This is more or less what i will do, if so you can just traffic shape on the termination CPE device, no?
You can also Monitor the CPE device and inform your client of any issue arise - and also automate the process by sending SMS to your clients.
How do your clients going to connect to your network, with what cpe termination that you provide them or one the buy there own? Case You provide them mikrotik antenna you get full management and control so you can throttle from this termination device which is bridge to theire in home router. Case y...
So i've worked on it this morning and setup an CHR on proxmox to check your issue. And i found that if im adding the interfaces while the CHR is running i can't see my added interfaces, but if i reboot the CHR the interfaces are loaded correctly. Note that i was added 3 type of interfaces CHR-proxmo...
Let me check if i got you right You want to connect between your RB4011 to CRS112 with a fiber connection via the SFP+ on the RB4011 and on some SFP cage on the CSR112? If thats the case I don't have straight and clear answer, and here's the reason, By the MSA regulation an SFP+ (10Gbit) cage shoul...
First let me check if i got you right router 1 can talk with router 2 via pptp, router 2 (lets say) is connected to a server with openvpn and you correctly unable to reach the server from router 1. If you want to reach the server from router 1 you have 2 options. 1.easy - create static route on the...
Post your complete config as snippets never reveal the true picture....... /export hide-sensitive file=anynameyouwish also is your WANIP static or dynamic?? My ip is dynamic. <snip> 1 ;;; enable remote access to wordpress chain=dstnat action=dst-nat to-addresses=192.168.88.35 to-ports=8080 protocol...
Hello everyone, At the last couple of weeks im working on wordpress site in my local lab, the site got to situation when i want to get others opinions so i had "port forward" any ingress traffic from WAN with dst-port 8080 using the following dstnat rule #masquerade is shown for your infor...
try to locate rule 10 on the 2th place, then try to ping from your vpn.
the firewall is work like instruction sets, one by one and the first match is the one that catches.
if you can please share with us your mikrotick route list.
So let me get that straight you just want to make a static ip on your lan in order to make firewall rules better. if so let your device lease an ip address from your dhcp server, then enter to the leased ip list and press on the ip you want to make static then press on make static (winbox) Capture.P...
you should have a bridge interface which connect to all your LAN interfaces.
then you should create a dhcp pool and dhcp server which its interface need to be this bridge interface.
or you can use the quick setup method by press on the quick set button,
Hey, first share with us you router firewall configuration. second are you able to send and receive pings from windows 10 to windows 10 on your LAN? thrid windows 10 firewall is trying to be extensive one, and icmp replays is disabled, for example: winddow 10 pc -> router. will work but: router -> w...
i truly truly have no idea how to start to thank you, im breaking my mined so much time to make this work. the main issue here is that your establishment rule including connection state new. my rules 9 chain=input action=accept protocol=tcp dst-port=500 log=no log-prefix="" 10 chain=input ...
It still doesn't work. I added the tunnel interface to the Lan list the rule logs looks like this. 06:25:36 firewall,info input: in:Port 1 - Wan out:(unknown 0), src-mac 00:00:00:02:02:01, proto UDP, 2.55.28.71:21815->141.226.254.92:500, len 472 06:25:39 firewall,info input: in:Port 1 - Wan out:(unk...
I don't have any ssh service open, I want to know why this rule also block ssh attacks. Another thing is whenever I disable this rule and connect with the tunnel, and enable this rule again while I connected to with the tunnel this rule doesn't block the connection. It's block the connection only wh...
hey to very one, ive update my router and a new default firewall filter was added, 13 chain=input action=drop in-interface-list=!LAN log=yes log-prefix="" This rule blocks my l2tp connection when im trying to dial-in, messages blocked even when i put it on the bottom of the filter list. wh...
Hello every one, for some reason which i don't know yet in the dns settings the allow remote request was on. when i connected today i was notice that the cpu usage is excessive, i start to check and found out that i have almost full usage of the TX stream about 8-12MByte on my wan connection. i snif...
hello everyone, I've trying to configure a vpn server for a while now and for some reason with no success. Im trying to configure vpn server to get access to my local network. since i use this vpn from my laptop and android i need to use a dial-up kind of method. i've looked in mikrotik wiki and fou...