issue .... but very ugly :-) If mounted on a wood pedestal might just be very attractive. lol
by mozerd
Sat Sep 19, 2020 1:10 pm
Forum: General
Topic: hAP ac2 external antenna mod
Replies: 9
Views: 846

Re: hAP ac2 external antenna mod

I have place it at the middle of the house as a backup fail over WiFi AP for my main Asus RT-AC1300UHP WiFi AP ... Placing the hAPac2 in the middle of your house is excellent ... also consider to give it height ... as much as you possible can ... the higher it is the better will be the dispersion [...
by mozerd
Fri Sep 18, 2020 2:35 pm
Forum: General
Topic: hAP ac2 external antenna mod
Replies: 9
Views: 846

Re: hAP ac2 external antenna mod

IMO, if the hAP AC2 is a Qualcomm MIMO device and truly supports all that MIMO offers then changing antennas is a competes waste of time, money and intellectual energy ... WHY? You have to understand MIMO and the very special algorithms that are specifically tuned for the antennas and radios in play...
by mozerd
Mon Sep 14, 2020 3:02 pm
Forum: RouterOS v7 BETA
Topic: IDS / IPS Package
Replies: 3
Views: 589

Re: IDS / IPS Package

I agree that RouterOS is far superior to pfSense and especially because of Winbox ... ROS L7 is very limited in its capability and very CPU intensive and most capable techs would not consider that an effective IDS/IPS mechanism .... IDS/IPS requires proper decryption because in the current world 90%...
by mozerd
Sat Sep 12, 2020 5:21 am
Forum: RouterOS v7 BETA
Topic: IDS / IPS Package
Replies: 3
Views: 589

Re: IDS / IPS Package

MikroTik ROS is currently not able to do DPI [deep packet inspection] and I do not know if DPI is planned for v7 plus to do DPI properly would require a powerful CHIP [ASIC] ... currently looking at the Tik hardware platform I do not see anything that can possible do it .... would require new class ...
by mozerd
Fri Sep 11, 2020 7:37 pm
Forum: Beginner Basics
Topic: Most stable version for CCR?
Replies: 2
Views: 558

Re: Most stable version for CCR?

I suggest 6.45.9 (Long-term) as the most stable version.
by mozerd
Fri Sep 11, 2020 1:04 am
Forum: General
Topic: hEX S or the hAP ac² [SOLVED]
Replies: 17
Views: 893

Re: hEX S or the hAP ac² [SOLVED]

As a router, ignoring the wireless interface that Hardware is more powerful, the hEX S or the hAP ac².
Excuse the english
I would suggest the hEX S because it’s very stable and works great. The hAP AC2 gets too hot and the wireless is a complete waste of time,
by mozerd
Fri Sep 11, 2020 12:56 am
Forum: General
Topic: Very annoying VoIP affecting bug in latest 6.47.x Router OS
Replies: 6
Views: 344

Re: Very annoying VoIP affecting bug in latest 6.47.x Router OS

I'm moving away from MikroTik as soon as I have the money. @DarkNate Have some patience.... it is frustrating when they do not respond on a timely manner.... but with this COVID hitting everywhere its a new situation and will take time to adjust. It’s very difficult to beat the MikroTik value propo...
by mozerd
Sun Sep 06, 2020 2:38 am
Forum: RouterOS v7 BETA
Topic: v7.1beta2 [development] is released!
Replies: 292
Views: 73719

Re: v7.1beta2 [development] is released!

This gentlemen wrote an in-depth tutorial for MikroTik site to site VPN: https://rickfreyconsulting.com/wireguard-site-to-site-vpn-example/ It's not rocket science to build up a Wireguard tunnel and route something over it. Do you guys get a cut for traffic generated to his site or out of how many ...
by mozerd
Thu Sep 03, 2020 2:19 pm
Forum: Announcements
Topic: v6.47.3 [stable] is released!
Replies: 50
Views: 10051

Re: v6.47.3 [stable] is released!

You had the same issues with 6.47.2 if I remember correctly? I wonder if this is more for you setup. I have a couple of these switches and I do not have this problem but I run them on Long-Term. I keep all my switches on this release to not have to patch as often. @Kindis If you read my post proper...
by mozerd
Thu Sep 03, 2020 1:34 pm
Forum: Announcements
Topic: v6.47.3 [stable] is released!
Replies: 50
Views: 10051

Re: v6.47.3 [stable] is released!

Switch CRS326-24G-2S+ Software upgrade successful from v6.47.2 TO v6.47.3 but after upgrade no longer able to login using Winbox to upgrade the firmware -- showing the following error message: ERROR could not connect to 192.168.10.88 When using Mac Address to login returns error message: ERROR could...
by mozerd
Wed Sep 02, 2020 3:09 pm
Forum: General
Topic: Feature Request: IPv6 NAT support
Replies: 18
Views: 5203

Re: Feature Request: IPv6 NAT support

ABSOLUTELY no need for NAT under ipv6 ...... NAT has spoiled everyone .... what is needed is far wider adoption of ipv6 and its PROPER implementation. Yes its been very slow but that is about to change since the US Government will be ipv6 depended by 2025 then no one will have any other choice but t...
by mozerd
Thu Aug 27, 2020 11:44 pm
Forum: General
Topic: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]
Replies: 89
Views: 4638

Re: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]

>In the first quarter of 2020, Cisco had a share of 52 percent of the global market Ethernet switch market, I know that switches can have all sorts of features what with all the layers, VLANs etc. But don't the majority of then end up just switching packets as fast as possible around the LAN? Now r...
by mozerd
Thu Aug 27, 2020 10:32 pm
Forum: RouterOS v7 BETA
Topic: v7.1beta2 [development] is released!
Replies: 292
Views: 73719

Re: v7.1beta2 [development] is released!

Does anyone have more than one simultaneous wireguard interface working? I am not running the MikroTik implementation so I have no idea if in its current state of RouterOS 7.1beta2 how may peers can be run .... and yes under ubnt EdgeRouter I have multiple Peers running in client sites. Following l...
by mozerd
Thu Aug 27, 2020 9:18 pm
Forum: General
Topic: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]
Replies: 89
Views: 4638

Re: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]

It's true that many companies still want the "fuzzy warm blanket" of 24/7/365 support whenever it is needed, but we are starting to see that attitude change as budgets get smaller due to the global pandemic. https://www.statista.com/statistics/271853/worldwide-net-sales-of-cisco-systems-since-2006/...
by mozerd
Thu Aug 27, 2020 4:01 pm
Forum: General
Topic: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]
Replies: 89
Views: 4638

Re: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]

Most people use MikroTik because 1) It's versatile and reliable ......... 3) The price point is *so* much better than Cisco, Juniper, etc If MikroTik incorporated all of the suggestions to make them more like Cisco and Juniper, the price would go up and we'd lose everything that makes everyone want...
by mozerd
Wed Aug 26, 2020 5:55 pm
Forum: RouterOS v7 BETA
Topic: Wireguard consideration !!!!!
Replies: 3
Views: 593

Re: Wireguard consideration !!!!!

and what do you think? https://blog.ipfire.org/post/why-not-wireguard I think WireGuard is simply outstanding ........ Many of my compatriots also think so. Naysayers will always exist and they do raise some points of consideration but from my [and many MANY other] POV WireGuard has hit the BULLSEYE.
by mozerd
Tue Aug 25, 2020 9:50 pm
Forum: General
Topic: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]
Replies: 89
Views: 4638

Re: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]

Yes, there is ONE industry standard for gear in the Enterprise world wide and that is CISCO ... then there is all others that try and compete. The reason that Cisco is the standard is because their product support is OUTSTANDING ..... many of the OTHER name brands work very hard to provide the same ...
by mozerd
Tue Aug 25, 2020 2:18 pm
Forum: General
Topic: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]
Replies: 89
Views: 4638

Re: Mikrotik or NOT!!! Industry standarts say no!! Why? [SOLVED]

Companies who want take part of it - all say: Mikrotik is not an option - need to go with poducts form HP ARUBA, Ruckus, FortiNet, PaloAlto, CISCO, JUNIPER - these are INDUSTRY STANDARTS! I ask why - Mikrotik is no safe, not stable, hardware is no qualitative, updates are bugy... so on! One argumen...
by mozerd
Mon Aug 24, 2020 12:48 am
Forum: RouterOS v7 BETA
Topic: Feature Request - Wireguard Protocol
Replies: 163
Views: 47413

Re: Feature Request - Wireguard Protocol

Not sure what he was testing with. I was doing SMB which may very well be slower over wireguard compared to a dedicated speed test which you optimize for the protocol. One must always remember that the weakest link rate will always determine the vpn throughput; For example .... router1 in location1...
by mozerd
Sat Aug 22, 2020 8:42 pm
Forum: RouterOS v7 BETA
Topic: v7.1beta2 [development] is released!
Replies: 292
Views: 73719

Re: v7.1beta2 [development] is released!

But as more and more features are added (e.g. multiple different encryption methods, as in IPsec), it becomes more complicated over time. See how it went with OpenVPN, that was also simple at first but got more complicated on the way, especially because there was little forethought on how to accomo...
by mozerd
Fri Aug 21, 2020 5:44 pm
Forum: RouterOS v7 BETA
Topic: v7.1beta2 [development] is released!
Replies: 292
Views: 73719

Re: v7.1beta2 [development] is released!

I don't have it at hand, but I remember someone had posted it in the forum a while ago.
OK thanks .... I found the following that looks very interesting and exciting for MikroTik users :-)
Marvell PRESTERA 98DX83xx Family

In reading the specs I do not see L3 wire-speed benefits.
by mozerd
Fri Aug 21, 2020 5:23 pm
Forum: RouterOS v7 BETA
Topic: v7.1beta2 [development] is released!
Replies: 292
Views: 73719

Re: v7.1beta2 [development] is released!

The switch chips used in those RB models (which are ASICs basically) do support L3 routing at wirespeed as per Marvell's datasheet. The hardware support was already there, but MikroTik just started supporting it on ROS. @Cha0s Do you have a link to the Marvell's datasheet.for the Chjp referred to p...
by mozerd
Fri Aug 21, 2020 4:33 pm
Forum: RouterOS v7 BETA
Topic: v7.1beta2 [development] is released!
Replies: 292
Views: 73719

Re: v7.1beta2 [development] is released!

https://i.mt.lv/cdn/product_files/CRS326-24Splus2Qplus_200149.png Are you sure that mention switchip doesn't have that feature? @macgaiver I am not familiar with that specific switch chip so I am in part writing out of ignorance of that specific chip. I am familiar with how CISCO does in on their M...
by mozerd
Fri Aug 21, 2020 3:43 pm
Forum: RouterOS v7 BETA
Topic: v7.1beta2 [development] is released!
Replies: 292
Views: 73719

Re: v7.1beta2 [development] is released!

This level 3 offloading looks very interesting. Do we have any numbers to show what it can mean as this has the potential to put emphasis on the R in CRS :-) It does routing at wirespeed, in all ports. There are several constraints, and a limit of 4096 connections, if I'm not wrong. But in some use...
by mozerd
Fri Aug 21, 2020 1:29 pm
Forum: Announcements
Topic: v6.47.2 [stable] is released!
Replies: 90
Views: 16531

Re: v6.47.2 [stable] is released!

mozerd - What is the error that you receive? Can you access the router over the MAC connection? @strods My apologies for not identifying the Winbox error message for the Switch connection. I cannot remember the message now. After Software update using Winbox v3.24 I could not access my CRS326-24G-2...
by mozerd
Wed Aug 19, 2020 3:30 pm
Forum: Announcements
Topic: v6.47.2 [stable] is released!
Replies: 90
Views: 16531

Re: v6.47.2 [stable] is released!

Just updated my CRS326-24G-2S+ switch from v6.47.1 to v6.47.2 and now I am not able to login to the switch using Winbox 3.24 to update the firmware. Switch is functional but Winbox cannot connect to switch. Update on my CCR1009-7G-1C-1S+ worked without issue What is my option to fix my CRS326-24G-2S...
by mozerd
Mon Aug 17, 2020 3:17 pm
Forum: Scripting
Topic: Sharing my mkdir (make directory) method [SOLVED]
Replies: 4
Views: 978

Re: Sharing my mkdir (make directory) method [SOLVED]

Following is a RouterOS trick that I use to make a directory via CLI [Terminal] /ip smb shares add name=sharethis directory=nameit /ip smb shares remove [find name=sharethis] So the Trick is to create the SMB share with the name of the directory THEN remove the share works very nicely and is quick a...
by mozerd
Sat Aug 15, 2020 1:05 pm
Forum: Beginner Basics
Topic: Need help for get rid of the HH3k with Bell Fibe
Replies: 17
Views: 3504

Re: Need help for get rid of the HH3k with Bell Fibe

any hope to see 2.5Gbps sync in the future or hardware is limited to 1 or 10 Gbps only? I do not believe that MikroTik will support 2.5Gbps anytime soon for SFP(+) ..... its either 1Gbps or 10Gbps In Canada most ISP who support FFTH [FTTP] will be going to 1Gbps or 5Gbps or 10Gbps .... 2.5Gbps is j...
by mozerd
Fri Aug 14, 2020 4:55 am
Forum: Beginner Basics
Topic: CRS305-1G-4S+in and Telus GPON SFP+
Replies: 2
Views: 450

Re: CRS305-1G-4S+in and Telus GPON SFP+

Secondly, IIRC, Mikrotikdoes not support GPoN SFP interfaces, so my suggestion will be: @CZFan RouterOS v 6.47.1 now provides support for GPON running in SFP(+) Cages ... this has been tested on the RB4011 using the HUAWEI MA5671A as evidenced in the following post . @browntrch ,,,, MikroTik SFP an...
by mozerd
Thu Aug 13, 2020 2:59 pm
Forum: RouterOS v7 BETA
Topic: Feature Request - Wireguard Protocol
Replies: 163
Views: 47413

Re: Feature Request - Wireguard Protocol

DID you know that WireGuard now runs under Windows 10, macOS, IOS, Android and MANY flavors of Linux
https://www.wireguard.com/install/

Amazing !!! :D
by mozerd
Wed Aug 05, 2020 3:21 pm
Forum: RouterOS v7 BETA
Topic: Feature Request - Wireguard Protocol
Replies: 163
Views: 47413

Re: Feature Request - Wireguard Protocol

:D
nice
by mozerd
Tue Jul 21, 2020 3:46 pm
Forum: Beginner Basics
Topic: Need help for get rid of the HH3k with Bell Fibe
Replies: 17
Views: 3504

Re: Need help for get rid of the HH3k with Bell Fibe

@anav The link below shows the connection diagram between the OLT and the ONT and the Router. The HUAWEI MA5671A transceiver is the Optical Network Terminal pre-configured by Bell and initialized when the HH3K is first installed in the client premises. After the CPE [HH3K] is installed the GPON Tran...
by mozerd
Tue Jul 21, 2020 12:05 pm
Forum: Beginner Basics
Topic: Need help for get rid of the HH3k with Bell Fibe
Replies: 17
Views: 3504

Re: Need help for get rid of the HH3k with Bell Fibe

I just bought a RB4011 router to get rid of the bell HH3k router, i know that the GPON module is not compatible with the router but i have a media converter (fiber to rj-45) i also want to configuer the TV on the router. With RouterOS version 6.47.1 you can now use the Bell provided GPON Transceive...
by mozerd
Sun Jul 19, 2020 2:41 pm
Forum: General
Topic: Rogers now has 100G symmetrical Internet
Replies: 17
Views: 3590

Re: Rogers now has 100G symmetrical Internet

Bell makes their GPON complex .....
by mozerd
Sun Jul 19, 2020 2:21 pm
Forum: General
Topic: Rogers now has 100G symmetrical Internet
Replies: 17
Views: 3590

Re: Rogers now has 100G symmetrical Internet

When you say EPON what do you mean. ...... Sounds like you want to plug the fibre directly into the router.......... good luck with that I think that breaks terms of service and is illegal. The EPON connection starts at the headend with optical line terminations (OLT), similar to the DOCSIS CMTS. I...
by mozerd
Sat Jul 18, 2020 8:43 pm
Forum: General
Topic: Rogers now has 100G symmetrical Internet
Replies: 17
Views: 3590

Re: Rogers now has 100G symmetrical Internet

Which fibre are they using. I was told once that the fibre network in Canada is govt owned and only the pole to house and modem are the ISPs concern??? Nope not gov owned although gov may have an interest where certain subsidies are provide. Rogers have been very agressive in Ontario with Fiber ins...
by mozerd
Sat Jul 18, 2020 7:21 pm
Forum: General
Topic: Rogers now has 100G symmetrical Internet
Replies: 17
Views: 3590

Rogers now has 100G symmetrical Internet

https://www.rogers.com/business/product ... rnet/fibre

So a new breed of Routers etc may be upon us very soon :D
by mozerd
Sat Jul 18, 2020 12:39 am
Forum: Announcements
Topic: SwOS version 2.12 released!
Replies: 77
Views: 39266

Re: SwOS version 2.12 released!

SwOS version 2.12 on CSS106-5G-1S do not work with VLAN on trunk port in state "enable" or "strict". Work only in "optional".
not a problem for me ....... maybe you should reset to factory default and start fresh.
by mozerd
Fri Jul 17, 2020 4:29 pm
Forum: RouterOS v7 BETA
Topic: Traffic to blocked address still succeeds. Why? A bug?
Replies: 24
Views: 4828

Re: Traffic to blocked address still succeeds. Why? A bug?

Of course this concept at this stage is only a solution for a single user only, not for a company (or family) as a whole yet. A closed system is what you are describing .. a concept that has been in effect in Enterprise computing for a very long time ... BUT with the advent of the Internet which by...
by mozerd
Tue Jul 14, 2020 7:53 pm
Forum: Announcements
Topic: SwOS version 2.12 released!
Replies: 77
Views: 39266

Re: SwOS version 2.12 released!

First 260GS does not want to update. This is par for the course, everytime I update these units its like surgery with an infection. Does anybody at MT actually use these units and test them? @anav I have the 260GS and have no issues updating at each update .... me thinks that your unit must have a ...
by mozerd
Thu Jul 09, 2020 12:26 am
Forum: General
Topic: SFP+RJ10 - What am I doing Wrong??
Replies: 13
Views: 2121

Re: SFP+RJ10 - What am I doing Wrong??

Got very busy ... sorry I'm late .... but looks like you got lots of help IMO, the firmware + ROS driving the S+RJ10 is got an Ethernet conversion problem and only MikroTik can fix it. The OBVIOUS is that since ether6 works just fine but when the S+RJ10 is introduced it and or ROS are not communicat...
by mozerd
Wed Jul 08, 2020 4:03 pm
Forum: General
Topic: SFP+RJ10 - What am I doing Wrong??
Replies: 13
Views: 2121

Re: SFP+RJ10 - What am I doing Wrong??

Can you do the following please:
/interface print

and paste into code tag here.

Which Mac Addy does the Bell Ethernet interface associate with ? is it the Mac Addy of the S+RJ10 or the Mac Addy of your ether6?
by mozerd
Sat Jun 27, 2020 6:33 pm
Forum: Beginner Basics
Topic: IPv6 configuration on PPPoE interface
Replies: 31
Views: 6208

Re: IPv6 configuration on PPPoE interface

Thank You
by mozerd
Sat Jun 27, 2020 6:25 pm
Forum: Beginner Basics
Topic: IPv6 configuration on PPPoE interface
Replies: 31
Views: 6208

Re: IPv6 configuration on PPPoE interface

Another small hack I came up with is to reduce the preferred and preferred-lifetime & valid-lifetime to 2 hours in ND>Prefix, it seems to work and forces the client devices to refresh IPv6 addresses every two hours or at least drop whatever it used after 2 hours, but again this is dirty and not a c...
by mozerd
Sat Jun 27, 2020 5:33 pm
Forum: Beginner Basics
Topic: IPv6 configuration on PPPoE interface
Replies: 31
Views: 6208

Re: IPv6 configuration on PPPoE interface

Your local systems remembering old prefixes after the ISP has changed them can be considered a RouterOS bug or at least limitation. (it should send an RA with the old address and zero lifetime when it withdraws the old address to set the new one, but it doesn't) IMO, its a bug but yes perhaps a cur...
by mozerd
Sat Jun 27, 2020 1:32 pm
Forum: Beginner Basics
Topic: IPv6 configuration on PPPoE interface
Replies: 31
Views: 6208

Re: IPv6 configuration on PPPoE interface

I think mozerd did not understand the root cause of the problem. @pe1chl, yes you are correct in that I did not understand the root cause of the problem expressed by @DarkNate My apologies to DarkNate ... I do not use PPPoE -- mine is DHCP ..... but I do have similar behavior that DarkNate exposes ...
by mozerd
Fri Jun 26, 2020 6:30 pm
Forum: Beginner Basics
Topic: IPv6 configuration on PPPoE interface
Replies: 31
Views: 6208

Re: IPv6 configuration on PPPoE interface

Is there anything wrong with my IPv6 configuration?
Your ipv6 config is fine

I agree that this should not be happening and my suggestion is only a temporary fix.

Inquire with MikroTik Support
support@mikrotik.com
and see what they have to suggest.
by mozerd
Fri Jun 26, 2020 5:46 pm
Forum: Beginner Basics
Topic: IPv6 configuration on PPPoE interface
Replies: 31
Views: 6208

Re: IPv6 configuration on PPPoE interface

My suggestion for your issue (I have experienced the very same thing) is to do the following: When the IPv6 tests fail go to Winbox ipv6 dhcp Client then highlight the connection and Release wait 5 seconds then Renew Now go back to your test sites and test again ...... when i do that the test sites ...
by mozerd
Thu Jun 25, 2020 9:54 pm
Forum: RouterOS v7 BETA
Topic: Request: Better visibility regarding SLAAC in V7
Replies: 5
Views: 1450

Re: Request: Better visibility regarding SLAAC in V7

In my case I have a MikroTik AP in addition to my router, and it gets an address via SLAAC. When it receives an address and a route via SLAAC, it doesn't show you what they are. Following is my ipv6 routes pic that shows all the routes I am using: ipv6routing.GIF Compare my ipv6 config against your...
by mozerd
Thu Jun 25, 2020 9:33 pm
Forum: General
Topic: how to setting cloudflare IPv6 mikrotik ? [SOLVED]
Replies: 4
Views: 1502

Re: how to setting cloudflare IPv6 mikrotik ? [SOLVED]

The way I do it is as follows:

This directive states do not use ISP DNS
/ip dhcp-client add disabled=no interface=ether1 use-peer-dns=no
This directive tells the Router to use the DNS servers identified
/ip dns set servers=1.1.1.1,1.0.0.1,2606:4700:4700::1111,2606:4700:4700::1001
by mozerd
Wed Jun 24, 2020 3:00 pm
Forum: RouterOS v7 BETA
Topic: Request: Better visibility regarding SLAAC in V7
Replies: 5
Views: 1450

Re: Request: Better visibility regarding SLAAC in V7

I am not running v7 but I do understand that v7 has the same capabilities as v6.47 ... I use ipv6 SLAAC and my address list does show all my global addresses
ipv6Add.GIF
by mozerd
Tue Jun 23, 2020 6:01 pm
Forum: Beginner Basics
Topic: Help to choose mikrotik router
Replies: 15
Views: 2163

Re: Help to choose mikrotik router

I have Synology NAS server (running web-site, vpn, photostation, download station, so on), around 8-10 port forwarding rules, three network media players, few minor home-automation self-made devices on esp8266. So, my requirements are gigabit Ethernet and good wifi. What Mikrotik router would you s...
by mozerd
Tue Jun 23, 2020 5:06 pm
Forum: Announcements
Topic: v6.47 [stable] is released!
Replies: 349
Views: 97046

Re: v6.47 [stable] is released!

Make sure case is correct if text, also, might be other characters in the comment string, so maybe also try "like ~" instead of "equal ="
Another Test
so the following did work:when I added a blank space preceding the word testing
/ip firewall filter remove [find comment~" testing"]
by mozerd
Tue Jun 23, 2020 4:41 pm
Forum: Announcements
Topic: v6.47 [stable] is released!
Replies: 349
Views: 97046

Re: v6.47 [stable] is released!

Does it work when you split it over two lines:
/ip firewall filter
remove [find where comment="testing"]
Nope does not work

remove works if I
/ip firewall filter remove number=number
@CZFan
Yes I did try with comment~"testing"
did not work.
by mozerd
Tue Jun 23, 2020 3:16 pm
Forum: Announcements
Topic: v6.47 [stable] is released!
Replies: 349
Views: 97046

Re: v6.47 [stable] is released!

With this stable v6.47 release on my CCR1009

via CLI if I issue the following directive
/ip firewall filter remove [find where comment="testing"]
the directive completes without error but the rule is not removed
Why?
by mozerd
Sat Jun 20, 2020 7:05 pm
Forum: General
Topic: ICMP requests from internet to WAN IP
Replies: 5
Views: 1364

Re: ICMP requests from internet to WAN IP

ICMP: The Good, the Bad, and the Ugly https://blog.securityevaluators.com/icmp-the-good-the-bad-and-the-ugly-130413e56030?gi=c2433c26dec8 By disabling the ICMP protocol, diagnostics, reliability, and network performance may suffer as a result (see page 4–4 of [2]). Important mechanisms are disabled ...
by mozerd
Sat Jun 20, 2020 4:52 pm
Forum: Scripting
Topic: Have I been hacked?
Replies: 7
Views: 1932

Re: Have I been hacked?

I would suggest that you reset your CCR to factory default and configure from scratch. If you want to be assured that nothing malicious is taking place then run netinstall and that will clean your system properly Its NEVER a good thing to see scripts that YOU did not put into the system .... under t...
by mozerd
Sat Jun 20, 2020 2:35 pm
Forum: General
Topic: Performance-Impact of large address-lists
Replies: 1
Views: 642

Re: Performance-Impact of large address-lists

My Blacklists cover over 615 million IP addresses contained within ipsets typically between 35,000 and 60,000 entries for Tik Routers like any CCR models ... when the lists load every 8 hours the CPU never goes over 25% .... after load is done CPU never goes above 20% in a very active network with t...
by mozerd
Sat Jun 20, 2020 1:04 pm
Forum: General
Topic: 2 switches Root Port [SOLVED]
Replies: 2
Views: 1090

Re: 2 switches Root Port [SOLVED]

@sindy, thank you . On the RB260GS I disabled RSTP only on the Trunk port [ether1] and that solved the problem. I have not done extensive testing so I do not know if all reaming 5 ports on that switch will respond as I expect ... so far all the VLANS are responding properly at the expected throughpu...
by mozerd
Fri Jun 19, 2020 11:34 pm
Forum: General
Topic: FYI: MOAB outbound connection blocking
Replies: 0
Views: 457

FYI: MOAB outbound connection blocking

Effective in July 2020 a subscription to MOAB blacklist service will include - as an optional choice - OUTBOUND connection blocking. NEW : MOAB's primary focus is blocking the bad Guys from coming into your network - NOW as an optional add in choice that's included with your MOAB Subscription - bloc...
by mozerd
Fri Jun 19, 2020 8:06 pm
Forum: General
Topic: 2 switches Root Port [SOLVED]
Replies: 2
Views: 1090

2 switches Root Port [SOLVED]

My CCR1009 has ether7 connected to my CRS326-24 on ether24 On the CRS326 ether24 is defined as a Trunk port recently I needed to add some additional ports so on the CRS326 I made ether21 a Trunk port and connected a RB260GS using either1 as a Trunk The Problem is that RouterOS running on the CRS326 ...
by mozerd
Mon Jun 15, 2020 9:27 pm
Forum: Beginner Basics
Topic: CCR1009-7G-1C-1S+PC
Replies: 16
Views: 3262

Re: CCR1009-7G-1C-1S+PC

1 fiber IN, 4 ethernet jacks OUT One of which goes to the hex router (plain jane gig ethernet). Does that make sense............. plus If I use the Sfp+ port (I could still use the SFP port in the combo to one of my 260GS switches that already has an R-J01) """""""""""""""" BNL - yes assumed it wou...
by mozerd
Mon Jun 15, 2020 9:11 pm
Forum: Beginner Basics
Topic: CCR1009-7G-1C-1S+PC
Replies: 16
Views: 3262

Re: CCR1009-7G-1C-1S+PC

Too funny, the Bell ONT, is an alcatel lucent model. It has fibre line that comes from outside goes in and four ethernet jack are also on the exterior chassis. One of them connects to the ethernet port on the router. As far as I can recall, the hookup to the network was mostly about registering the...
by mozerd
Mon Jun 15, 2020 7:12 pm
Forum: Beginner Basics
Topic: CCR1009-7G-1C-1S+PC
Replies: 16
Views: 3262

Re: CCR1009-7G-1C-1S+PC

I plan on one bridge with many vlans and two WAN ISPs, the other being eastlink plain cable with connections to a number of managed switches You do not need a bridge ..... What makes you think that You do? Bridges are for whooses AND the CCR is not for whooses .... the CCR is for users that LOVE an...
by mozerd
Sun Jun 14, 2020 2:19 pm
Forum: General
Topic: DNS over HTTPS
Replies: 147
Views: 30366

Re: DNS over HTTPS

Maybe that apple use a fixed IP like Chrome cast use 8.8.8.8 and not the DNS it gets from the DHCP. This can be fixed by redirect all request to port 53 to your DNS server. Then Chrome Cast and other stupid devices that does not follow normal regulation will still work. @Jotne All my Apple devices ...
by mozerd
Sun Jun 14, 2020 2:12 pm
Forum: General
Topic: DNS over HTTPS
Replies: 147
Views: 30366

Re: DNS over HTTPS

Not sure why Mikrotik never implimeneted DoT and went for DoH. Routers are tools to implement and include to network designs. It makes absolutely no sense to pick DoH over DoT in routers. Leave DoH for the browsers :)
@BlackFate
Leave DoH for the browsers is 100% on the mark !
by mozerd
Thu Jun 11, 2020 8:54 pm
Forum: General
Topic: DNS over HTTPS
Replies: 147
Views: 30366

Re: DNS over HTTPS

None of my Apple gear works when DoH is enabled .... All apple gear is wireless ..... all windows gear works with DoH.
I have not determined why the Apple Gear is not working with DoH .... will do that on another day ...
by mozerd
Sun Jun 07, 2020 2:57 pm
Forum: General
Topic: IPv6 SLAAC
Replies: 4
Views: 1272

Re: IPv6 SLAAC

Is it possible for a Mikrotik router to receive a public IPv6 IP with SLAAC? I use SLAAC with the following settings that may be helpful for you: /ipv6 dhcp-client add add-default-route=yes comment="delgate ISP-assigned prefix" interface=\ ether1 pool-name=ipv6 prefix-hint=::/56 request=address,pre...
by mozerd
Sun Jun 07, 2020 2:23 pm
Forum: General
Topic: 802.11ac Wave2 Support?
Replies: 57
Views: 20562

Re: 802.11ac Wave2 Support?

@mozerd ... what is the need to quote "previous post" just write "nice post"? Do you know the funcionality of "post reply" button? @BartoszP --Because what I quoted from @bpwl post is what I supported and that is what I wanted to emphasize . BartoszP, I apologize to you if I hurt your feelings.
by mozerd
Sun Jun 07, 2020 2:18 pm
Forum: RouterOS v7 BETA
Topic: Feature Request - Wireguard Protocol
Replies: 163
Views: 47413

Re: Feature Request - Wireguard Protocol

If u need WireGuard better install it on a server with powerful cpu.
The opposite is true .... @markwien - ignorance is no excuse!
by mozerd
Sun Jun 07, 2020 2:07 pm
Forum: General
Topic: 802.11ac Wave2 Support?
Replies: 57
Views: 20562

Re: 802.11ac Wave2 Support?

After hearing Normis "the only thing missing for Wave-2 is MU-MIMO", and Strods with his view on the Winbox user interface. And after reading all this stuff about 802.11ac, there are quite some things missing in the Mikrotik (https://www.oreilly.com/library/view/80211ac-a-survival/9781449357702/ind...
by mozerd
Sun May 31, 2020 3:45 pm
Forum: Wireless Networking
Topic: Additional Security for Wifi Devices.
Replies: 5
Views: 1036

Re: Additional Security for Wifi Devices.

My questions was aimed at protecting capacs themselves not the WIFI.
Can you make that quite a bit clearer?
Protect them from what and whom?
by mozerd
Sun May 31, 2020 3:40 pm
Forum: Scripting
Topic: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)
Replies: 80
Views: 17559

Re: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)

comment=$description timeout=1d} on-error={}
Thanks .... I just tested @Shumkov code and it works very nicely .... excellent work.
by mozerd
Sun May 31, 2020 2:35 am
Forum: Wireless Networking
Topic: Additional Security for Wifi Devices.
Replies: 5
Views: 1036

Re: Additional Security for Wifi Devices.

What other security options are open to me to either put on the router or on the capac itself to limit access further. (Rest of IP services are off). Am I missing something? Is this insecure in any way...... Greetings anav the prolific poster :-) If you want to be EXTRA secure for all your wireless...
by mozerd
Sat May 30, 2020 11:40 pm
Forum: Wireless Networking
Topic: Any description of Beaforming occurrences debug information?
Replies: 11
Views: 2280

Re: Any description of Beaforming occurrences debug information?

Nowhere did I state that Spatial Multiplexing is Beamforming .... grrrr
Then what was your reference to 802.11 and MIMO about?
Please read carefully viewtopic.php?f=7&t=161563&p=796943#p796661

And a VERY good presentation of https://youtu.be/0O179W5Tbzo
by mozerd
Sat May 30, 2020 11:00 pm
Forum: Wireless Networking
Topic: Any description of Beaforming occurrences debug information?
Replies: 11
Views: 2280

Re: Any description of Beaforming occurrences debug information?

Beamforming began to appear in routers back in 2008, with the advent of the 802.11n Wi-Fi standard. 802.11n was the first version of Wi-Fi to support multiple-input multiple-output, or MIMO, technology, which beamforming needs in order to send out multiple overlapping signals. Nope. Spatial multipl...
by mozerd
Sat May 30, 2020 8:37 pm
Forum: Scripting
Topic: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)
Replies: 80
Views: 17559

Re: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)

You should be aware that when loading lists IF a duplicate IP is present the list will not load and processing stops. Script ignores duplicates via on-error={} , processing is not interrupted. Do you mean this line: on-error={:log warning "Address list <$description> update failed"} ? Where in your...
by mozerd
Sat May 30, 2020 3:57 pm
Forum: Scripting
Topic: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)
Replies: 80
Views: 17559

Re: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)

This error occurs if the file is for some reason not available for download. The address list does not load SOMETIMES? Or always? They don't load always. @kevinds You should be aware that when loading lists IF a duplicate IP is present the list will not load and processing stops. So it is critical ...
by mozerd
Fri May 29, 2020 11:27 pm
Forum: Wireless Networking
Topic: Netmetal AC2 Disappointments [SOLVED]
Replies: 30
Views: 5172

Re: Netmetal AC2 Disappointments [SOLVED]

Thank you, I'll look into long range antennas for sure. But yeah I don't know why it didn't click in my head that antennas were needed.
YOU should be very embarrassed @archerious .... the Ruckus E510 EATS Netmetal AC2 lunch buy a country mile :-)
by mozerd
Fri May 29, 2020 10:41 pm
Forum: Wireless Networking
Topic: Any description of Beaforming occurrences debug information?
Replies: 11
Views: 2280

Re: Any description of Beaforming occurrences debug information?

On a broader term, MIMO neither implies nor requires beamforming. Only MU-MIMO does. And none of the Mikrotik devices currently support MU-MIMO, that is a well-known fact. @andriys Beamforming began to appear in routers back in 2008, with the advent of the 802.11n Wi-Fi standard. 802.11n was the fi...
by mozerd
Fri May 29, 2020 11:34 am
Forum: Wireless Networking
Topic: Any description of Beaforming occurrences debug information?
Replies: 11
Views: 2280

Re: Any description of Beaforming occurrences debug information?

Sorry, there is no Beamforming in Mikrotiks Wifi SW. Beamforming missing from MIMO capable MikroTik offering ??? No wonder MikroTik Wireless under - perform ? So its either Beamforming or Spatial Multiplexing .... normally part of the wireless driver packaging .... and yes it can be disabled or ena...
by mozerd
Thu May 28, 2020 1:15 pm
Forum: Scripting
Topic: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)
Replies: 80
Views: 17559

Re: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)

Lv1 was working fine and now it is not. Probably it does not fit anymore. You [everyone] should be aware that: level1 check frequency = 1 minute and average update frequency = 2 hours and 27 minutes level2 check frequency = 1 minute and average update frequency = 17 minutes level3 check frequency =...
by mozerd
Wed May 27, 2020 12:05 pm
Forum: General
Topic: Upgrade to HexS (RB760iGS) cannot get ultra fibre speed.
Replies: 18
Views: 2642

Re: Upgrade to HexS (RB760iGS) cannot get antra fibre speed.

I have recently bought a new RouterBoard HexS ( RB760iGS ) since my old one could not do Gigabit. The goal being to get ultra fibre, 900MBPS. ....... .................. ................ Is the HexS RB760iGS able to get 900MBPS, using PPPoE together with a VLAN? Testing with: https://www.speedtest.n...
by mozerd
Mon May 25, 2020 4:26 pm
Forum: Beginner Basics
Topic: Outdoor AP? [SOLVED]
Replies: 8
Views: 1791

Re: Outdoor AP? [SOLVED]

Ended up getting a Netmetal ac2, should be in on Tuesday. Absolutely loving the Wireless Wire, highest ping to it was 5ms, usually 1-2ms. Incredible performance so far, powering it over PoE via CRS112 from my shed. @archerious very nice pics and good work .... Yes. the wireless wire is absolutely S...
by mozerd
Fri May 22, 2020 3:01 pm
Forum: General
Topic: Best way to prevent attack from external
Replies: 9
Views: 1569

Re: Best way to prevent attack from external

ALL of my MikroTik Router clients use MOAB to prevent External Attacks just like the one you describe.

If your MikroTik Router model qualifies for the MOAB service --- I provide a 10 day Free Trial of MOAB so that you can see for yourself.
If you are interested see my sig below:
by mozerd
Thu May 21, 2020 5:06 pm
Forum: General
Topic: Firewalling Game Server?
Replies: 9
Views: 1813

Re: Firewalling Game Server?

Hi Mozerd, Out of curiousity what is the load on the router in that gaming situation. More precisely does it burn up throughput so like instead of 50mpbs down, one gets 45Mbps down?? It all depends on the MikroTik Router Model .... in my prerequisites web page the following is stated: Performance H...
by mozerd
Thu May 21, 2020 4:38 pm
Forum: Wireless Networking
Topic: Mikrotik AC Access Point cap ac
Replies: 38
Views: 5780

Re: Mikrotik AC Access Point cap ac

BPWL. Now here... 2 cAP ACs will run about $140. The step to $240 is $100. How many phone calls and pissed of users does it take before you think... "Yeah... That's not a smart business decision... Trying to save $100 bucks." Reputation is everything .... ABSOLUTELY everything .... my business thri...
by mozerd
Thu May 21, 2020 4:23 pm
Forum: General
Topic: Firewalling Game Server?
Replies: 9
Views: 1813

Re: Firewalling Game Server?

One of my clients operates a gaming kiosk in Los Angeles that uses MOAB .... they have 26 gaming stations ..... The Router they use is a MikroTik PowerRouter732 .... the LA operation since using MOAB they have zero issues .... before MOAB they has many attacks .... they have been using MOAB now for ...
by mozerd
Tue May 19, 2020 4:03 pm
Forum: Wireless Networking
Topic: Audience vs Eero?
Replies: 40
Views: 11423

Re: Audience vs Eero?

That seems to be the product its built to compete with. Anyone done the comparisons yet? In the Mesh world and for busy home networks, based on my field experiences nobody beats Netgear RBKxx systems -- NOBODY period FULL Stop Ruckus --- The only manufacturer that has successfully exploited Spatial...
by mozerd
Mon May 18, 2020 7:23 pm
Forum: RouterBOARD hardware
Topic: CCR1009-7G-1C-1S+ Micro SD / Memory card
Replies: 12
Views: 2990

Re: CCR1009-7G-1C-1S+ Micro SD / Memory card

I use SanDisk 32GB SD cards and 8GB Kingstone DataTraveler USB sticks and works nicely in many CCR1009xxxx
I have not tried large ones because I have no need for larger ones BUT I see no reason they would not work.
by mozerd
Mon May 18, 2020 4:38 pm
Forum: Scripting
Topic: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)
Replies: 80
Views: 17559

Re: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)

Don't think so. That Wiki page states : This page was last edited on 18 October 2017 , at 10:37. As it says on the page : After RouterOS v4.0beta4, Lua support is removed until further notice My sincere apologies -- I did not see the part that After RouterOS v4.0beta4, Lua support is removed until ...
by mozerd
Mon May 18, 2020 2:02 pm
Forum: Scripting
Topic: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)
Replies: 80
Views: 17559

Re: Address lists downloader (DShield, Spamhaus DROP/EDROP, etc)

According to the following Manual:Scripting-examples -- file size limitation has been removed Read and write large files Many users requested ability to work with files. Now you can do it without limitations Create and write to file: :global newContent "new file content\r\nanother line\r\n"; [/lua "...
by mozerd
Sun May 17, 2020 4:50 pm
Forum: Wireless Networking
Topic: MikroTik Audience slow speed WiFi, why?
Replies: 27
Views: 6564

Re: MikroTik Audience slow speed WiFi, why?

A ruckus R710 is a pretty dated unit. An R510 or R610 is newer and I would take a R610 over the R710 anyday. Now lets also skip the B--L$h!+. Ruckus has been on Promo for nearly 2 years. The $650 R510 is readily available on Amazon for ~$250. AND STOMPS ALL OVER THE AUDIENCE. There is ABSOLUTELY [w...
by mozerd
Sat May 16, 2020 7:43 pm
Forum: RouterOS v7 BETA
Topic: UI/UX On WinBox
Replies: 23
Views: 4333

Re: UI/UX On WinBox

But most importantly, Winbox is key software that helps you to get things done. As quickly as possible, in simple and efficient manner. With no animations or other design decisions taking your time. No "..." buttons you have to click to show "advanced" options, that you have to click all the time. ...
by mozerd
Sat May 16, 2020 5:10 pm
Forum: Beginner Basics
Topic: 'Lost' default MAC address
Replies: 47
Views: 5799

Re: 'Lost' default MAC address

Next steps are just useless until there is the ethernet connection.
@bpwl --- You do have the patience of Job ..... my deepest respect for your efforts. :)
by mozerd
Sat May 16, 2020 1:27 pm
Forum: Wireless Networking
Topic: Mikrotik AC Access Point cap ac
Replies: 38
Views: 5780

Re: Mikrotik AC Access Point cap ac

after research a lot I decided to buy three RBcAPGi-5acD2nD and get rid of my tp link deco p7. For some reasons I didn’t want to buy the fritz repeater 3000 nor the unifi Modells because I liked the Mikrotiks. After playing around on the weekend with different types of setups I am somehow sad. My s...
by mozerd
Fri May 15, 2020 2:12 pm
Forum: General
Topic: Router stopped working suddenly: powering off and on does not help
Replies: 10
Views: 1713

Re: Router stopped working suddenly: powering off and on does not help

....... I tested the router this morning and it is back online. I have checked its logs and the last thing I see is a reference to an improper shutdown. There does not appear to be anything else in the logs. What happened? I am guessing I pushed the router into net install mode or something else bu...
by mozerd
Tue May 12, 2020 3:03 pm
Forum: Wireless Networking
Topic: Wi-Fi performance bad on RB4011 - possible misconfig
Replies: 125
Views: 15150

Re: Wi-Fi performance bad on RB4011 - possible misconfig

This does not seems to be true. Changing to 20MHz on 2.4GHz improved the speed greatly. Yes the theoretical speed is halved, but in real world, I can get 5x better speeds on every device... If you have lots of competing wireless transmitters in close proximity to your venue ... that means lots of i...
by mozerd
Tue May 12, 2020 2:36 pm
Forum: Wireless Networking
Topic: Wi-Fi performance bad on RB4011 - possible misconfig
Replies: 125
Views: 15150

Re: Wi-Fi performance bad on RB4011 - possible misconfig

How does one relate to another? :) You can use 20MHz channel and still use MIMO. All those spatial streams operate in the same channel(s). I did not state that you could not use 20MHz channel with MIMO .... I did state that if you want PERFORMANCE you must use 40Mhz ... performance means speed........
by mozerd
Tue May 12, 2020 2:17 pm
Forum: Wireless Networking
Topic: Wi-Fi performance bad on RB4011 - possible misconfig
Replies: 125
Views: 15150

Re: Wi-Fi performance bad on RB4011 - possible misconfig

I for ONE am very impressed with @bpwl contribution .... certainly provides much to contemplate especially if YOU are a GEEK :-) I do not wish to rain on anyone's parade but wireless TODAY wireless is MIMO centric assuming that all devices are MIMO capable [N, AC, AX and 6E] ... so my contribution h...
by mozerd
Mon May 11, 2020 6:34 pm
Forum: Useful user articles
Topic: Bypassing AT&T Residential Gateways with MikroTik
Replies: 188
Views: 39315

Re: Bypassing AT&T Residential Gateways with MikroTik

........................ .................... It's fantastic, literally plug and play, didn't have to change any settings on Tp-link switch. Removed all bridges on hex, and the speeds are honestly just 200-250mbps slower on upload than RB4011, the downstream is line rate. Never went past 35% cpu us...
by mozerd
Mon May 11, 2020 2:31 pm
Forum: General
Topic: Advanced ideas you can't do with MikroTik products...
Replies: 8
Views: 1237

Re: Advanced ideas you can't do with MikroTik products...

You're one very very smart Dude :-)
The ACL's on the 3650 is very rich [granular] but for fire-walling I would use Untangle + this switch .... Check out Untangle .... very rich UTM
by mozerd
Mon May 11, 2020 1:57 pm
Forum: General
Topic: Advanced ideas you can't do with MikroTik products...
Replies: 8
Views: 1237

Re: Advanced ideas you can't do with MikroTik products...

Any other alternatives?
Cisco Catalyst 3650 Series Switches
This one will meet all of your security objectives plus it will route at wire speed plus do things that you have yet to imagine. :-)
by mozerd
Sun May 10, 2020 11:58 pm
Forum: Wireless Networking
Topic: Wi-Fi performance bad on RB4011 - possible misconfig
Replies: 125
Views: 15150

Re: Wi-Fi performance bad on RB4011 - possible misconfig

@rkrisi Be a little patient and MikroTik will improve the wireless performance in your RB4011 .... it may take another 6 months ... patience is key My suggestion for you is to buy the Ubiquiti nanoHD access Point Connect that to your RB4011 and you will have superb performance beyond your wildest ex...
by mozerd
Fri May 08, 2020 1:32 pm
Forum: RouterBOARD hardware
Topic: RB5011
Replies: 40
Views: 10724

Re: RB5011

make it more about proper implementation of existing features that needs to be fixed in hardware: SFP+ slot that's not picky and supports SFP/SFP+/passive DAC/GPON modules without any issues Switch chip that supports at least 8 ports at 0.01/0.1/1/2.5/5Gbit/s with hardware VLAN filtering and other ...
by mozerd
Wed May 06, 2020 4:29 pm
Forum: General
Topic: Where to get list of malicious hosts (sim to spamhaus dshield cymru torlist) and what can replace malwaredomainlist.com?
Replies: 17
Views: 2584

Re: Where to get list of malicious hosts (sim to spamhaus dshield cymru torlist) and what can replace malwaredomainlist.

I would doubt that the hex Routerboard can handle that many dynamic address list entries... MOAB for the hEX and the HAP AC2 currently has 7692 ipset entries ..... the performance hit on the hEX is close to 13% while the HAP AC2 the performance hit is 8%. For Your Information MOAB for the hEX and t...
by mozerd
Mon May 04, 2020 2:23 pm
Forum: Beginner Basics
Topic: Restricting access to guests in LAN
Replies: 4
Views: 1088

Re: Restricting access to guests in LAN

You create a VLAN for all Guest, then add the port for the guest to this VLAN, same with create a own guest Wifi.
Then you make filter rules.

I do not recommend at all mixing in Layer 2 firewall. Do a VLAN and stick til Layer 3 Routing/firewall. Make it simple.
@Jotne is 100% correct .... :-)
by mozerd
Sun May 03, 2020 12:41 am
Forum: General
Topic: Book for advanced routing
Replies: 10
Views: 2682

Re: Book for advanced routing

Just bought your book on Amazon because I liked what I saw in the preview.
by mozerd
Sat May 02, 2020 11:53 pm
Forum: Beginner Basics
Topic: Inter Vlan Routing
Replies: 27
Views: 4304

Re: Inter Vlan Routing

Your internet allocated bandwidth will determine your capability on your local network. Having a 10G connection at the switch level will not help to level the load. The 10G connection is best suited for NAS, stuff you will do locally assuming you will have 10G network .... But your 2 switches provid...
by mozerd
Sat May 02, 2020 7:09 pm
Forum: Beginner Basics
Topic: Inter Vlan Routing
Replies: 27
Views: 4304

Re: Inter Vlan Routing

This is for performace reason, i need to connetc two switches (CRS326-24G-2S+RM) with 10Gbit fiber connection and the router would slow down my routing. MicroTik Switches are not Multi-Layer Switches so Inter-VLAN Routing will have a performance penalty when L3 is used .... Because the switches you...
by mozerd
Sat May 02, 2020 6:58 pm
Forum: Beginner Basics
Topic: Inter Vlan Routing
Replies: 27
Views: 4304

Re: Inter Vlan Routing

I am not a networking expert but cannot you not ensure that most traffic is contained within the switches?
VLAN Routing: 3 options
by mozerd
Sat May 02, 2020 5:54 pm
Forum: RouterOS v7 BETA
Topic: FEATURE REQUEST: Add Basic Firewall Rule Wizard
Replies: 63
Views: 13140

Re: FEATURE REQUEST: Add Basic Firewall Rule Wizard

What do you think about the webproxy stuff near the end: "Blocking Unwanted Websites", to block http traffic - outdated and not useful?? @anav ..... If one uses their TiK router as a webproxy THAT will mean a significant amount of Read-Write cycles will be made on the NAND memory .... not a good th...
by mozerd
Sat May 02, 2020 5:42 pm
Forum: RouterOS v7 BETA
Topic: FEATURE REQUEST: Add Basic Firewall Rule Wizard
Replies: 63
Views: 13140

Re: FEATURE REQUEST: Add Basic Firewall Rule Wizard

Is it only me or there's something wrong with double quotes?.. /user set 0 password="!={Ba3N!"40TуX+GvKBz?jTLIUcx/," The double quotes is OK but when quotes are used in the actual password as shown in your illustration that quote must be preceded with the escape character as follows: /user set 0 pa...
by mozerd
Fri May 01, 2020 11:52 pm
Forum: Beginner Basics
Topic: What is the Best Practice for detecting/preventing unauthorized devices in LAN?
Replies: 24
Views: 3198

Re: What is the Best Practice for detecting/preventing unauthorized devices in LAN?

Maybe I'm a Martian new on planet Earth :-) Update: newly discovered: the answer seems to lie exactly in this document: https://wiki.mikrotik.com/wiki/Manual:Interface/Dot1x To me [like YOU :-)] users are Joe users in a LAN w/o login permission to the router or switch they are connected --- that is...
by mozerd
Fri May 01, 2020 5:46 pm
Forum: Beginner Basics
Topic: What is the Best Practice for detecting/preventing unauthorized devices in LAN?
Replies: 24
Views: 3198

Re: What is the Best Practice for detecting/preventing unauthorized devices in LAN?

Let's say a user in the morning comes to his seat and turns his office computer on (it was ordinarily shut down the previous work day). So, what happens next? Does he need to login to the RADIUS server first (but how is this supposed to work as he does not have any network access yet, I imagine) be...
by mozerd
Fri May 01, 2020 2:46 pm
Forum: Beginner Basics
Topic: What is the Best Practice for detecting/preventing unauthorized devices in LAN?
Replies: 24
Views: 3198

Re: What is the Best Practice for detecting/preventing unauthorized devices in LAN?

Mikrotik have recently introduced port-based access control https://wiki.mikrotik.com/wiki/Manual:Interface/Dot1x although you need an external RADIUS server. Many other vendors support port-based access control in fully managed and the better smart/web managed switches, entry-level smart/web manag...
by mozerd
Tue Apr 28, 2020 4:09 pm
Forum: Beginner Basics
Topic: Configuring the Firewall in RouterOS [SOLVED]
Replies: 38
Views: 6496

Re: Configuring the Firewall in RouterOS [SOLVED]

by default block everything, explicitly define each protocol/port that shall be allowed/opened ." Ie. this is possibly a diametrically opposed method to what most people do. But to each his own, I've my own experience and view on these things and so my own practical requirements regarding network s...
by mozerd
Mon Apr 27, 2020 4:17 pm
Forum: RouterOS v7 BETA
Topic: SDWAN using Zerotier
Replies: 21
Views: 8589

Re: SDWAN using Zerotier

I would prefer Tailscale (wireguard SDWAN) over ZeroTier
100% correct :-) and 100% faster ..... KISS

https://tailscale.com/
by mozerd
Mon Apr 27, 2020 3:08 pm
Forum: Beginner Basics
Topic: Configuring the Firewall in RouterOS [SOLVED]
Replies: 38
Views: 6496

Re: Configuring the Firewall in RouterOS [SOLVED]

@mozerd, thanks for clarification and the links. I want to keep this device as is by default: a switch with RouterOS in Bridge Mode, but will need to use its firewall as well. Is this configuration/setup choice a good/acceptable one, or would there be a better configuration/setup in terms of securi...
by mozerd
Mon Apr 27, 2020 1:13 pm
Forum: Beginner Basics
Topic: Configuring the Firewall in RouterOS [SOLVED]
Replies: 38
Views: 6496

Re: Configuring the Firewall in RouterOS [SOLVED]

As said above, in my device there are no such default firewall entries present, as far as I can see; I hope I haven't overlooked anything. @mutluit Your switch CRS326-24G-2SplusRM does not have the same default Firewall rules like a Router would have. Your switch default CONFIGURATION is a switch n...
by mozerd
Mon Apr 27, 2020 2:17 am
Forum: Beginner Basics
Topic: 2 WANs possible with CRS326-24G-2S+ with RouterOS ? [SOLVED]
Replies: 8
Views: 2664

Re: 2 WANs possible with CRS326-24G-2S+ with RouterOS ? [SOLVED]

Yes, Multi-layer-switches can route at wire speed - MLS .... A multi Layer switch is just a Switch with Layer 3 capabilities... And am sure their traffic passes the CPU before reaching the Switch... A MLS Switch has a dedicated cpu for routing and a dedicated ASIC for switching plus it has Flow Con...
by mozerd
Sun Apr 26, 2020 11:34 pm
Forum: Beginner Basics
Topic: 2 WANs possible with CRS326-24G-2S+ with RouterOS ? [SOLVED]
Replies: 8
Views: 2664

Re: 2 WANs possible with CRS326-24G-2S+ with RouterOS ? [SOLVED]

If you want to route at wire speed on the switch YOU will need to look at other brands. Route at wire speed on the Switch ? :? What is that supposed to mean? A switch is a switch, it does not route Traffic... The CPU takes part in the Routing Process... Yes, Multi-layer-switches can route at wire s...
by mozerd
Sun Apr 26, 2020 7:32 pm
Forum: Beginner Basics
Topic: 2 WANs possible with CRS326-24G-2S+ with RouterOS ? [SOLVED]
Replies: 8
Views: 2664

Re: 2 WANs possible with CRS326-24G-2S+ with RouterOS ? [SOLVED]

The MiktoTik switch/router CRS326-24G-2S+RM ( https://mikrotik.com/product/CRS326-24G-2SplusRM ) can use either SwOS or RouterOS. With RouterOS installed, can it be configured to have more than 1 WAN port for Load Balancing the WAN traffic? This switch is good if you want routing inside your LAN be...
by mozerd
Sun Apr 26, 2020 3:56 pm
Forum: Beginner Basics
Topic: Lease Expiry Causing DHCP Critical Error [SOLVED]
Replies: 23
Views: 4427

Re: Lease Expiry Causing DHCP Critical Error [SOLVED]

Lots of good adice for you here @anav :-) On the subnet [vlan] that your daughter's pc lives on -- are YOU 100% certain that there is not a rogue DHCP server doing its thing. So the question you have to ask yourself is .... which devices are running on that specific subnet --- you must confirm [trus...
by mozerd
Sat Apr 25, 2020 3:15 pm
Forum: RouterOS v7 BETA
Topic: Feature Request - Wireguard Protocol
Replies: 163
Views: 47413

Re: Feature Request - Wireguard Protocol

Wireguard is a design disaster in every aspect if used on a router. I'm going to name some: Yes WireGuard does VPN a little differently -- actually a LOT differently. There is the Old way and now the NEW WireGuard way. Yes, there is The Classic Solutions of Routing BUT now there is The New Namespac...
by mozerd
Thu Apr 23, 2020 9:53 pm
Forum: General
Topic: HEX S Bridge VLAN setup - poor performance vlan to vlan (max. ~ 200 MBit/s)
Replies: 10
Views: 2465

Re: HEX S Bridge VLAN setup - poor performance vlan to vlan (max. ~ 200 MBit/s)

And yes 80% of the rules had hitcounts! Throughput in the same broadcast domain is working with full gigabit speed. Very NICE Lab ..... I suspect that the RB3011 would work out well for your LAB. If you are going to keep the SG200-8 then do consider the RB4011 with its quad core CPU ... the combina...
by mozerd
Thu Apr 23, 2020 6:48 pm
Forum: General
Topic: HEX S Bridge VLAN setup - poor performance vlan to vlan (max. ~ 200 MBit/s)
Replies: 10
Views: 2465

Re: HEX S Bridge VLAN setup - poor performance vlan to vlan (max. ~ 200 MBit/s)

I have a small home test environment and use a HEX S (6.45.8) for routing and firewalling: Bridge VLAN filtering setup Vlan ~ 15 via Trunk on eth2 to a cisco sg200-08 IP Firewall Filter rules ~ 75 IP Mangle rules ~ 10 IP NAT rules ~ 10 I am truly impressed with this many rules ... WOW ... How may o...
by mozerd
Thu Apr 23, 2020 2:00 pm
Forum: Beginner Basics
Topic: Should I go for Router OS ?
Replies: 6
Views: 1659

Re: Should I go for Router OS ?

I recommend RouterOS and especially Winbox the GUI administration Tool. Anytime a security issue is discovered MikroTik makes the immediate effort to determine if that security issue is legitimate and fixes the problem if its real The following link is where you can find information on security issu...
by mozerd
Tue Apr 21, 2020 4:22 pm
Forum: Forwarding Protocols
Topic: IGMP-Proxy issue
Replies: 5
Views: 3168

Re: IGMP-Proxy issue

Right now we are on manufacturing process, as soon as we receive the first batch on our warehouse and be ready to sell and shipping we will notify you with all the details (Cost, Payment Methods, Specs, Shipping, etc,.) please send an email with your details to contacto@ carlitoxxpro.com to we can ...
by mozerd
Sat Apr 18, 2020 12:54 pm
Forum: General
Topic: FYI: MOAB Install instructions now online
Replies: 0
Views: 1252

FYI: MOAB Install instructions now online

A FYI item:

Install illustration is now available online for Mother of all Blacklists:

The How-To for MikroTik Routers like the RB4011 and CHR
and
The How-To for all other MikroTik Routers having 1G or more of RAM with external file storage
by mozerd
Wed Apr 15, 2020 1:41 pm
Forum: RouterOS v7 BETA
Topic: Feature Request - Wireguard Protocol
Replies: 163
Views: 47413

Re: Feature Request - Wireguard Protocol

Rethinking VPN: Tailscale startup packages Wireguard with network security A whole bunch of tunnels': Mesh networking with per-node permissions and OAuth security ..... Tailscale's product includes several pieces. First, it's based on peer-to-peer VPNs rather than piping all VPN traffic through a si...
by mozerd
Tue Apr 14, 2020 12:47 pm
Forum: General
Topic: HAP AC2 ipv6 Routes list show bridge unreachable
Replies: 5
Views: 1739

Re: HAP AC2 ipv6 Routes list show bridge unreachable

And .. my subggestion should actually be /ipv6 address add address=::1 from-pool=rogers-ipv6 interface=bridge The address=::1 generated an error condition stating it must be a 64 The good news is that after Router Reboot the bridge unreachable condition became reachable. I switched to a hint ::/56 ...
by mozerd
Mon Apr 13, 2020 11:03 pm
Forum: General
Topic: HAP AC2 ipv6 Routes list show bridge unreachable
Replies: 5
Views: 1739

Re: HAP AC2 ipv6 Routes list show bridge unreachable

What happens if you set it like this: /ipv6 address=::1 add from-pool=rogers-ipv6 interface=bridge ... or something else instead of ::1 ? In addition, how big is address prefix, received from ISP? ( /ipv6 pool print ) i cannot /ipv6 pool print now as the unit is in another jurisdiction and I will r...
by mozerd
Mon Apr 13, 2020 8:10 pm
Forum: General
Topic: HAP AC2 ipv6 Routes list show bridge unreachable
Replies: 5
Views: 1739

HAP AC2 ipv6 Routes list show bridge unreachable

ipv6 is configured on the hap ac2 and ether1 [WAN] gets an ipv6 address and the bridge gets an ipv6 address but the bridge is unreachable so non of the attached laptops are getting an ipv6 address. By looking at the config below can anyone please advise why the bridge is unreachable? Redacted Config...
by mozerd
Fri Apr 10, 2020 3:49 pm
Forum: Announcements
Topic: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!
Replies: 43
Views: 79901

Re: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!

Man they should hire you Mozerd! You could bring some sweet stuff to the functionality and to the team some pure Canadian Maple Syrup too!! :-) I am only for hire based on the services I offer from my website ... :) Yep, the MikroTik Team would love Canadian Maple Syrup ... the very best .... even ...
by mozerd
Thu Apr 09, 2020 4:50 pm
Forum: Announcements
Topic: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!
Replies: 43
Views: 79901

Re: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!

"Development" is a download category. There are actual download links. https://mikrotik.com/download You can install it on one of your important gateways and later report how ready you feel it is. Your opinion is valued. Thanks. Once MikroTik adds Wireguard Support and LUA System v4 or whatever ver...
by mozerd
Tue Apr 07, 2020 6:19 pm
Forum: Announcements
Topic: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!
Replies: 43
Views: 79901

Re: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!

v7 is a public beta.

Do you think it's ready for a 7.0 stable release :) ?
I just checked and do not see v7 under testing, but I do see v7 under development.

So @normis we are far beyond April 1 [April Fools day] so I guess you have a lot more info?
by mozerd
Fri Apr 03, 2020 7:05 pm
Forum: RouterOS v7 BETA
Topic: Feature Request: RFC3021 /31 point-to-point support in v7
Replies: 4
Views: 2363

Re: Feature Request: RFC3021 /31 point-to-point support in v7

MikroTik should be aware of the following

https://www.theregister.co.uk/2020/03/0 ... ment_ipv6/

The site is currently down .... something wrong with the UK but it will be up soon
by mozerd
Fri Mar 27, 2020 3:29 pm
Forum: RouterOS v7 BETA
Topic: Feature Request include LUA
Replies: 1
Views: 2171

Feature Request include LUA

Please include LUA system in v7 so that RouterOS users can make fetching address lists of any size a reality.
by mozerd
Sun Mar 22, 2020 5:44 pm
Forum: RouterBOARD hardware
Topic: Problem selecting CCR
Replies: 8
Views: 3263

Re: Problem selecting CCR

@pe1chl provided YOU with very good direction and I would highly encourage you to follow .... very specifically the following is absolutely critical in your situation: However, you still will need to invest in some IT consultancy. It is not a good idea to setup such complex networks without knowledg...
by mozerd
Sat Mar 07, 2020 7:55 pm
Forum: Beginner Basics
Topic: Both Audiences are bricked after attempt to mesh together
Replies: 5
Views: 2552

Re: Both Audiences are bricked after attempt to mesh together

https://i.mt.lv/cdn/rb_files/1568200626Audience%20-%20qg.pdf Interesting devices. One 5ghz Chain just for audience to audience connectivity (but can be used for other purposes). A dedicated 5ghz Chain for the MESH is very desirable so that the mesh will work effectively. I 4 1 would not recommend d...
by mozerd
Sun Feb 16, 2020 12:41 am
Forum: RouterOS v7 BETA
Topic: VxLAN example configuration
Replies: 7
Views: 6671

Re: VxLAN example configuration

Very Well Done and great example .... Thank You!
by mozerd
Fri Feb 14, 2020 5:10 pm
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 62
Views: 44153

Re: New User Manager in RouterOS v7

User Manager is RADIUS server implementation in RouterOS which provides centralized user authentication and authorization to a certain service. Having a central user database allows better track of system users and customers. I have not loaded v7 Bx and will not until v7 RC is out -- but I wanted t...
by mozerd
Wed Feb 05, 2020 7:32 pm
Forum: General
Topic: 2 Mikrotik Fails in a week reputation tarnished, major opportunity for MT
Replies: 6
Views: 1221

Re: 2 Mikrotik Fails in a week reputation tarnished, major opportunity for MT

Just do the right thing: hire a brand/Product manager and staff who focus on the forums, documentation, and howtos. Make it fun to be a part of the MikroTik community.
@pcunite 100% AGREE
@screamingservers ... good post!
by mozerd
Sat Jan 25, 2020 3:25 pm
Forum: RouterOS v7 BETA
Topic: Feature Request - Wireguard Protocol
Replies: 163
Views: 47413

Re: Feature Request - Wireguard Protocol

it would be a dream because now i have a routerboard+raspberry(wireguard) for every single sites of my fullmesh vpn
Yes absolutely !!!
Dream along with me I am on the way to the STARS
by mozerd
Wed Jan 22, 2020 4:18 pm
Forum: General
Topic: My public IP is getting raped by port scanners - is that normal?
Replies: 24
Views: 4014

Re: My public IP is getting raped by port scanners - is that normal?

That IP address returns the following: person: Piotr Najduk address: Vectra S.A. address: Al. Zwyciestwa 253 address: 81-525 Gdynia address: POLAND phone: +48 58 6248352 e-mail: p.najduk@vectra.pl nic-hdl: PN3299-RIPE mnt-by: PN97052-MNT created: 2012-03-13T10:55:37Z last-modified: 2012-09-24T16:39:...
by mozerd
Wed Jan 22, 2020 4:05 pm
Forum: Announcements
Topic: v6.46.2 [stable] is released!
Replies: 121
Views: 34645

Re: v6.46.2 [stable] is released!

Problem with SFTP server and WinSCP I use WinSCP to move files from my CCR1009 to my Network Server. According to WinSCP Developer RouterOS has a issue in it's SFTP server The SFTP server returns an error But when WinSCP queries the server for a target of those links, the server returns an error. I ...
by mozerd
Tue Jan 21, 2020 9:25 pm
Forum: RouterBOARD hardware
Topic: Router 4011 as a Hotspot
Replies: 2
Views: 2724

Re: Router 4011 as a Hotspot

I would suggest that you seriously consider the MikroTik Audience ... especially if you exclusively dedicate one of the 5 GHz radios for the wireless backhaul assuming that you may need to add another Audience to provide FAR superior performance for the 100 hosts you want to service. Audience is a t...
by mozerd
Sun Jan 19, 2020 3:08 pm
Forum: Wireless Networking
Topic: Hap AC2 extreme slow wifi
Replies: 16
Views: 5810

Re: Hap AC2 extreme slow wifi

@mozerd, I understand that encryption using CPU will tax the CPU, but did not expect it to tax the Hap AC2 cpu by that much, i.e. from OP stats it was 10 fold, i.e. from 23Mb/s to 238Mb/s by disabling TKIP and these figures just did not add up for me. i.e. what did we get back in the day on device ...
by mozerd
Sun Jan 19, 2020 1:27 pm
Forum: Wireless Networking
Topic: Hap AC2 extreme slow wifi
Replies: 16
Views: 5810

Re: Hap AC2 extreme slow wifi

I understand that tkip is old technology and deprecated and fully anderstand that it can have a huge performance impact on devices like hap lite or even RB2011. Now the hap ac2 is not a beast, but this CPU runs circles around the 2011. So my question is why such a big performance hit on hap ac2? Ye...
by mozerd
Sat Jan 18, 2020 6:35 pm
Forum: Wireless Networking
Topic: Hap AC2 extreme slow wifi
Replies: 16
Views: 5810

Re: Hap AC2 extreme slow wifi

The situations where I have been forced to enable tkip for very old devices don't involve collaboration, so I may change architecture to a separate virtual AP using tkip that I can enable only if needed If you enable TKIP for a Virtual AP and have WPA/WPA2 on another Virtual AP that YOU are utilizi...
by mozerd
Sat Jan 18, 2020 1:12 am
Forum: Wireless Networking
Topic: Hap AC2 extreme slow wifi
Replies: 16
Views: 5810

Re: Hap AC2 extreme slow wifi

Wouldn't the encryption CPU be burned ONLY if some connection was actually USING tkip? Does just making tkip available (for devices that may show up that can't connect over aes) immediately affect cpu even if no such devices actually show up? If TKIP is an available option BUT not being utilized [e...
by mozerd
Sat Jan 18, 2020 12:59 am
Forum: Wireless Networking
Topic: Hap AC2 extreme slow wifi
Replies: 16
Views: 5810

Re: Hap AC2 extreme slow wifi

Does tkip slow down performance by its very existence enabled, or does a connection actually have to be using it?
Yes, TKIP will dramatically slow down performance when enabled because encryption/deception heavily relies on the CPU.
by mozerd
Wed Jan 01, 2020 10:03 pm
Forum: RouterBOARD hardware
Topic: CRS326-24S+2Q+RM ether1 at 100Mbps only
Replies: 6
Views: 3074

Re: CRS326-24S+2Q+RM ether1 at 100Mbps max. only

Overall, I do not recommend this switch as a single-piece networking solution for a homelab - CRS317 is a much better (and cheaper) all-in-one option. For the CRS326-24Splus2QplusRM — IMO you are not reading the specs properly, that 100Mbps port is suggested for switch management https://i.mt.lv/cd...
by mozerd
Wed Jan 01, 2020 12:27 am
Forum: Beginner Basics
Topic: Xbox 1 problems
Replies: 1
Views: 787

Re: Xbox 1 problems

Goodness gracious great balls of Fire ...... if you do not tell us what model of MikroTik Router you have how can anyone help you?
by mozerd
Tue Dec 31, 2019 8:33 pm
Forum: Beginner Basics
Topic: Bandwidth Upgrade Problem
Replies: 4
Views: 1341

Re: Bandwidth Upgrade Problem

My suggestion for your situation is the RB3011 Router that will serve you very well ... combine that with your existing Apple Express in bridge mode and you will get very good WiFi .... I am assuming that you already have the Apple Express however if my assumption is wrong then I would recommend the...
by mozerd
Mon Dec 30, 2019 4:40 pm
Forum: Beginner Basics
Topic: get Alert by email on new Device [SOLVED]
Replies: 19
Views: 7284

Re: get Alert by email on new Device [SOLVED]

a simple alteration to the script the previous script sends an email when ever a new devices connected to router static or dynamic in my situation I need to know only dynamic ones because the static ones in known to me this modification sends only dynamic ip addresses :local recipient "someemail@se...
by mozerd
Mon Dec 30, 2019 3:26 pm
Forum: Beginner Basics
Topic: how many client can connect to my router [SOLVED]
Replies: 6
Views: 2304

Re: how many client can connect to my router [SOLVED]

I have router mikrotik rb2011uias-2hnd OS version 6.46.1 I'm asked by my manager 1 - how many clients can connect to WiFi simultaneously 2 - how many clients can connect to Ethernet simultaneously please guide me how I can give him a correct answer If you want a proper IT approach to these generic ...
by mozerd
Sat Dec 21, 2019 8:01 pm
Forum: Beginner Basics
Topic: Router Recommendation
Replies: 11
Views: 2525

Re: Router Recommendation

Buy why the TPLINK AP. My CapAC is a decent AP for the price and ubiquiti LR AP for those that want premium performance. For $20 more ==> Performance wise The TP-link AP IS VASTLY superior to the CapAC and to the Ubiquiti LR AP .... That is why. Wishing all a blessed Christmas and a happy, healthy ...
by mozerd
Sat Dec 21, 2019 5:05 pm
Forum: Beginner Basics
Topic: Router Recommendation
Replies: 11
Views: 2525

Re: Router Recommendation

@mozerd, I wonder why you fancy the RB3011 (over e.g. 4011) so much? @mkx The 3011 has superior switch chip, it has Support for USB 3 providing additional storage and the SFP cage actually works great on GPON networks; users who want to use MOAB love this router .... the only advantage the 4011 has...
by mozerd
Sat Dec 21, 2019 2:19 pm
Forum: Beginner Basics
Topic: Router Recommendation
Replies: 11
Views: 2525

Re: Router Recommendation

Looking for a router, previously was using a tp-link router with a single antenna. Problem reception issues, signals dropped significantly. Which one to go for? Need recommendations. I suggest the RB3011 as your Router/switch and for wireless I suggest the TP-Link EAP245 AC1750 Wireless MU-MIMO Gig...
by mozerd
Tue Dec 03, 2019 3:51 pm
Forum: Beginner Basics
Topic: Router recommendation for TWC MAXX
Replies: 1
Views: 555

Re: Router recommendation for TWC MAXX

The MikroTik RB4011iGS+RM could be your choice
But it has a SFP+ cage that will not accommodate SFP GPON modules + no USB storage.

So if GPON is a needed capability the RB3011UiAS-RM is a good choice and it does have a USB3 interface for storage plus.
by mozerd
Thu Nov 28, 2019 7:45 pm
Forum: Forwarding Protocols
Topic: Migrate from IGMP proxy to PIM for IPTV
Replies: 2
Views: 3281

Re: Migrate from IGMP proxy to PIM for IPTV

Any solution ?
I have no experience using RouterOS with multicast ....

You should check the following link that may be of help to you since it shows some PIM EXAMPLES
https://wiki.mikrotik.com/wiki/Manual:M ... ed_example
by mozerd
Mon Nov 25, 2019 2:23 pm
Forum: Beginner Basics
Topic: Internet Speed
Replies: 41
Views: 6947

Re: Internet Speed

.
Being 4011 quadcore is not a remarkable difference to buy it?
If not, I will decide on 3011.
Yes 4011 quadcore is superior to the 3011 dualcore.
by mozerd
Sun Nov 24, 2019 9:00 pm
Forum: Beginner Basics
Topic: Internet Speed
Replies: 41
Views: 6947

Re: Internet Speed

To support@mikrotik.com Oks, Thanks If you can return the 2011 to the place you bought it from and get a refund Or exchange for a better model like the 3011 I suggest you do that ... if on the other hand you can no longer get a refund or exchange for a 3011 then good luck with all the hassles you w...
by mozerd
Sat Nov 23, 2019 6:54 pm
Forum: General
Topic: [Feature request] Wireguard
Replies: 142
Views: 46974

Re: [Feature request] Wireguard

How is one to measure if ones CPU is up to the task to handle Wireguard without HW acceleration and meet or beat performance of ipsec with hw acceleration.?? My experience with WireGuard is only on the Ubiquiti EdgeMax product line and I can categorically state that WireGuard runs faster that any o...
by mozerd
Fri Nov 22, 2019 8:33 pm
Forum: General
Topic: [Feature request] Wireguard
Replies: 142
Views: 46974

Re: [Feature request] Wireguard

Of course, I am only referring to RouterBOARD devices. if you have plenty of CPU power, you can make it fast. Normis, can you perhaps comment on comparing Wireguard to the Road Warrior VPN scenario? Does the hw accelerated MT device still have the edge? Normis cannot provide that analysis without r...
by mozerd
Thu Nov 21, 2019 9:13 pm
Forum: Beginner Basics
Topic: Internet Speed
Replies: 41
Views: 6947

Re: Internet Speed

The Mikrotik hAP ac² is better than my router? Is the best option for me? I thought a router was better option than wireless system. Actualy I have my ISP router as bridge and Mikrotik as router. The best option for YOU is the MikroTik RB3011UiAS-RM and Yes I agree that a dedicated Router - like th...
by mozerd
Tue Nov 19, 2019 8:00 pm
Forum: Wireless Networking
Topic: Can rb4011igs+5hacq2hnd-in handle 80 concurrent wireless users?
Replies: 14
Views: 2391

Re: Can rb4011igs+5hacq2hnd-in handle 80 concurrent wireless users?

To the OP: The number of Wireless concurrent users That can connect is not relevant .... what is relevant is understanding the activities [load] that these users will have on the network and in your case the wireless network. You can have 256 wireless users connect but if the load [activity like voi...
by mozerd
Tue Nov 19, 2019 2:37 pm
Forum: Wireless Networking
Topic: Can rb4011igs+5hacq2hnd-in handle 80 concurrent wireless users?
Replies: 14
Views: 2391

Re: Can rb4011igs+5hacq2hnd-in handle 80 concurrent wireless users?

but if streaming and real time activities is part of the equation Then absolutely NO and under those circumstances perhaps 20 concurrent wireless users It is obvious you do not know any of the device specs and obviously you have never used this model. It is a quad core 1.4Ghz with 1 GB of RAM that ...
by mozerd
Mon Nov 18, 2019 11:35 pm
Forum: Wireless Networking
Topic: Can rb4011igs+5hacq2hnd-in handle 80 concurrent wireless users?
Replies: 14
Views: 2391

Re: Can rb4011igs+5hacq2hnd-in handle 80 concurrent wireless users?

Good day, please I want to know if the Mikrotik Router rb4011igs+5hacq2hnd-in can handle 80 concurrent wireless users.... Thanks. It all depends on on the kind of activity your users are doing ... if it’s just email and browsing without streaming and no real time activities then 80 concurrent wirel...
by mozerd
Sun Nov 10, 2019 8:02 pm
Forum: Beginner Basics
Topic: Total Beginner (hEX S) Simple SOHO Setup [SOLVED]
Replies: 5
Views: 1807

Re: Total Beginner (hEX S) Simple SOHO Setup [SOLVED]

According to the following doc http://www.motorolacable.com/documents/MB8600-QuickStart-revE.pdf Your cable modem is strictly a modem only with no other capability so the following should work for you. 1. Reset the modem but make sure that neither your hEX S or pc is attached. Shut down the hEX S 2....
by mozerd
Sun Nov 10, 2019 4:53 pm
Forum: Beginner Basics
Topic: Total Beginner (hEX S) Simple SOHO Setup [SOLVED]
Replies: 5
Views: 1807

Re: Total Beginner (hEX S) Simple SOHO Setup [SOLVED]

Since you are using the Motorola MB8600 the first thing that you should do is to find out is if the Cable Modem is BRIDGEABLE ... if the answer is YES then put the 8600 in bridge mode and then your hEX S (RB760iGS) will work with the default configuration otherwise you will experience the problems y...
by mozerd
Sun Nov 03, 2019 6:46 pm
Forum: General
Topic: SFP and SFP+ supported standards?
Replies: 7
Views: 1305

Re: SFP and SFP+ supported standards?

The compatibility page is a red herring and an escape from the real issues: Another example .... Does the MikroTik hEX S SFP port have the same technical behavior as the SFP port provided in the RB2011? Why does the HUAWEI MA5671A SFP module WORK in the MikroTik RB2011 SFP port but does not work in ...
by mozerd
Sun Nov 03, 2019 6:18 pm
Forum: General
Topic: SFP and SFP+ supported standards?
Replies: 7
Views: 1305

Re: SFP and SFP+ supported standards?

Yes, but the USER forum needs to have a public response from MikroTik to my IMPORTANT questions because the SFP SFP+ issue is of vital importance especially for users of GPON networks in the USA and Canada.
by mozerd
Sun Nov 03, 2019 3:56 pm
Forum: General
Topic: SFP and SFP+ supported standards?
Replies: 7
Views: 1305

Re: SFP and SFP+ supported standards?

The silence is deafening. ..... shame!
by mozerd
Fri Nov 01, 2019 3:44 pm
Forum: Wireless Networking
Topic: Audience 5Ghz
Replies: 11
Views: 4561

Re: Audience 5Ghz

Your experience is more proof that Audience is not in any way ready for prime time. I have no Audience Mesh experience but I do have lots of Netgear Orbi Mesh experience and with Orbi [3 units] in 6,000 sq foot residence and close to 70 devices ... all 2 stream and 3 stream devices experience betwee...
by mozerd
Fri Nov 01, 2019 11:36 am
Forum: General
Topic: SFP and SFP+ supported standards?
Replies: 7
Views: 1305

Re: SFP and SFP+ supported standards?

Let me ask the question another way: Why does SFP and/or SFP+ have different behaviors on MikroTik Routers that contain these ports? for example On RB4011 SFP+ does not behave the same way as it does on CCR1009 ... etc. Regardless of which MikroTik Router model should not all SFP and/or SFP+ modules...
by mozerd
Thu Oct 31, 2019 4:30 pm
Forum: General
Topic: SFP and SFP+ supported standards?
Replies: 7
Views: 1305

SFP and SFP+ supported standards?

Can MikroTik please enumerate which industry standards are the SFP and SFP+ modules built to for all current Router models only.
by mozerd
Tue Oct 29, 2019 2:24 pm
Forum: Announcements
Topic: v6.45.7 [stable] is released!
Replies: 104
Views: 42627

Re: v6.45.7 [stable] is released!

If I dont use winbox externally and I change the default port to something else, where is the risk from this latest vulnerability? If I was to use winbox externally via VPN ( IKEv2), where is the risk? @anav No need to change winbox default port when using winbox internally -- risk is only from com...
by mozerd
Tue Oct 29, 2019 12:48 pm
Forum: Announcements
Topic: v6.45.7 [stable] is released!
Replies: 104
Views: 42627

Re: v6.45.7 [stable] is released!

RouterOS without WinBox is like car without seats, it still runs, but it's not enjoyable ride. But it's clear now that it's not good idea to let it be exposed to whole world. I though that it shouldn't be a problem anymore, that MikroTik surely fixed it, to require robust authentication first befor...
by mozerd
Fri Oct 25, 2019 8:53 pm
Forum: General
Topic: CVE-2019-15055
Replies: 16
Views: 3024

Re: CVE-2019-15055

As you know, a vulnerability is just a crossing of security boundaries. CVE-2019-15055 allows someone to elevate from an admin account to root shell. That seems like a security boundary to me. The POINT you make is exactly correct. ROOT SHELL is not permitted under RouterOS because it’s proprietary...
by mozerd
Fri Oct 25, 2019 3:38 pm
Forum: General
Topic: CVE-2019-15055
Replies: 16
Views: 3024

Re: CVE-2019-15055

It should be pointed out that this vulnerability is more severe than reseting passwords. An attacker can use this vulnerability to get a root shell on the router. Unfortunately, MITRE (the org that runs the CVE program) hasn't updated the description. Access to a root shell is pretty concerning. I ...
by mozerd
Wed Oct 23, 2019 11:53 pm
Forum: General
Topic: CVE-2019-15055
Replies: 16
Views: 3024

Re: CVE-2019-15055

It seems mozerd that they are not updating the blog. Good pickup!
(of course this assumes that 15055 is actually covered).
Yes 15055 is mentioned in the logs ... MikroTik needs to be much more proactive in making sure that the blog site is uptodate especially where security issues are concerned.
by mozerd
Wed Oct 23, 2019 10:36 pm
Forum: General
Topic: CVE-2019-15055
Replies: 16
Views: 3024

Re: CVE-2019-15055

Already fixed in 6.45.5 and others. So what?
Would be NICE IF it was mentioned in the following link

https://blog.mikrotik.com/
by mozerd
Wed Oct 23, 2019 10:05 pm
Forum: General
Topic: CVE-2019-15055
Replies: 16
Views: 3024

CVE-2019-15055

by mozerd
Mon Oct 21, 2019 8:18 pm
Forum: Forwarding Protocols
Topic: mesh behaving badly, ethernet stuck on outside
Replies: 13
Views: 3200

Re: mesh behaving badly, ethernet stuck on outside

This contrasts with regular hub-type networks, where a failure in a central router or switch could cut large parts of the network off from each other. Repeaters, on the other hand, do not increase a network's resilience. If the router or access point broadcasting the original wireless signal goes d...
by mozerd
Sun Oct 20, 2019 9:35 pm
Forum: Forwarding Protocols
Topic: mesh behaving badly, ethernet stuck on outside
Replies: 13
Views: 3200

Re: mesh behaving badly, ethernet stuck on outside

Audience does not use classic MESH with repeating...!
Its better than that...!
Classic Mesh does NOT use repeating period.
by mozerd
Sun Oct 20, 2019 4:38 pm
Forum: Forwarding Protocols
Topic: mesh behaving badly, ethernet stuck on outside
Replies: 13
Views: 3200

Re: mesh behaving badly, ethernet stuck on outside

In the following MikroTik Wiki MESH is described as Interface/HWMPplus
What would be very helpful from my perceptive is for MikroTik to illustrate Audience Mesh utilizing HWMPplus as part as parcel of the illustrations offered.
by mozerd
Sat Oct 19, 2019 6:31 pm
Forum: Forwarding Protocols
Topic: mesh behaving badly, ethernet stuck on outside
Replies: 13
Views: 3200

Re: mesh behaving badly, ethernet stuck on outside

I was never satisfied with how mesh works... Also because mesh involves repeating you have loss in bandwidth which is really bad... I would suggest you use a non mesh configuration that does not involve repeating... For example the new MikroTik Audience AP does mesh but without using any repeating....
by mozerd
Tue Oct 15, 2019 6:26 pm
Forum: Beginner Basics
Topic: CCR1009-7G-1C-1S+PC
Replies: 16
Views: 3262

Re: CCR1009-7G-1C-1S+PC

started using the CCR1009-7G-1C-1S+PC and from the description it seemed to me that combo port should be used as WAN from ISP, but I can't figure out how to set it up so that the connection from my ISP would come to that combo port so that I can use the remaining ethernet 1-7? You should be able to...
by mozerd
Sat Oct 12, 2019 5:23 pm
Forum: General
Topic: CCR1009 Hardware offload [SOLVED]
Replies: 3
Views: 1096

Re: CCR1009 Hardware offload [SOLVED]

Ccr1009 has atheros 8237 switch chip that according to the manual supports hw offload when dhcp snooping,igmp snooping,vlan filtering and mstp are off... so why i dont see hw offload enabled ?
The new generation of CCR Routers do not any switch chip ..... That is. FYI
by mozerd
Fri Oct 11, 2019 4:47 pm
Forum: Wireless Networking
Topic: Audience vs Eero?
Replies: 40
Views: 11423

Re: Audience vs Eero?

I will certainly try again, and report back. It is 3.10pm South African time now and I have been at it since early (no success so far), so my brain is jelly at the moment. It should not be as hard as you seem to be experiencing. Can you describe how the chain of gear you are using is connected? I.e...
by mozerd
Thu Oct 10, 2019 6:44 pm
Forum: Wireless Networking
Topic: Audience vs Eero?
Replies: 40
Views: 11423

Re: Audience vs Eero?

Information and capabilities for the Audience Mesh is very sparse .... specs looks interesting but not interesting enough for me to make a trial investment without much further usability information. MikroTik should show off some real world application to demonstrate Audience Mesh properly.
by mozerd
Mon Sep 23, 2019 6:08 pm
Forum: General
Topic: Audience Tri-band mesh
Replies: 14
Views: 3228

Re: Audience Tri-band mesh

In other words, what is the real concern you are attempting to articulate but being too vague about it?? Hi anav Audience TriBand Mesh is a brand new product so its too early for any concerns. I do not use MikroTik wireless for ANY of my clients --- I only use Ubiquiti wireless AP's for custom inst...
by mozerd
Mon Sep 23, 2019 4:50 pm
Forum: General
Topic: Audience Tri-band mesh
Replies: 14
Views: 3228

Re: Audience Tri-band mesh

Question is not clear. The Audience runs standard RouterOS. It supports ipv6 just like any other MikroTik device.
Can you please show some Winbox screen shots of Audience in action and RouterOS interaction with ipv6 enabled wireless clients.
by mozerd
Sun Sep 22, 2019 6:45 pm
Forum: General
Topic: Audience Tri-band mesh
Replies: 14
Views: 3228

Audience Tri-band mesh

How does the Audience Tri-band mesh AP support ipv6?
by mozerd
Mon Sep 09, 2019 5:24 pm
Forum: General
Topic: A serious issue on RB4011 after upgrade to RouterOS version 6.45.2
Replies: 11
Views: 3911

Re: A serious issue on RB4011 after upgrade to RouterOS version 6.45.2

6.45.3

*) rb4011 - fixed SFP+ interface linking (introduced in v6.45.2);
Fixed? I do not believe its fixed based on the experience in the Following thread"
MikroTik RB4011 SFP+ GPON

How disappointing and unprofessional!
by mozerd
Sun Sep 01, 2019 4:45 pm
Forum: Beginner Basics
Topic: How to configure the VLANs - two trunk and one access port
Replies: 4
Views: 1151

Re: How to configure the VLANs - two trunk and one access port

By the way just because the word GURU is next to my name it doesn't mean I know jack sheite. :-)
You may not know jack sheite BUT IMO you're one very smart hombre :lol:
by mozerd
Tue Aug 20, 2019 3:17 pm
Forum: General
Topic: When can developers improve ipv6 functionality?
Replies: 16
Views: 2392

Re: When can developers improve ipv6 functionality?

It will be another load of fun if we ever decide that we actually want direct communication. Because unless something changed, recommendation for default router config (home devices and such) was to block new incoming connections from internet. So you will have devices all with public addresses, bu...
by mozerd
Mon Aug 19, 2019 4:36 pm
Forum: General
Topic: When can developers improve ipv6 functionality?
Replies: 16
Views: 2392

Re: When can developers improve ipv6 functionality?

A long time ago, there was the sound of perfecting ipv6 modules in the forum. It has been nearly six or seven years in an instant, and many functions are still lacking. ipv6 nat, policy route, routing mark, and many other functions are completely absent. I tried opnsense, pfsense and vyos, edgeos, ...
by mozerd
Thu Aug 08, 2019 3:21 pm
Forum: Announcements
Topic: Newsletter #90
Replies: 55
Views: 25279

Re: Newsletter #90

:

• PWR-LINE PRO

Download the newsletter here:
https://download2.mikrotik.com/news/news_90.pdf
Most Power-Line adapters made by the competition are sold in packages that contain 2 adapters.
Its not clear to me if the PWR-LINE PRO package contains 1 or 2 adapters --- please clarify.
by mozerd
Fri Aug 02, 2019 1:52 pm
Forum: General
Topic: A serious issue on RB4011 after upgrade to RouterOS version 6.45.2
Replies: 11
Views: 3911

Re: A serious issue on RB4011 after upgrade to RouterOS version 6.45.2

6.45.3

*) rb4011 - fixed SFP+ interface linking (introduced in v6.45.2);
Very strange that no official announcement on the Forum and when using Winbox "Check for updates" only 6.45.2 displays.
by mozerd
Thu Aug 01, 2019 12:16 am
Forum: General
Topic: A serious issue on RB4011 after upgrade to RouterOS version 6.45.2
Replies: 11
Views: 3911

Re: A serious issue on RB4011 after upgrade to RouterOS version 6.45.2

But my bad luck at this time was not gone. After downgrading both firmware and RouterOS to the previous version my router still refused to obtain the ip-address from the ISP via DHCP. I got in touch with the ISP support and they checked that the switch port my RB is connected to is set properly (ne...
by mozerd
Tue Jul 30, 2019 5:49 pm
Forum: General
Topic: The RB4011 does not support Passive DAC modules and SFP GPON modules
Replies: 13
Views: 4369

Re: The RB4011 does not support Passive DAC modules and SFP GPON modules

TL;DR: There is a fault with the RB4011 supporting communication with some gigabit or gigabit-like SFPs (see forum comments about interface not working after upgrading firmware). Once resolved, the brochure page should more correctly say 'The RB4011 does not support Passive DAC modules or dumb SFP ...
by mozerd
Tue Jul 30, 2019 5:16 pm
Forum: General
Topic: The RB4011 does not support Passive DAC modules and SFP GPON modules
Replies: 13
Views: 4369

Re: The RB4011 does not support Passive DAC modules and SFP GPON modules

No. An interface is the module that you put into your SFP/SFP+ cage, not the cage itself. The specification of the cage itself is (almost) purely mechanical. And my understanding is that both host software and host hardware must be compatible with the type of transceiver you want to use. It appears...
by mozerd
Tue Jul 30, 2019 2:50 pm
Forum: General
Topic: The RB4011 does not support Passive DAC modules and SFP GPON modules
Replies: 13
Views: 4369

Re: The RB4011 does not support Passive DAC modules and SFP GPON modules

SFP/SFP+ are Network INTERFACES and these network interfaces should work much like any other network interface. THAT is the whole point . The small form-factor pluggable (SFP) is a compact, hot-pluggable network interface module used for both telecommunication and data communications applications. ....
by mozerd
Mon Jul 29, 2019 5:50 pm
Forum: General
Topic: The RB4011 does not support Passive DAC modules and SFP GPON modules
Replies: 13
Views: 4369

Re: The RB4011 does not support Passive DAC modules and SFP GPON modules

MORE Info on FTTH -- in Canada Bell uses GPON for FTTH and that means <<<< ---- >>>> point to multi point . Standard SFP/SFP+ modules are point to point. Plus there needs to be a processor in the GPON SFP to encapsulate the Ethernet frames into the GPON frames. The issue is that Standard modules don...
by mozerd
Fri Jul 19, 2019 8:45 pm
Forum: General
Topic: The RB4011 does not support Passive DAC modules and SFP GPON modules
Replies: 13
Views: 4369

Re: The RB4011 does not support Passive DAC modules and SFP GPON modules

@Error0x29A, thanK you —— so MikroTik used an ineffective chipset to drive the SFP+ cage .... I will no longer recommend this product and in fact I will discourage others from acquiring/using this POS.
by mozerd
Fri Jul 19, 2019 6:12 pm
Forum: General
Topic: The RB4011 does not support Passive DAC modules and SFP GPON modules
Replies: 13
Views: 4369

Re: The RB4011 does not support Passive DAC modules and SFP GPON modules

Same thread here .. https://forum.mikrotik.com/viewtopic.php?t=140806 The thread you linked to has some similarities BUT it is NOT the same. Its quite apparent that RouterOS and SFP[+] cages [interfaces] do not interact with consistency across all MikroTik routerboards --- and THAT is a real shame ...
by mozerd
Thu Jul 18, 2019 2:33 pm
Forum: General
Topic: The RB4011 does not support Passive DAC modules and SFP GPON modules
Replies: 13
Views: 4369

The RB4011 does not support Passive DAC modules and SFP GPON modules

HUAWEI MA5671A SFP >>> This is a GPON SFP module

Why does the HUAWEI MA5671A SFP module WORK in the MikroTik RB2011 SFP port but does not work in the MikroTik RB4011 SFP+ port?
by mozerd
Wed Jul 17, 2019 3:41 pm
Forum: General
Topic: SFP RB4011
Replies: 20
Views: 3953

Re: SFP RB4011

SFP+ interface compatibility settings with SFP optical transceivers SFP+ interface compatibility settings with SFP optical transceivers For MikroTik devices with SFP+ interface that support both 10G and 1G link rate following settings are needed to be set on both linked devices for required interfa...
by mozerd
Wed Jul 17, 2019 2:12 pm
Forum: General
Topic: Why Mikrotik ???
Replies: 32
Views: 9412

Re: Why Mikrotik ???

Latvia is a small country in northern part of Europe. Latvia is part of the European Union, Eurozone, EEZ and Schengen. The Latvian language and culture is unique and share nothing in common with Russia. For a part of the 20th century, Latvia was forcefully occupied by the Soviet regime, but this m...
by mozerd
Tue Jul 16, 2019 2:58 pm
Forum: General
Topic: Why Mikrotik ???
Replies: 32
Views: 9412

Re: Why Mikrotik ???

(a) What is Mikrotik target group? Business or consumers. (b) What is making Mikrotik unique, why pick Mikrotik instead of Cicso? (c) Do Mikrotik have any limitations? If any, what can MicroTik do too improve? (a) tech savvy people (b) a superb value proposition that is -- so far -- unmatched by an...
by mozerd
Wed Jul 10, 2019 11:06 pm
Forum: General
Topic: SFP RB4011
Replies: 20
Views: 3953

Re: SFP RB4011

While Mikrotik has it's share of problems with proper operation of different SFP modules (even with basic things, such as reading diagnostic values like temperature, Tx & Rx power, ...) I don't think its the problem in hardware implementation of SFP ... SFP interface is well standardized. But then ...
by mozerd
Wed Jul 10, 2019 4:44 pm
Forum: General
Topic: SFP RB4011
Replies: 20
Views: 3953

Re: SFP RB4011

And such "intelligent" SFP modules need some support from router which router might not know how to provide. Due to this GPON by Bell might not work any better on Routerboards when they move to 10Gbps sync rate. Thanks @mkx ...... so what you're saying is that due to MikroTik's SFP[+] implementatio...
by mozerd
Wed Jul 10, 2019 4:06 pm
Forum: General
Topic: SFP RB4011
Replies: 20
Views: 3953

Re: SFP RB4011

You appear to be confusing Active vs. Passive optical networks with Active vs. Passive SFP+ modules: All optical SFP[+] modules themselves are active as they contain electronics to convert between optical and electrical signals. Only direct attach cables (DAC) can be active or passive - active cabl...
by mozerd
Tue Jul 09, 2019 5:04 pm
Forum: General
Topic: SFP RB4011
Replies: 20
Views: 3953

Re: SFP RB4011

So David, are you saying that in the near future we may be able to connect the RB4011 directly to the incoming fibre line from the street and bypass the ONT? I know the technician spent some time configuring the ONT to the account settings on their database (so they talk to each other). How would y...
by mozerd
Tue Jul 09, 2019 2:59 pm
Forum: Beginner Basics
Topic: RB4011iGS+5HacQ2HnD on 6.45.1 Extremely slow network throughput to WAN
Replies: 12
Views: 1826

Re: RB4011iGS+5HacQ2HnD on 6.45.1 Extremely slow network throughput to WAN

Something is definitely wrong with your RB4011 ... try one more process of running netinstall-6.45.1 .... this will eliminate any form of corruption in the NAND memory and reinstall ROS -- then proceed with your Copper SFP as WAN link to see if that works -- it should and if it does not then I would...
by mozerd
Mon Jul 08, 2019 8:04 pm
Forum: Beginner Basics
Topic: RB4011iGS+5HacQ2HnD on 6.45.1 Extremely slow network throughput to WAN
Replies: 12
Views: 1826

Re: RB4011iGS+5HacQ2HnD on 6.45.1 Extremely slow network throughput to WAN

My apologies I misunderstood. Is you Cable Gateway in Bridge mode? The power levels are excellent and your RoS code looks good to me. Confirm that your Ethernet cable is good.very strange that you’re not getting the throughput ..... perhaps a defective port, try another port. Also make sure to shutd...
by mozerd
Mon Jul 08, 2019 3:41 pm
Forum: Beginner Basics
Topic: RB4011iGS+5HacQ2HnD on 6.45.1 Extremely slow network throughput to WAN
Replies: 12
Views: 1826

Re: RB4011iGS+5HacQ2HnD on 6.45.1 Extremely slow network throughput to WAN

I ended having to swap the cisco device back in. Having tried every permutation of interfaces, MSS clamping, doing packet captures (shed loads of DUP ACKs)
If you sincerely want to be helped you need to answer some of the questions asked -- which questions you have chosen to avoid.
by mozerd
Sun Jul 07, 2019 4:55 pm
Forum: Beginner Basics
Topic: RB4011iGS+5HacQ2HnD on 6.45.1 Extremely slow network throughput to WAN
Replies: 12
Views: 1826

Re: RB4011iGS+5HacQ2HnD on 6.45.1 Extremely slow network throughput to WAN

Current: DOWNLOAD 12.09 Mbps UPLOAD 36.14 Mbps Virgin Media<->Vodafone IE Previous: DOWNLOAD 341.11 Mbps UPLOAD 35.96 Mbps Virgin Media<->IP Telecom router-pdn-export.rsc Some questions: I will assume that your WAN connection is Fiber from Virgin Media -- so is the Cisco GigE SFP module white-liste...
by mozerd
Sat Jul 06, 2019 5:26 pm
Forum: General
Topic: SFP RB4011
Replies: 20
Views: 3953

Re: SFP RB4011

This is what happens when you dont regulate industry and companies play these stupid games. Make a standard and follow it. The standards are there and they are being strictly enforced ... and I believe that MikroTik adhere to the standards .... the problem is how the PON providers choose to impleme...
by mozerd
Sat Jul 06, 2019 1:41 pm
Forum: General
Topic: SFP RB4011
Replies: 20
Views: 3953

Re: SFP RB4011

Has anyone tried to login into the SFP and using shell commands to change the rate to see if it connects to RB4011 at 1Gb? @Error0x29A, YES you make excellent points. I have not not tried to login into the SFP .... did not know that could be done because Root is locked on RoS ??? In Canada Bell pro...
by mozerd
Fri Jul 05, 2019 11:04 pm
Forum: General
Topic: SFP RB4011
Replies: 20
Views: 3953

Re: SFP RB4011

As I wrote in another post, Russian users have no problems using GPON modules with theirs RB4011. Perhaps not all GPON models are supported but GPON SFP Sticks from Zisa OP151S and D-Link DPN-100 are reported as working https://translate.google.com/translate?sl=auto&tl=en&u=http%3A%2F%2Fforum.ru-bo...
by mozerd
Fri Jul 05, 2019 5:42 pm
Forum: Beginner Basics
Topic: Advice | Recommendation for new router
Replies: 10
Views: 1774

Re: Advice | Recommendation for new router

Strange. Users in Russia have no problems using SFP modules with RB4011 like D-Link DPN-100 or Zisa OP151S. They are sourced from T&W Shenzhen Electronics. Easily recognizable by firmware starting as TW2362H-CDxx In Canada, Bell company provides at least 2 Nokia and 1 Huawei to their customers. Are...
by mozerd
Thu Jul 04, 2019 9:05 pm
Forum: Beginner Basics
Topic: Advice | Recommendation for new router
Replies: 10
Views: 1774

Re: Advice | Recommendation for new router

Mozerd just to be clear with the SFP port and that is there is nothing wrong with using that port downstream on your network when matched/mated with the right components, not everybody or every situation assumes the sfp port is upstream to the provider??? the whole point of SFP [+] port is to conne...
by mozerd
Thu Jul 04, 2019 5:16 pm
Forum: Beginner Basics
Topic: Advice | Recommendation for new router
Replies: 10
Views: 1774

Re: Advice | Recommendation for new router

Services - PPPoE, SQM QoS cake?, ipv6 tunnelbroker, upnp and ability to add/ customize further. What to consider? Option 1: New router with built in wifi? Option 2: New router only + Tenda AC18 as wifi access point? Option 3: New router + new wifi access point? Some are suggesting the RB4011 and Ye...
by mozerd
Thu Jun 27, 2019 3:48 pm
Forum: Beginner Basics
Topic: single IP constantly trying to log to my Mikrotik
Replies: 57
Views: 6812

Re: single IP constantly trying to log to my Mikrotik

Hi all, i'm not very skilled in networking except that i know some basics. Anyway, i set FW rule to drop incoming connections from this IP 141.98.80.115 But everyday i see in the logs that this IP is trying to get access to my router. A FYI; MOAB has IP 141.98.80.115 listed as an attacker .... IP L...
by mozerd
Wed Jun 19, 2019 3:03 pm
Forum: Wireless Networking
Topic: Great news: Terragraph
Replies: 12
Views: 3637

Re: Great news: Terragraph

Similar networks can be already made by using our devices, as explained by Attila Bologh in MUM Hungary 2019
https://mum.mikrotik.com/presentations/ ... 506180.pdf
EXCELLENT presentation by Attila Bologh -- business opportunities galore --- very entrepreneurial.
by mozerd
Fri Jun 14, 2019 12:48 am
Forum: General
Topic: US ban on some products from China ( is there a possible effect to Mikrotik ?)
Replies: 6
Views: 1464

Re: US ban on some products from China ( is there a possible effect to Mikrotik ?)

Yes, I also would like and official response regarding this subject as some of my clients are based in the US and subject to US Gov directives.
by mozerd
Sun Jun 02, 2019 8:28 pm
Forum: General
Topic: MOAB mother of all blacklists
Replies: 88
Views: 16007

Re: MOAB mother of all blacklists

But don't misrepresent the reason for your price doubling.
No misrepresentation ... my bandwidth costs have doubled so based on that I decided I would double the price for a subscription. Thanks for your interest in my business affairs .. to me you pe1chl sound like a Socialists/communist.
  • 1
  • 2