Use VLANs... Of course your wan port is not included inside the Bridge.
Also, if igmp-snooping is disabled then multicast traffic is flooded on all ports.
You mean Bridge filter rules ?There is the 2004 but sadly its throughput is no better than the 5009, when you compare filter rules to filter rules at 512 bytes.
Revision is not the same as firmware version.I did update the switches to whatever was current that day. Ergo routerOS and board firmware.
When using 802.3ad, you should know that all links participating in the aggregation must operate at the same speed and duplex mode..This works great sort of.
Service Tag is used when we need management access in cases that double VLAN tagging is used...use-service-tag=yes
Probably because your configuration was wrong...I have tried it with filtering but nothing changed.
You can solve that with VLANs...Excellent - thanks for the updated info and the links.
Makes sense - once the interface is consumed as the passthrough device, the only way I can communicate with the SXT is through RoMON.
Thanks all.
That is a complicated explanation for otherwise a simple answer...
A bridge is a virtual interface used to switch traffic between hosts.All physical interfaces (except WAN) are contained within one bridge, why?
Nice solution.Easy dont use capsman.
Actually there are plenty of really good Routers ( in your case ) to choose ...There is a problem MT has not many useful models
Zerotier is available only in ARM devices with ROS v7.Seems it doesn't be available for 951G-2HnD (yet?)Maybe zerotier ???
.....we have only just 1 router....
What emulation software are you using ?I can't install Zerotier on this emulator
Inherits the complete config ? How ?or the full HA setup where the backup router inherits the complete configuration of the primary one
It seems you have Layer1 issues...The first week, we had random lockups and trouble keeping the eth port registered
Can you provide more details on that ?10.0.0.255 and 10.0.1.0 are not well accepted from all devices.
I don't use quickset.Yes but so now is quickset VPN
And why is that ?OpenVPN, is not a requirement its a disease.............
You got many choices...Which MT router would be best for
Like ?Details minor details..............
I don't see anything different in your config than what i suggested...
Although zach is pretty close to the mark!
I don't agree.can all be removed
What do you mean by New interface bonding ?New interface bonding, diferent modes
Yes both can be done...I think you can do both:
Maybe anyone else can confirm?
- one pool with two ranges (10.0.0.2-10.0.0.254 and 10.0.1.1-10.0.1.254)
- one pool (10.0.0.2-10.0.1.254)
According to specs, Max out per port output (input 30-57 V) 450 mAThe more current through the PoE line, the more power dissipated, so the more heat generated.
But only for ARM devices...you could also consider zerotier (goes through a third party) which is now an available module on MT OS.
After upgrading from what version ?Anyone alse already tried this "STABLE" version?
i need to hard reset to make it work
Does this have to do with the LTE interface totally missing in some occasions ?*) lte - improved LTE interface detection for LtAP-2HnD devices;
ok.You will see groups of ports stop forwarding traffic AT ALL until reboot.
No, my mistake.. I forgot about the FCSyes, I see the user want use VLAN:
MTU 9000 + 14 l2 heading + 4 FCS + 4 VLAN = L2MTU 9022
I didn't notice, did I do something wrong?
9022 ?MTU 9000 + VLAN = L2 MTU 9022
I will agree on that...maybe is doable with scripting
Does something like that exist ?flap protection
Any reference on that ?The "48" is jus a standard de-facto, but can be 30W at 24V and still 802.3at...
SA mean Sector Antenna
All power options support a wide voltage range of 24 – 57 VOk, but then they should mention that passive PoE is supported in datasheet. They only wrote 802.3af/at everywhere.
@rextended, any chance you know what "SA" stands for ?11° (+/- 5,5°) the non-SA and 60° (+/-30°) the SA
I would agree on that too...I would suspect the cables, are they copper or CCA? What exact cable is used?
and set the lease time to 100 years.
Why ?vlan-filtering=yes
Then how ?I don't need to queue them to limit traffic
@sindy, what do you mean ?how do you deal with the havoc it causes on NAT?
Did you actually netinstall the device ?Yep, I've tried Netinstall, I can't see Device after resetting
It will switch to the backup bootloader but the device can still be reset with no problems...Also, do not press the reset button before applying power - doing so would switch to a backup bootloader which is usually not what you need.
No there is no conflict, it simply does nothing... you can test and see how it goes...thanks for the follow up Zacharias, is there any conflict on setting this in the parent queue? i can probably try reverting to *default*, and see if there is any change...
Why do you need a beeper ?Yesterday I bought a hAP ac³ which is not cheap and with great disappointment I found that it does not play sounds
Revet back to 6.48.6.
Is like you want install Windows 11 on a old Pentium with 1GB of RAM and 1GB of HDD...
You mean MRRU?Have you ever wondered why MRU is specified for PPP* interfaces?
Those values are good...RSSI = -25 dBm
RSRP = -59 dBm
SINR = 10 dB
RSRQ = -10 dB
RSRQ = -8.0 dB
Could that be indeed possible ?someone did it on purpose so that they could remotely control that device via virtual serial ...
They will be tagged on egress...All of those VLANs (3500, 3508, 3510, 3518, 3520, 2528) will be tagged on egress/ingress on the physical interfaces.
You are so correct on that ... I just guessed that probably the question is why there is no 1gbps advertising from the RBD22UGSWhat is the question?
How can you tell that ?Form the image, appear a MTU error.
yesam I right in assuming this would be the MAC of the port it connects to on the hEX?
Can you post your PCC configuration ?This happens even if with that website the pcc has been expliciy bypassed.
Correct...I guess I need to use the serial port
ok, i saw that now.No. I'm about VLAN 20. Check wireless access-list.
/ip address
add address=10.10.59.1/24 interface=ether2 network=10.10.59.0
/ip address
add address=10.10.59.1/24 interface=bridge-local network=10.10.59.0
ok, indeed CRS3xx are very very good...What do you mean by modern ?
CRS3xx line.
What do you mean by modern ?Looks good! And proof, that we need a short depth modern PoE switch.
Exactly...Looks like DS416play or alike.
Exactly, it was added on ROS v 6.49.1It is normal that it now asks to press the RESET button
I like this suggestion.Also check Basebox (and the set of pigtail cables).
What's the purpose of that ?will sit hidden inside a grounded electrical cabinet -- which I can't imagine will result in good Wi-Fi experience.
They don't.It looks like they have no IP addresses set
What does that mean ?The 4-MAC problem on Wi-Fi...
Can we see an export of your Switch configuration ?I have tried this and I keep losing access to my dlink device, the moment that I enable vlan mode secure on the port
Instantly...Instantly or after reboot?ROS v 7.2, setting connection tracking to off created the exact same Dynamic entries in the RAW table too...
How can actually someone help you with almost no valuable information provided ?our network is down help me please
If by that you mean a seperate network, then you can use VLANs.how to make the configuration to emit a wifi zone?
But isn't that what hide-sensitive does ?When ask something like that, remember to the user to remove sensitive data inside the posted config...