/ip address
add address=10.10.59.1/24 interface=ether2 network=10.10.59.0
/ip address
add address=10.10.59.1/24 interface=bridge-local network=10.10.59.0
ok, indeed CRS3xx are very very good...What do you mean by modern ?
CRS3xx line.
What do you mean by modern ?Looks good! And proof, that we need a short depth modern PoE switch.
Exactly...Looks like DS416play or alike.
Exactly, it was added on ROS v 6.49.1It is normal that it now asks to press the RESET button
I like this suggestion.Also check Basebox (and the set of pigtail cables).
What's the purpose of that ?will sit hidden inside a grounded electrical cabinet -- which I can't imagine will result in good Wi-Fi experience.
They don't.It looks like they have no IP addresses set
What does that mean ?The 4-MAC problem on Wi-Fi...
Can we see an export of your Switch configuration ?I have tried this and I keep losing access to my dlink device, the moment that I enable vlan mode secure on the port
Instantly...Instantly or after reboot?ROS v 7.2, setting connection tracking to off created the exact same Dynamic entries in the RAW table too...
How can actually someone help you with almost no valuable information provided ?our network is down help me please
If by that you mean a seperate network, then you can use VLANs.how to make the configuration to emit a wifi zone?
But isn't that what hide-sensitive does ?When ask something like that, remember to the user to remove sensitive data inside the posted config...
The Router will only reply to its own MAC address.Much clearer now. Still some doubt about the reply-only ARP feature though.
Many, check in the Ethernet Routers section https://mikrotik.com/products/group/ethernet-routersWhich Mikrotik router can handle more than that?
You shouldn't ( since you expect better results )yes, I use it as a router.
I used to change the names in the past, but i don't do that anymore.I never change interface name of physical interfaces... ;)
Only ?I think it can rollback up to about 20 commands
Then the lte interface was never there, it dit not dissapear after the update...Does anyone know, why my KNOT after upgraded to version 7.2 the LTE Interface is missing?
L2TP/IPsec, OVPN, Wireguard, IKEv2 are some of the protocols you can use for Road warriors but for Site to Site tunnels as well ...How else can I replace it in the way I can access my network remotely?
@sob, do we actually need the dst-port=1701 here ?Code: Select all/ip firewall filter add chain=input protocol=tcp dst-port=1701 ipsec-policy=in,ipsec action=accept
As long as they do not match.So a hybrid port only has one untagged vlan (and as many tagged vlans as required)
Updating an LTAP on 7.2.1, the ROS update was successfulI'd also recommend trying 7.2. It has a lot of LTE fixes over any of the 7.1.x versions.
What do you mean ?There is no even IP type ipv4ipv6
RSRP of -86db does not indicate on any way loss of connection...RSRP better than -86db
Why don't you just test it ?Which means my fear may be valid - what if Hex negotiates too little power and / or voltage for the device it powers (via passive poe out)?
From a quick look to some of my production equipment a CAP AC and a wsAP for example, that are capable of af/at at POE in are fed with 52V from a CRS328...My fear is simple - what if mikrotik negotiates voltage, that is too low for my unifi device
Since you want to learn, take a look here viewtopic.php?t=143620I am a happy beginner who wants to learn more
Well i think @mkx answered your question...Not sure if this is hairpin nat?? In the sense that its redirecting wanips vice ensuring traffic gets back from server to originator on same LAN.Nice explanation of Hairpin NAT from @mkx
I am reffering to the device that gives power to the RB5009 through POE...It's not switch - it is 5009
Personally i am not saying that it will cause any problems...I don't see what problems could this behaviour cause.
Can someone explain not in a video?
I guess because it is not a bug...I sent this bug to the mikrotik team 8 days ago. But no news yet.
![]()
It would be interesting if the behavior is different...Did you try connecting over IP instead of MAC?
You will not Bridge the VLAN interfaces, but the ports...But they need to be in the same bridge for that to work? Or not?
Wrong configuration...VLAN Filtering on the bridge is disabled and when I enable it I lose all connection and have to restore to a previous config.
As @tangent already said, you configure a Public static IP the same way as you would configure any other IP...
Great...My CyberPower CST135UC works fineOnly APC ups are supported ?
Can you please /export hide-sensitive the configuration you have after reset to no defaults was made ?Everyone has been so helpful and the config tips get me going however, defaulting and resetting and netinstalls all get me back to my same problem...
I agree on that, but it is a users mistake if Capsman forwarding is used on a low performance CPU device...Though I'm not @gotsprings...local forwarding will not cause a high cpu load on the CAPsMAN.
So i guess it is not solved...-I tried to use local forwarding, but it didnt have any impact on the wifi speed
That is the version the device has installed right now...Hello how can we downgrade from the factory installed version 7.1.1
I 've not yet used any RB5009 with a rack mount kit, but watching the Gallery photos https://mikrotik.com/product/rb5009_mou ... -downloads it seems that you can make any combination up to 4 RBs.Can I use the one that mikrotik makes for a single rb5009?
Great...Looks like it works. I now have 2 set and all good
Thanks!!!
Features and options depend on the hardware being used...it does offer the option tho in the OS
Nat rules in post #2 is what you re asking for...I want the above rule to work so inside to outside nat and nat to the sever1.
Since server2 is a web server, I like the webserver to see the public source IP, so that logging of usage would be correct.
No.Do all of them should be slaves of a bond ?
Using Layer2 is not wrong at all...Using Source MAC address for EtherChannel Load Balancing on the Cisco appears to be the worst choice for your use case, and layer 2 on the Mikrotik is not great either.
You can give it a try...No , do you think that will do any change ?Did you try to netinstall the device and configure again ?
Works fine for me...Thank you, but it still doesn't work properly. When connecting in a new window, Winbox takes about 20 seconds to spawn the new window. Before 3.33 everything worked properly instantly.
What about it ?yes, thank you, i already set this 2 modes and they are working. only for the mybridge wlan i have no clue how to solve this...
system logging add topics=pppoe,debug action=remote