Community discussions

MikroTik App

Search found 23 matches

by bolmsted
Sat Aug 15, 2020 4:29 am
Forum: Beginner Basics
Topic: Need help for get rid of the HH3k with Bell Fibe
Replies: 20
Views: 9544

Re: Need help for get rid of the HH3k with Bell Fibe

They (and I) want 2.5Gbps sync on the SFP+ Fibre port and not an RJ45 SFP. Ie 2500Base-R
by bolmsted
Sat Aug 15, 2020 4:20 am
Forum: Beginner Basics
Topic: Encouraging Mikrotik to upgrade VPN capability to use OpenVPN standards
Replies: 5
Views: 2198

Re: Encouraging Mikrotik to upgrade VPN capability to use OpenVPN standards

I think the beef that users have that UDP support for OpenVPN doesn’t exist but everyone seems to be moving to Wireguard
by bolmsted
Thu Aug 13, 2020 8:30 am
Forum: RouterBOARD hardware
Topic: RB5011
Replies: 40
Views: 23051

Re: RB5011

In addition to above - SFP+ports x 2 that can accommodate all speeds / sync so that ISP SFP modules can sync at 2.5Gbps to give full speeds to allow traffic in and route out to a 10G switch Support 10G/5G/2.5G/1G syncing and all SFP port types. I’m only considering RB4011 now because GPON modules we...
by bolmsted
Sat Aug 08, 2020 8:20 pm
Forum: RouterBOARD hardware
Topic: Edgerouter 4/6P/12/12P vs MikroTik RB3011/RB4011/CCR1009-7G-1C-1S+PC (Bell Fibe FTTH)
Replies: 2
Views: 7458

Re: Edgerouter 4/6P/12/12P vs MikroTik RB3011/RB4011/CCR1009-7G-1C-1S+PC (Bell Fibe FTTH)

I would just like to get the full 1Gbps at this point and based other threads in DSL Reports it seems maximum people can get on Bell Canada 1Gbps FTTH is 940/940 using Edgerouter or media converters using existing routers unless people start using ES-16-XG/US-16-XG switches to sync the GPON AT 2.5Gb...
by bolmsted
Sat Aug 08, 2020 8:16 am
Forum: RouterBOARD hardware
Topic: Edgerouter 4/6P/12/12P vs MikroTik RB3011/RB4011/CCR1009-7G-1C-1S+PC (Bell Fibe FTTH)
Replies: 2
Views: 7458

Edgerouter 4/6P/12/12P vs MikroTik RB3011/RB4011/CCR1009-7G-1C-1S+PC (Bell Fibe FTTH)

In the last 2 months I signed up for Bell Canada’s Fibe FTTH service and using their “HomeHub3000” which everyone is trying to bypass in the DSL Reports thread “ https://www.dslreports.com/forum/r31118482-Yes-you-CAN-bypass-the-HomeHub-3000 ” with various solutions ranging from various routers to Li...
by bolmsted
Tue Jul 07, 2020 7:15 am
Forum: Beginner Basics
Topic: Need help for get rid of the HH3k with Bell Fibe
Replies: 20
Views: 9544

Re: Need help for get rid of the HH3k with Bell Fibe

Which Mikrotik did you use to replace the Bell Home Hub 3000. I have the Hauwei ONT SFP GPON that syncs at 2.5Gbps. I see a lot of people using 1Gbps SFP media converters with their routers but the MikroTik routers don’t seem to support above 1Gbps (RB2011, CRS) or don’t support at all (RB4011) My R...
by bolmsted
Tue Jul 07, 2020 7:04 am
Forum: General
Topic: DHCP Offering Lease Without Success
Replies: 119
Views: 130432

Re: DHCP Offering Lease Without Success

I’ve been plagued with this problem for a while with a few devices and with some info from this thread I think I’ve resolved by removing always-broadcast=“yes” from my static dhcp assignments after trying everything under the sun including removing STP/RSTP from my bridge with VLANs configured, etc....
by bolmsted
Wed Jun 24, 2020 8:01 am
Forum: Beginner Basics
Topic: Need help for get rid of the HH3k with Bell Fibe
Replies: 20
Views: 9544

Re: Need help for get rid of the HH3k with Bell Fibe

Any luck with getting Bell Home Hub 3000 replaces with RB4011 or other similar hardware? I saw the poster in the DSL reports thread was using a CRS switch but everything I see says to not use RouterOS on the switch to turn on bridging or routing and you will see performance impacts but if I could ru...
by bolmsted
Tue Mar 10, 2020 8:45 am
Forum: General
Topic: dhcp issue
Replies: 1
Views: 2098

Re: dhcp issue

no one has any input as to why I would see a dhcp issue when you come back from one location being connected to another wifi? the only symptoms I can describe is it would stay connected fror 10 minutes and then you have to reconnect and then it would be like this again before having to reboot the Mi...
by bolmsted
Sat Mar 07, 2020 8:31 pm
Forum: General
Topic: dhcp issue
Replies: 1
Views: 2098

dhcp issue

Hello I have noticed if I talk a work laptop between home and office or to a public wifi and back I sometimes have an issue with network dropping after 10 minutes which is the default dhcp lease time The workaround was to reboot the mikrotik to get a stable network connection since work laptop requi...
by bolmsted
Sun Aug 18, 2019 4:48 pm
Forum: Beginner Basics
Topic: Can't ping router IPs from router
Replies: 1
Views: 1419

Re: Can't ping router IPs from router

Here's a network diagram. Trying to create the bridge for ether2/3 (lan-bridge) and can't ping the IPs on the lan-bridge or VLANs below. I just noticed for some reason I can't ping the IP on ether1 (my internet IP) which I'm pretty sure I could ping before but I can ping the internet default gateway...
by bolmsted
Sun Aug 18, 2019 7:46 am
Forum: Beginner Basics
Topic: Can't ping router IPs from router
Replies: 1
Views: 1419

Can't ping router IPs from router

I'm a little baffled why I can't ping the router IP address from the MikroTik itself. As you can see below, I can ping from a machine on the network to the various interfaces in the router, my switch (.2) my second switch (.3), my AP#1 (.10), my AP#2 (.11), my NAS (.5). What is going on here? I've b...
by bolmsted
Tue Aug 06, 2019 7:09 pm
Forum: Beginner Basics
Topic: connectivity between ports
Replies: 1
Views: 867

connectivity between ports

I have a hEX (rb750gr3) configured as my internet gateway and would like some help here. I want to avoid a misconfiguration leading to loss of access as it is painful to recover but thankfully I have a backup on the flash. I have following setup as my port configuration - ether1 - WAN - ether2-maste...
by bolmsted
Thu Nov 23, 2017 10:12 am
Forum: General
Topic: NFS browsing issue
Replies: 5
Views: 5326

Re: NFS browsing issue

So long story it wasn't an NFS or Mikrotik issue but the database within KODI for all of the content on my NAS share referenced by the old IP address of the NAS before i split it up onto various VLAN segments.
by bolmsted
Thu Nov 23, 2017 10:11 am
Forum: General
Topic: NFS browsing issue
Replies: 5
Views: 5326

Re: NFS browsing issue

OK I just updated the lib nfs issue log and Kodi forums on this but back tracking to here where I posted originally https://forum.kodi.tv/showthread.php?tid=324431 https://github.com/sahlberg/libnfs/issues/232 OK status update.... I just tried mounting within LibreELEC and I was able to mount the fi...
by bolmsted
Wed Nov 22, 2017 5:51 am
Forum: General
Topic: NFS browsing issue
Replies: 5
Views: 5326

Re: NFS browsing issue

The client and NAS are on the same segment (192.168.30.0/24) Synology NAS root@DiskStation:~# ifconfig eth0 Link encap:Ethernet HWaddr 00:11:32:1D:6D:7E inet addr:192.168.88.5 Bcast:192.168.88.255 Mask:255.255.255.0 UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:59951 errors:0 dropped:0...
by bolmsted
Tue Nov 21, 2017 7:24 pm
Forum: General
Topic: NFS browsing issue
Replies: 5
Views: 5326

NFS browsing issue

I'm experiencing a weird problem and trying to identify the cause of the problem and not sure where it is happening. I recently put a Mikrotik RB750GR3 in place to replace my (2) consumer grade TP-Link WDR4300 router/access point and the TP-Link devices have been relegated to AP's for now until I ca...
by bolmsted
Thu Nov 16, 2017 3:59 am
Forum: General
Topic: Port knocking source address list [SOLVED]
Replies: 23
Views: 6340

Re: Port knocking source address list [SOLVED]

OK I'm a bit confused now... does the Mikrotik have an implicit permit all at the end of the firewall rules that we have to explicitly deny? I just inserted a new rule 25 to explicitly drop wan dstnat at the very end.... iptables which I imagine this firewall is based on has an implicit deny all at ...
by bolmsted
Thu Nov 16, 2017 3:27 am
Forum: General
Topic: Port knocking source address list [SOLVED]
Replies: 23
Views: 6340

Re: Port knocking source address list [SOLVED]

Thanks but I'm still not getting the results I desire using this method..... I put your suggested rule into rule 27 but perhaps I have it in the wrong position? Only thing changed below is the actual ports using search/replace I guess I should remove 16,17,18,19,20 since I use the input-knock chain ...
by bolmsted
Wed Nov 15, 2017 1:40 am
Forum: General
Topic: Port knocking source address list [SOLVED]
Replies: 23
Views: 6340

Re: Port knocking source address list [SOLVED]

I have one comment about your port knock design. This may sound nit-picky, but following best practice and "structured" design helps make things easier to troubleshoot for both yourself and for anyone else who has to administrate a box after you.... May not be an issue if this is a home r...
by bolmsted
Tue Nov 14, 2017 3:02 am
Forum: General
Topic: Port knocking source address list [SOLVED]
Replies: 23
Views: 6340

Re: Port knocking source address list [SOLVED]

I was following this example for setting up the Port Knocking so you are basically saying the nat should look like this chain=dstnat action=dst-nat to-addresses=192.168.88.254 to-ports=22 protocol=tcp in-interface=ether1 dst-port=1234 and you rely on the filter of PORTKNOCK_ALLOWED to actually allow...
by bolmsted
Tue Nov 14, 2017 12:56 am
Forum: General
Topic: Port knocking source address list [SOLVED]
Replies: 23
Views: 6340

Re: Port knocking source address list [SOLVED]

What I was trying to explain (but perhaps I was in a rush just before posting) is... 1) Use port knocking 3 or 4 steps or whatever to get in to the protected device (e.g. a computer behind the Mikrotik or the Mikrotik itself) 2) Limit which hosts can actually do the port knocking to a specific set o...
by bolmsted
Mon Nov 13, 2017 7:12 pm
Forum: General
Topic: Port knocking source address list [SOLVED]
Replies: 23
Views: 6340

Port knocking source address list [SOLVED]

I’ve been looking through the wiki and googling but haven’t found anything on this I’ve got port knocking working in my basement lab connected to my internal network and verified the wan side from my existing lan segment (before I move to be my primary router to the Internet) However I wonder if I c...