Community discussions

MikroTik App

Search found 348 matches

  • 1
  • 2
by frank333
Thu Mar 28, 2024 5:47 pm
Forum: General
Topic: Which m2 lte/5G modems are RoS compatible?
Replies: 19
Views: 2826

Re: Which m2 lte/5G modems are RoS compatible?

I read somewhere that someone managed to unlock the Lenovo computer version.
by frank333
Thu Mar 28, 2024 5:38 pm
Forum: General
Topic: Which m2 lte/5G modems are RoS compatible?
Replies: 19
Views: 2826

Re: Which m2 lte/5G modems are RoS compatible?

How long have you been using it , does it respond to all AT commands?
by frank333
Wed Mar 06, 2024 3:10 pm
Forum: Beginner Basics
Topic: webfig interface
Replies: 0
Views: 230

webfig interface

the counter indicated by the arrow in the image below, what does it refer to?
interface.jpg
by frank333
Sun Mar 03, 2024 7:01 pm
Forum: Announcements
Topic: v7.14.3 [stable] is released!
Replies: 585
Views: 140419

Re: v7.14 [stable] is released!

log.jpeg
on rbm11 scripts with fetch still do not work, I have reverted to 7.12.1
by frank333
Tue Feb 27, 2024 2:30 pm
Forum: RouterOS beta
Topic: Fibocom L850-GL
Replies: 20
Views: 8882

Re: Fibocom L850-GL

I have downloaded it and posted it here: https://mega.nz/file/5HQUnBrT#XkOAXngWR ... 1R84yTb0fQ
by frank333
Tue Feb 27, 2024 1:12 pm
Forum: RouterOS beta
Topic: Fibocom L850-GL
Replies: 20
Views: 8882

Re: Fibocom L850-GL

you must register
by frank333
Tue Feb 27, 2024 12:56 pm
Forum: RouterOS beta
Topic: Fibocom L850-GL
Replies: 20
Views: 8882

Re: Fibocom L850-GL

by frank333
Tue Feb 27, 2024 12:29 pm
Forum: RouterOS beta
Topic: Fibocom L850-GL
Replies: 20
Views: 8882

Re: Fibocom L850-GL

yes it doesn't make sense, try updating the firmware first (I only found the update tool but not the update file) then try a different usb2 adapter , covering the pins with tape doesn't seem like a good solution to me.
by frank333
Tue Feb 27, 2024 12:11 pm
Forum: RouterOS beta
Topic: Fibocom L850-GL
Replies: 20
Views: 8882

Re: Fibocom L850-GL

I can't tell you exactly why certain adapters with usb3.0 connector connected to the router's usb3.0 don't work.I also had the same problem (with em160 modem), I replaced the 'adapter with a usb2.0 one and it worked.Try it cost a few euros on aliexpress
by frank333
Tue Feb 27, 2024 11:46 am
Forum: RouterOS beta
Topic: Fibocom L850-GL
Replies: 20
Views: 8882

Re: Fibocom L850-GL

you have to use a pci-e usb2.0 adapter the pinout on usb3 adapters does not power the modem.
by frank333
Sun Feb 11, 2024 9:28 am
Forum: Beginner Basics
Topic: Drop invalid FW forward
Replies: 15
Views: 1041

Re: Drop invalid FW forward

:) to me ,it no longer works using firefox ,chromium and ROS 7.12.1
by frank333
Sat Feb 10, 2024 2:31 pm
Forum: Beginner Basics
Topic: Drop invalid FW forward
Replies: 15
Views: 1041

Re: Drop invalid FW forward

/ip firewall filter add action=accept chain=input comment=\ "defconf: accept established,related,untracked" connection-state=\ established,related,untracked add action=drop chain=input comment="defconf: drop invalid" connection-state=\ invalid add action=accept chain=input comme...
by frank333
Fri Feb 09, 2024 7:22 pm
Forum: Beginner Basics
Topic: Drop invalid FW forward
Replies: 15
Views: 1041

Re: Drop invalid FW forward

ok now everything is clearer to me. thanks @mkx and @pe1chi
by frank333
Fri Feb 09, 2024 4:41 pm
Forum: Beginner Basics
Topic: Drop invalid FW forward
Replies: 15
Views: 1041

Re: Drop invalid FW forward

ok tonight I will try , and then I will report back if I still have problems .
by frank333
Fri Feb 09, 2024 3:09 pm
Forum: Beginner Basics
Topic: Drop invalid FW forward
Replies: 15
Views: 1041

Re: Drop invalid FW forward

Schermata del 2024-02-09 14.00.28.jpg
@erlinden ,
The rule set seems complete to me, what should I enter?
by frank333
Fri Feb 09, 2024 2:49 pm
Forum: Beginner Basics
Topic: Drop invalid FW forward
Replies: 15
Views: 1041

Re: Drop invalid FW forward

OK, but the forward traffic is the traffic generated between the two interfaces, so I think something in my internal network is trying to open a port on the router to communicate directly to the outside and is being blocked.
by frank333
Fri Feb 09, 2024 2:05 pm
Forum: Beginner Basics
Topic: Drop invalid FW forward
Replies: 15
Views: 1041

Re: Drop invalid FW forward

:D ok , but if they are reported it means that something is not working in the firewall . what could it be.
by frank333
Fri Feb 09, 2024 1:52 pm
Forum: Beginner Basics
Topic: Drop invalid FW forward
Replies: 15
Views: 1041

Drop invalid FW forward

I keep getting these kinds of alerts, how can I fix it?
forward.png
firewall.rsc
by frank333
Tue Dec 19, 2023 5:50 pm
Forum: Announcements
Topic: v7.13.5 [stable] is released!
Replies: 909
Views: 265976

Re: v7.13 [stable] is released!

I had already tried but it does not work
by frank333
Tue Dec 19, 2023 5:22 pm
Forum: Announcements
Topic: v7.13.5 [stable] is released!
Replies: 909
Views: 265976

Re: v7.13 [stable] is released!

is enabled. I get this from the logs: fetch,info,debug Download from https://api.telegram.org/bot42558852236:AAR_pTRe0CjksgfdydhdncbvfdtY4/sendMessage to RAM FAILED: Fetch failed with status 400 My Telegram script works fine in v7.13 :global tgFunc do={ :do { :local BotToken "XXXXXXXXX:XXXXXXX...
by frank333
Tue Dec 19, 2023 12:45 pm
Forum: Announcements
Topic: v7.13.5 [stable] is released!
Replies: 909
Views: 265976

Re: v7.13 [stable] is released!

scripts that include the fetch command for telegram
user policy "ftp" is enabled?
is enabled.
I get this from the logs:
fetch,info,debug Download from https://api.telegram.org/bot42558852236 ... endMessage to RAM FAILED: Fetch failed with status 400
by frank333
Tue Dec 19, 2023 11:32 am
Forum: Announcements
Topic: v7.13.5 [stable] is released!
Replies: 909
Views: 265976

Re: v7.13 [stable] is released!

I tried 7.13 on RBM11g but the scripts don't work anymore!
What script?

PS Do add image to the post use Attachements when in full post mode. Link to other site may go away.
scripts that include the fetch command for telegram
by frank333
Tue Dec 19, 2023 11:29 am
Forum: Announcements
Topic: v7.13.5 [stable] is released!
Replies: 909
Views: 265976

Re: v7.13 [stable] is released!

I have updated my RB5009 and my CRS326-24G and my scripts for Telegram are not working as expected. I am not getting any message more than the download message with the Chat ID. I will be rolling back to version 7.12 if this not going to be fixed quickly by Mikrotik It would be interesting to under...
by frank333
Tue Dec 19, 2023 10:02 am
Forum: Announcements
Topic: v7.13.5 [stable] is released!
Replies: 909
Views: 265976

Re: v7.13 [stable] is released!

I tried 7.13 on RBM11g but the scripts don't work anymore!
I tried uninstalling the wireless package and downgrading to 7.12.1 but it doesn't work .
How did you guys do the downgrade?
Image
by frank333
Thu Dec 14, 2023 9:03 am
Forum: RouterOS beta
Topic: Fibocom L850-GL
Replies: 20
Views: 8882

Re: Fibocom L850-GL

sertik,
I thought you also , you have 5G DSS which is a very bad system that basically uses the LTE band and gives priority of use to 5G devices . Basically a fake 5G :?
PS the fibocom L850-GL can be found at 740 rubles really affordable!|
by frank333
Thu Dec 07, 2023 8:41 pm
Forum: RouterOS beta
Topic: Fibocom L850-GL
Replies: 20
Views: 8882

Re: Fibocom L850-GL

@Sertik from version 7.11 in the changelog it says this *) lte - added "at-chat" support for Fibocom L850-GL modem; so it should be compatible . If you can though look for a 5G modem as it has bandwidth priority over the bts repeater ,and so with an LTE module you would always have lower p...
by frank333
Mon Aug 28, 2023 10:50 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

@marcelofares
I have included a short video for you to understand how to download an updated certificate
http://www.videosprout.com/video?id=8d6 ... 1cee4d20e1
by frank333
Tue Aug 08, 2023 7:44 pm
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

It is sad. But on all pieces of hw under the control of ROS 7. today they turned off the use of DoH. Errors keep popping up! It's time to admit to the support service that it doesn't work stably. install docker on ROS 7 (if you have enough memory) and then pihole or dnsguard and manage the DoH easi...
by frank333
Sun Jul 16, 2023 10:37 pm
Forum: General
Topic: Which m2 lte/5G modems are RoS compatible?
Replies: 19
Views: 2826

Re: Which m2 lte/5G modems are RoS compatible?

@xristostsilis,
you could try with a M11G routerboard (30€) to put the tw99w175 modem the adapter and the 4 pcb antennas
by frank333
Sun Jul 16, 2023 8:55 pm
Forum: General
Topic: Which m2 lte/5G modems are RoS compatible?
Replies: 19
Views: 2826

Re: Which m2 lte/5G modems are RoS compatible?

I was also interested in the modem t99w175 but after several searches , I had found information that it must be unlocked and that it does not work with the usb mode. https://www.rework.network/products/t99w175-5gnr-m-2-modem-plug-from-lenovo-flex-5g Should try it costs 70 euros on aliexpress ; it ha...
by frank333
Sun Jul 16, 2023 2:05 pm
Forum: General
Topic: Which m2 lte/5G modems are RoS compatible?
Replies: 19
Views: 2826

Re: Which m2 lte/5G modems are RoS compatible?

foxconn t99w175 have 5G,eSIM,beter carrier aggregation Did it work? I have ordered an LHGG but I already have this modem and I would like to know if the upgrade works t99w175 works only in PCI mode so it is unsuitable to be mounted on routerboards. Keep the LHG lte18 with its original module from r...
by frank333
Fri Jul 14, 2023 5:53 pm
Forum: Announcements
Topic: v7.10, 7.10.1 and more [stable] are released!
Replies: 366
Views: 130516

Re: v7.10, 7.10.1 and more [stable] are released!

I have updated my RBM11G to ROS 7.10.2 stable.
Unfortunately this feature has not yet been implemented
which is instead present in the 7.10 testing version.
The wide view was introduced only in 7.11beta2.
a pity , it would have been very useful for Webfig users.🥲
by frank333
Thu Jul 13, 2023 4:03 pm
Forum: Announcements
Topic: v7.10, 7.10.1 and more [stable] are released!
Replies: 366
Views: 130516

Re: v7.10, 7.10.1 and more [stable] are released!

I have updated my RBM11G to ROS 7.10.2 stable.
Unfortunately this feature has not yet been implemented
Schermata del 2023-07-13 14.53.23.jpeg
which is instead present in the 7.10 testing version.
by frank333
Sun Jun 18, 2023 10:40 pm
Forum: Announcements
Topic: v7.10, 7.10.1 and more [stable] are released!
Replies: 366
Views: 130516

Re: v7.10 [stable] is released!

With webfig you can no longer see the data clearly, every time you have to open the submenu. Even when writing scripts, the input form is really painful. I wonder why when there is a functional interface it is always changed to a nonsensical one. The remove and run script buttons are too close toget...
by frank333
Sat May 06, 2023 1:27 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

firewall.rsc filter.jpeg raw.jpeg No attacks or problems so far, but it has been a few hours. I hope I have restored the firewall to the default configuration. If anyone has ROS7.9 can you compare it with the images above ? (I tried reading the default script internal to RoS7.9 but couldn't find an...
by frank333
Fri May 05, 2023 1:30 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

well;
i will also remove the BAN lists,
i was thinking of doing a script with /ip firewall filter remove and rewriting the default rules written in your post but i don't want to lose access and connection .
I will rewrite everything by hand tonight.
by frank333
Fri May 05, 2023 1:02 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

re:The log is clear, the SCTP comes from outside, not inside, with wireguard you see nothing..... I thought that if there was a webrtc communication between lan and external you could see it by listening on the router's ethernet interface (but you're right, I started an online webrtc test and it did...
by frank333
Fri May 05, 2023 12:40 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

ok, I'll do an export (text-only ) of the configuration, scripts and modem settings. Then I'll do a total reset so at least I have the firewall with the default rules; then I'll add what's missing by hand. I don't see any other solution. A nice button to reset the firewall back to basics would not b...
by frank333
Fri May 05, 2023 11:15 am
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

/ip firewall filter add action=drop chain=input comment="Winbox on WAN" dst-port=8291 \ in-interface=lte1 protocol=tcp add action=accept chain=input comment=\ "defconf: accept established,related,untracked" connection-state=\ established,related,untracked add action=drop chain=i...
by frank333
Fri May 05, 2023 9:12 am
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

Schermata del 2023-05-05 08.05.24.jpeg so far nothing has disconnected. and the logs are clean. @rextended ,you were being ironic when you said in the post above that it's a bts problem. :lol: This was a full blown DDos attack then! Schermata del 2023-05-05 08.15.07.jpeg Schermata del 2023-05-05 08...
by frank333
Thu May 04, 2023 11:04 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

@pe1chi
so I'd better go back to the simple default rules and block the sctp protocol from there.
As far as activating a scpt client is concerned, I really don't know, I've always had the same devices and services, only recently have I got that report
by frank333
Thu May 04, 2023 10:27 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

@rextended yes I put rules to accept ICMP and UDP, TCP in the right sequence. (I thought that following your directions would refine the 'action of the firewall; but if they are of no use why you who have more experience than me wrote them ? :lol: ) @pe1chl So I would do well to delete them ? I hav...
by frank333
Thu May 04, 2023 3:33 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

@Larsa,
So far I haven't noticed any slowdowns or massive cpu commitments(I have at max 7-8 %) .
Thank you for the information
by frank333
Thu May 04, 2023 2:53 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

@frank333, just a suggestion: at our home office we use a simple design philosophy "keep it as simple as possible" with only a few well-chosen and commonly used patterns for sabotage, intrusions and port scanners that end up permanently in a BAN list. The first rule in the raw chain check...
by frank333
Thu May 04, 2023 2:34 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

Schermata del 2023-05-04 15.04.17.jpeg
in this way all protocols other than tcp are filtered out.
and thus any service port activity is disabled ?
port.png
tnx
I will check for a few days and write here
by frank333
Thu May 04, 2023 2:16 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

ok
I did as you said,
raw.png
So it's just a firewall indication and not an external attack? I also have an alert with prot. 41.
by frank333
Thu May 04, 2023 1:48 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

@Larsa,
I noticed activity from the flagsattack rules counter in the RAW section.
fasttrack rules are disabled.
by frank333
Thu May 04, 2023 1:42 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

EDIT
Btw, there are also two "protocol=!tcp" in sequence.
the second rule is disabled
add action=drop chain=prerouting comment="Unused protocol protection" \
    disabled=yes protocol=!tcp
by frank333
Thu May 04, 2023 1:35 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

@larsa, Yes the rules seem to be working , but the problem is that after the log message the modem and sometimes the router restarts.Before there were scpt protocol messages now there are those on ipv6 . In firewall the service port I have three services that I can not disable scpt,dccp,udplite but ...
by frank333
Thu May 04, 2023 1:11 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

@larsa
I essentially used the default RoS rules and added rextended raw rules. I thought the firewall was sufficiently configured
:(
by frank333
Thu May 04, 2023 9:15 am
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

the strange logs continue with the next reboot of the router, I switched to 7.9 stable.

Not TCP protocol prerouting: in:lte1 out:(unknown 0), connection-state:invalid src-mac c6:e0:42:92:21:52, proto 41, 192.88.99.1->151.58.128.200, len 76
:shock:
by frank333
Sat Apr 29, 2023 3:01 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

No, del ponte LTE...
as you can see from my export I used your configuration against flags attack and changed the TTL with the rule in prerouting (would it be better to move it to postrouting?) The problem is that now, after that 'error the router reboots.
by frank333
Sat Apr 29, 2023 10:45 am
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Re: Not TCP protocol prerouting: in:lte1 out

@Larsa here is the firewall configuration,
firewall.rsc
@rextended the IPs starting with 47 139 39 202 are not mine; 151.... is my IP on windtre. is this a problem with my modem?
(Quindi è un problema del mio modem ?)
by frank333
Fri Apr 28, 2023 7:57 pm
Forum: Beginner Basics
Topic: Not TCP protocol prerouting: in:lte1 out
Replies: 52
Views: 3113

Not TCP protocol prerouting: in:lte1 out

i have an rbm11g with ROS 7.8 stable and an LTE module . in the log file i get about 10 messages a day with this wording: Not TCP protocol prerouting: in:lte1 out:(unknown 0), connection-state:invalid src-mac c6:e0:42:92:21:52, proto 132, 39.98.186.94->151.15.109.102, len 52 I checked the firewall s...
by frank333
Tue Apr 04, 2023 9:44 am
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

@anav, 1) those rules (some are disabled) are pecedent to those of PCC and are used to direct the traffic of some devices with fixed ip (managed by dhcp server) exclusively to a specific WAN. 2) I didn't understand your problem with dynamic ip's. ---- In dhcp server I reserved static addresses for s...
by frank333
Wed Feb 08, 2023 4:04 pm
Forum: General
Topic: Which m2 lte/5G modems are RoS compatible?
Replies: 19
Views: 2826

Re: Which m2 lte/5G modems are RoS compatible?

but in the LHG LTE18 there is a very good quectel EG18 , which works perfectly with ros7. Why do you want to change it? you would lose in performance , automatic firmware update and manufacturer warranty.
by frank333
Mon Jan 16, 2023 10:03 pm
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

@evbocharov,
so you also noticed that this :
prioritize.png
does not always correspond to the truth ?
by frank333
Sun Jan 15, 2023 1:04 pm
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

When i reconfig default settings DNS MT now is stable, without errors in log. Your scheme is crutch. I use dhcp server in MT. I didn't quite understand if you resolved , or not. I ask you this , if you simulate the DoH dns drop ; does your LAN still resolve addresses ( and if so, what dns does it u...
by frank333
Thu Jan 12, 2023 7:08 pm
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

@evbocharov, if you have a router with a lot of memory you can install docker on (or a raspberry) RoS 7.6 and following and run pihole or adguardhome and you can configure a lot of alternative dns I did that: doh.png it is really all very simple. But I still have some problem in ros ,from dhcp lease...
by frank333
Thu Jan 12, 2023 10:17 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

If you want to learn more about certificates type in a search engine : What digital certificates are and how they work. And you will find many guides that explain the mechanism more or less in a complex way. Essentially what I can tell you in a few words and with my little experience ,is that digit...
by frank333
Wed Dec 28, 2022 7:19 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

ok I got it, thanks again for all the valuable information you gave me !!!
by frank333
Wed Dec 28, 2022 6:25 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

OK. Since the rule assigning the routing mark SSTP is the last one, nothing can rewrite that routing mark.
So by moving it on top of the rules that mark wans, could it mark SSTP traffic correctly ?
by frank333
Wed Dec 28, 2022 4:55 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

  • so my isp's ip stays visible for 5 minutes.
  • I corrected it above. It was a copy paste error.
by frank333
Wed Dec 28, 2022 4:34 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

yes the script that interrupts for 5 minutes seems to work, I have no alternative, the connection of the host remains unencrypted for that period but it's not a problem. yes the drop rule I disabled it immediately after use. here are my mangle rules /ip firewall mangle> print Flags: X - disabled, I...
by frank333
Wed Dec 28, 2022 4:19 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

was automatically reactivated within seconds.
by frank333
Wed Dec 28, 2022 3:51 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

droprule.png mark sstp _manglerule.png connection firewall.png dnsquery.png The good news is that the script of Amm0 modified with a delay of 300s between disable and enable works fine, this morning I found the vpn perfectly connected, but I don't find any traffic marked SSTP; in firewall --->conne...
by frank333
Tue Dec 27, 2022 10:50 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

sstpfirewall.png snif2.png the rule of the firewall does not work as you can see from the counter that remains at zero, I waited 10 minutes but nothing happened, then I disabled by hand sstp-out1 and the script after a few minutes has reconnected and wireshark has obtained what you see above, I not...
by frank333
Tue Dec 27, 2022 9:23 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

sniff1.png /ip firewall filter add chain=output protocol=tcp src-port=37008 dst-port=443 dst-address=146.70.118.54 action=drop This rule above I put it at the end of all the others at firewall . Now things get complicated ... I set it up the way above; the mikrotik runs all the sniffed traffic on m...
by frank333
Tue Dec 27, 2022 7:29 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

sniff.png I started sniffing, filtered on ports 443 and 53 but for now wireshark didn't catch anything even if I tried to open https pages. If I don't do port filtering I see all the traffic and I found out that I'm connected to this ip 146.70.118.54 (free-de.hideservers.net) and not to nl.hide.me ...
by frank333
Tue Dec 27, 2022 5:34 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

as you may have seen from the logs I had several interruptions, in fact I turned off and restarted the vpn several times, but it always resumed, I turned off and restarted the LTE connection in order to change ip several times but it always resumed. My belief is that only when a particular event ha...
by frank333
Tue Dec 27, 2022 1:20 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

@Amm0, ok now I understand for V6 ...V7 version ; I would like to switch to V7 on RB3011 but I have read too many negative experiences . This morning I found the vpn disconnected despite the script , I manually relaunched the script but it didn't work . I disabled the sstp-out1 interface for about 1...
by frank333
Mon Dec 26, 2022 11:28 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

@Amm0,
The script works perfectly , reactivated the connection correctly :D , let's see tonight what happens.
I did not understand this: edit: V6 = use spaces...
by frank333
Mon Dec 26, 2022 10:24 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

@sindy I modified the script in the two ways below but it still doesn't work :if (((interface sstp-client monitor sstp-out1 once as-value)->"status") != "connected") do={/interface set sstp-out1 disabled=no} :if (((interface sstp-client monitor sstp-out1 once as-value)->"sta...
by frank333
Mon Dec 26, 2022 1:52 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

hello sindy, I put this line in scheduler every minute
:if ([interface sstp-client monitor sstp-out1 once as-value]->"status") != connected do={/interface set sstp-out1 disabled=no}
but it returns sintax error
by frank333
Mon Dec 26, 2022 11:52 am
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

The vpn this time crashed (and did not reconnect) overnight so I could not log . Now I use a remote syslog and I hope to capture some information. From the logs I've updated here https://forum.mikrotik.com/viewtopic.php?p=974001#p974001 I've seen that yesterday it reconnected successfully , then I ...
by frank333
Sun Dec 25, 2022 1:37 am
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

nothing won't disconnect, I'll start again in the morning if the log buffer is totally full ,for now thanks for the support :)
by frank333
Sun Dec 25, 2022 12:55 am
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

ppp.png
it gives an error in the logs but it has connected correctly in ipv4 i have an ip 222.x.x.x
by frank333
Sun Dec 25, 2022 12:29 am
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

no, I'm not using ipv6 (I don't even have the package installed), in PPP--->Profiles I can't find the entry for IPV6; however the connection has not been disconnected yet
by frank333
Sat Dec 24, 2022 9:29 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

This is the startup log , I will post below the one when it crashes, Dec 26 12:58:27 x.x.x.x logger sstp,ppp,debug sstp-out1: LCP lowerup Dec 26 12:58:27 x.x.x.x logger sstp,ppp,debug sstp-out1: LCP open Dec 26 12:58:28 x.x.x.x logger sstp,ppp,debug sstp-out1: LCP timer Dec 26 12:58:29 x.x.x.x logge...
by frank333
Sat Dec 24, 2022 5:48 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

@Amm0, On the RB3011 I had a l2tp connection that worked for several years without problems and always rebooted automatically. Now with the sstp my problem is only to restore the connection because it NEVER reactivates automatically. This below is the manual procedure that I followed and that has on...
by frank333
Sat Dec 24, 2022 3:13 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

@Amm0, If I connect to the vpn through ubuntu the connection never drops (I tried from 7 to 24) if I make a connection with Ros instead it can remain active 4-5 hours and sometimes a few half hours or 1 hour. When the connection drops the connection does not recover more I waited a day but nothing h...
by frank333
Sat Dec 24, 2022 12:12 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

hello sindy, I did not quite understand what to add in netwatch since the 'address of the host sstp is dynamic and therefore changes with each connection, I messed around a bit with the script :if ... but I did not get anything. As I wrote the vpn is free and I think the disconnection is due to some...
by frank333
Thu Dec 22, 2022 9:45 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

Hello, yes, I've already done so, but if there was the possibility would have been very convenient.
by frank333
Thu Dec 22, 2022 9:38 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

@normis,
how could you do to ensure the continuity of the encrypted DNS on a second DoH (a kind of failover...)?
by frank333
Sun Dec 18, 2022 3:25 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

@broderick,
I rarely have disconnections ,even when downloading at full speed( I have a script that constantly checks the gateway). The problem is only for the vpn I would need a system that monitors the traffic and if during a predetermined time this fails it restarts the vpn.
by frank333
Sun Dec 18, 2022 1:40 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

I managed to make this script which I put in scheduler in 1 minute cycles , but it doesn't work well because it reactivates the vpn as soon as there is no traffic but the vpn didn't disconnect. /interface monitor-traffic sstp-out1 once do={ :if ($"rx-packets-per-second" = 0 ) do={ /interfa...
by frank333
Sat Dec 17, 2022 7:28 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

Re: How to maintain an always-on VPN. [SOLVED]

@anav hello, I have ros 6.48.6 ; dinamic ip, and a fairly stable 300/100 LTE connection. The vpn only allows SSTP or IKE2 it is very fast it has low latency but it disconnects random I think it is not due to a wrong configuration because the provider has published a specific setting page for mikroti...
by frank333
Sat Dec 17, 2022 5:40 pm
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

@orangutan,
it would be nice if it worked fully i.e. maintained redundancy on a second DOH , for now I solved with adguard on docker ; to which via dhcp ,I route the traffic of some clients on my lan.
by frank333
Sat Dec 17, 2022 5:24 pm
Forum: Beginner Basics
Topic: How to maintain an always-on VPN. [SOLVED]
Replies: 50
Views: 3996

How to maintain an always-on VPN. [SOLVED]

I have a connection to a free vpn that works very well, but has the odd bug of randomly disconnecting after about 8 hours. I tried to create a little script in netwach by pinging the gateway of the vpn, but that only works once, then the IP of the gateway changes and netwacth doesn't work anymore; a...
by frank333
Fri Dec 16, 2022 11:43 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

@evbocharov It is commendable mikrotik's initiative to make simple explanatory videos or mini courses on basic settings. As far as it comes to disabling the DNS server on the router I think it shouldn't happen because in case the remote DNS fails it can switch to a second alternative DOH server. Thi...
by frank333
Tue Dec 06, 2022 10:13 pm
Forum: Scripting
Topic: Writing a script in Scheduler.
Replies: 10
Views: 4791

Re: Writing a script in Scheduler.

thanks for the info, and since you can't put reactions to every post I'll put them here 👍👍👍👍👍👍👍 :lol:
by frank333
Tue Dec 06, 2022 9:53 pm
Forum: Scripting
Topic: Script request
Replies: 4
Views: 840

Re: Script request

@Josephny,
I hate windows ; but you can use the graphical version called zenmap if you are scared of the command line. :D
by frank333
Sat Nov 26, 2022 3:48 pm
Forum: Scripting
Topic: Script request
Replies: 4
Views: 840

Re: Script request

nmap -sn -T5 -A -v 8.8.8.8
by frank333
Sat Nov 26, 2022 3:24 pm
Forum: Scripting
Topic: Writing a script in Scheduler.
Replies: 10
Views: 4791

Writing a script in Scheduler.

With ros 7.6 I tried to write a script directly in Scheduler and this works.
I ask is it correct to do this or what problems might it bring?
by frank333
Sat Nov 26, 2022 2:56 pm
Forum: Scripting
Topic: Script to send received SMS to Telegram
Replies: 2
Views: 1855

Re: Script to send received SMS to Telegram

I found this opensource script, which works great on RBM11g em160 ros 7.6 : https://github.com/filimonic/mikrotik-s ... d-telegram
thanks to the author!!
by frank333
Fri Feb 11, 2022 12:46 pm
Forum: Wireless Networking
Topic: Is there a way I can use eSIM with Mikrotik?
Replies: 43
Views: 46262

Re: Is there a way I can use eSIM with Mikrotik?

Exactly, and also on some smartphones the qrcode is not read at all by the normal application of the operating system. L 'app provider then reads in an encrypted way the qrcode sends the chip esim only one or two times and in case of failure or change smartphone must repurchase a new qrcode.
by frank333
Fri Feb 11, 2022 11:53 am
Forum: Wireless Networking
Topic: Is there a way I can use eSIM with Mikrotik?
Replies: 43
Views: 46262

Re: Is there a way I can use eSIM with Mikrotik?

Just click on the link and read the page!
pe1chi :)
I read the page and it seems obvious that the provider provides the numeric code.
I asked further, because in my case no numeric code is provided but only an encrypted qrcode readable only by a special app.
by frank333
Fri Feb 11, 2022 11:41 am
Forum: Wireless Networking
Topic: Is there a way I can use eSIM with Mikrotik?
Replies: 43
Views: 46262

Re: Is there a way I can use eSIM with Mikrotik?

LPA:1$ee.pr.go-esim.com$ would be the provider?
do you find the activation code on the paper sheet provided by the provider ; or did you extract the code from the qrcode ?
by frank333
Sun Jan 23, 2022 9:38 pm
Forum: Announcements
Topic: v6.49.2 [stable] is released!
Replies: 64
Views: 124451

Re: v6.49.2 [stable] is released!

It is very interesting to create two partitions, I have 85 MB out of a total of 128. I've read the manual a little bit but it doesn't explain in detail how to do it and I would surely mess up, I'll open a post to get some advice.
by frank333
Sun Jan 23, 2022 2:59 pm
Forum: Announcements
Topic: v6.49.2 [stable] is released!
Replies: 64
Views: 124451

Re: v6.49.2 [stable] is released!

ok, I'll ask again in a few posts on the DoH if anyone still had problems and then I think I'll update (hoping not to use netinstall and revert to the previous version)
by frank333
Sun Jan 23, 2022 10:05 am
Forum: Announcements
Topic: v6.49.2 [stable] is released!
Replies: 64
Views: 124451

Re: v6.49.2 [stable] is released!

@pe1chl , I've read several posts on the forum about DoH; but with ros version 6.49.2 it's not clear to me if in case of doh block the router continues to work with unencrypted dns. I also read that someone has chosen the longterm version 6.48.6 preferring it to the stable version. I'm gripped by do...
by frank333
Sat Jan 22, 2022 11:34 am
Forum: Announcements
Topic: v6.49.2 [stable] is released!
Replies: 64
Views: 124451

Re: v6.49.2 [stable] is released!

@eworm tnx, i could continue to use l2tp , do you know if there are any problems also for DoH ?
by frank333
Sat Jan 22, 2022 11:23 am
Forum: Announcements
Topic: v6.49.2 [stable] is released!
Replies: 64
Views: 124451

Re: v6.49.2 [stable] is released!

Good morning,
I have a rb3011 with ros6.46.8 and a configuration with dual wan in load balancing,
I would like to upgrade to 6.49.2 to take advantage of wireguard and DoH .
Someone who has tried can confirm or not the success?
by frank333
Tue Nov 23, 2021 8:25 pm
Forum: Scripting
Topic: script and json [SOLVED]
Replies: 13
Views: 11159

Re: script and json [SOLVED]

I solved by forwarding port 8443 !!!! script on the LTE router and should be scheduled every 4-5 minutes --------------------------------------------------------------------- #temperature read by another script :global temp2 #temp value transfer to domoticz on idx27 through NAT port 8443 :global url...
by frank333
Mon Oct 18, 2021 9:29 am
Forum: Containers
Topic: v7.1rc3 adds container support
Replies: 493
Views: 162781

Re: v7.1rc3 adds Docker (TM) compatible container support

having memory, there is portainer.io, should be installed as a normal docker image, and provides a simple graphical interface to install all the images you want. you can customize the run commands, extensions, ports, volumes, etc..
by frank333
Sun Sep 26, 2021 10:39 am
Forum: Scripting
Topic: Fetch json
Replies: 7
Views: 3564

Re: Fetch json

I have the same problems as you, i.e. the command from the browser works, while via script it doesn't work I think it's a syntax problem and I can't find any information.
by frank333
Wed Sep 22, 2021 8:00 am
Forum: General
Topic: Change macaddress to lte interface.
Replies: 19
Views: 2952

Re: Change macaddress to lte interface.



Does it require root to change the mac address?
yes
by frank333
Tue Sep 21, 2021 9:34 pm
Forum: General
Topic: Change macaddress to lte interface.
Replies: 19
Views: 2952

Re: Change macaddress to lte interface.

@sindy the mac address does not appear in any vendor list online, I noticed that turning off and on the router, the mac address changes. I have not yet done the test with the passtrought because I read on another forum and from an example of sib that the provider does not have the macaddress to reco...
by frank333
Sun Sep 19, 2021 8:08 pm
Forum: General
Topic: Change macaddress to lte interface.
Replies: 19
Views: 2952

Re: Change macaddress to lte interface.

for the mac address I have not found any reference if it is really a quectel ; ok then I will try tonight to do some tests and write here the problems
by frank333
Sun Sep 19, 2021 7:00 pm
Forum: General
Topic: Change macaddress to lte interface.
Replies: 19
Views: 2952

Re: Change macaddress to lte interface.

  • mac address quectel modem 5E:FB:9B..
  • I would probably start something very complex because: the lte router currently already passes data through a vlan on a switch, to a wan port of a second router .
    tnx for info.
by frank333
Sun Sep 19, 2021 5:45 pm
Forum: General
Topic: Change macaddress to lte interface.
Replies: 19
Views: 2952

Re: Change macaddress to lte interface.

@sindy the mac addres to clone starts with 90:FD:73... I changed the macaddress of the smartphone with the apk Mac Address Ghost . I don't want to use the smartphone but a routerboard rb11g pass.png so using passthrough all routerboard settings are excluded and it works as only lte extension for ano...
by frank333
Sun Sep 19, 2021 4:05 pm
Forum: General
Topic: Change macaddress to lte interface.
Replies: 19
Views: 2952

Re: Change macaddress to lte interface.

If we really talk about MAC address change, not an IMEI change, it might be possible to use the LTE in passthrough mode and change the MAC address on the Ethernet interface of the external router connected to the LTE one. the imei i can change it but, what i am interested in is the macaddress the c...
by frank333
Sun Sep 19, 2021 2:03 pm
Forum: General
Topic: Change macaddress to lte interface.
Replies: 19
Views: 2952

Change macaddress to lte interface.

I want to change macaddress to lte interface. I have a routerboard with a quectel em160 lte modem, the telephone operator to which I am subscribed provides me with a bad router and binds me to use that using the macaddress. If I use another lte router the connection works for 10-15min and then falls...
by frank333
Fri Sep 10, 2021 9:51 am
Forum: Wireless Networking
Topic: Is there a way I can use eSIM with Mikrotik?
Replies: 43
Views: 46262

Re: Is there a way I can use eSIM with Mikrotik?

....BTW, I disagree with your statement that it's a tiny proportion of customers, I imagine a good percentage of customers would need to climb on their roof at some point. I was up there just 2 days ago when one provider was doing tower maintenance and I need to get up there again to get the sim ba...
by frank333
Thu Sep 09, 2021 8:59 am
Forum: Announcements
Topic: Newsletter 101
Replies: 43
Views: 20679

Re: Newsletter 101

it's a pity, in italy mikrotik products are much sought after at this time but you can't find anything. despite everything you can find all ubiquity products. I don't want to argue but I need a rb5009 and I'm forced to wait until mid-November or buy another brand.
by frank333
Tue Sep 07, 2021 10:40 am
Forum: General
Topic: Which m2 lte/5G modems are RoS compatible?
Replies: 19
Views: 2826

Re: Which m2 lte/5G modems are RoS compatible?

I would be interested in these two modems simcomm SIM8200EA-M2 (290€) and especially foxconn T99W175 (189€) .
I have written to retailers but they can't tell me if they are compatible with Ros and quectel 5G modules have crazy prices!
by frank333
Sat Sep 04, 2021 9:50 am
Forum: General
Topic: Which m2 lte/5G modems are RoS compatible?
Replies: 19
Views: 2826

Re: Which m2 lte/5G modems are RoS compatible?

thanks deadkat,
i found other interesting models.
I think that the problem of many unsupported modules is that of limited space in ros, but you could create versions with only sierra drivers or only quectel or only telit to make them compatible with any hardware.
by frank333
Tue Aug 31, 2021 1:42 pm
Forum: RouterBOARD hardware
Topic: MikroTik Chateau 5g modem firmware update
Replies: 50
Views: 21806

Re: MikroTik Chateau 5g modem firmware update

on the quectel forum there is a way to update the firmware, but maybe you have to take out the modem.
I have the problem instead of going back from 7.1.rb6 to the original firmware 7.0.3 stable chateau is nowhere to be found.
by frank333
Tue Aug 31, 2021 10:23 am
Forum: General
Topic: Which m2 lte/5G modems are RoS compatible?
Replies: 19
Views: 2826

Which m2 lte/5G modems are RoS compatible?

This page has very old models, https://wiki.mikrotik.com/wiki/Manual:Peripherals I am almost sure that all quectel modems are ros compatible, but they are very expensive, have bugs and quectel support is very bad. On the other hand, there are cheap modems like fibocomm , telit , dell etc that could ...
by frank333
Sun Aug 29, 2021 3:49 pm
Forum: Wireless Networking
Topic: Is there a way I can use eSIM with Mikrotik?
Replies: 43
Views: 46262

Re: Is there a way I can use eSIM with Mikrotik?

I assure you instead that we use an LTE connection is very important, because it would allow the transition to a backup eSIM or choose the cheapest plan. I have a quectel modem that can hold several eSIMs but I can not extract the certificate insertion seems easy because you can also use a command A...
by frank333
Sun Aug 29, 2021 3:02 pm
Forum: Wireless Networking
Topic: Is there a way I can use eSIM with Mikrotik?
Replies: 43
Views: 46262

Re: Is there a way I can use eSIM with Mikrotik?

it would be interesting to have an eSIM, here in my country it is possible to request it but the problem is to pass it to the modem, as the certificate is provided via a qrcode and a smartphone app
by frank333
Fri Aug 27, 2021 7:01 pm
Forum: Announcements
Topic: Newsletter 101
Replies: 43
Views: 20679

Re: Newsletter 101

novità.png
interesting device, any info?
by frank333
Fri Aug 27, 2021 8:53 am
Forum: RouterOS beta
Topic: EM160 and 5G Quectel Modems: lte1: reply timeout for: AT+QENG="servingcell"
Replies: 5
Views: 2854

Re: EM160 and 5G Quectel Modems: lte1: reply timeout for: AT+QENG="servingcell"

The version that doesn't give problems . Many people say it can be a power supply issue try checking the voltage with this command /interface lte at-chat lte1 input=AT+CBC before and during aggregation. Several sellers on aliexpress say they have solved the problem with a new update try contacting q...
by frank333
Thu Aug 26, 2021 12:32 am
Forum: Scripting
Topic: script and json [SOLVED]
Replies: 13
Views: 11159

Re: script and json [SOLVED]

the censored parts do not have any special characters or spaces they are only letters and numbers, I also tried to convert the whole string http://10.100.0.... with an on line urlencoder but it does not work. the script does not create any url variable in Environment. I have Ros 7.1rc1.
by frank333
Wed Aug 25, 2021 9:35 pm
Forum: Scripting
Topic: script and json [SOLVED]
Replies: 13
Views: 11159

Re: script and json [SOLVED]

yes that's it, that script sends a telegram message if the modem temperature is above 55 degrees and monitors the temperature every minute. My problem, however, is to send that string http: //10.100.0.202 .... and retrieve the temperature from the temp2 variable. i can't find documentation for scrip...
by frank333
Wed Aug 25, 2021 7:06 pm
Forum: Scripting
Topic: script and json [SOLVED]
Replies: 13
Views: 11159

Re: script and json [SOLVED]

no if I enter a value it does not work. I think it's not a problem with the variable but with the way fetch works. Here is the script :set temp1 55 :global temp (:tostr(:put [/ interface lte at-chat input="at+qtemp" lte1 wait=yes as-value])); :global tempstring ([:pick $temp 0]); :global t...
by frank333
Wed Aug 25, 2021 6:37 pm
Forum: Scripting
Topic: script and json [SOLVED]
Replies: 13
Views: 11159

Re: script and json [SOLVED]

temp2.png
I modified the script like yours above but it still doesn't work.
temp2 is a global variable obtained from another script every minute
by frank333
Tue Aug 24, 2021 11:45 pm
Forum: Scripting
Topic: script and json [SOLVED]
Replies: 13
Views: 11159

Re: script and json [SOLVED]

:local url "http://10.100.0.202:8080/json.htm?username=xxx&password=xxx&type=command&param=udevice&idx=27&nvalue=0&svalue=" /tool fetch http-method=get http-header-field="content-type:application/json" url=$url $temp2 I have modified it this way but the s...
by frank333
Tue Aug 24, 2021 6:24 pm
Forum: Scripting
Topic: script and json [SOLVED]
Replies: 13
Views: 11159

script and json [SOLVED]

I wanted to monitor with domoticz the temperature of a modem on a RBM11 routerboard. I detect the temperature of the modem with a script that is saved every minute in the variable temp2. with the command via browser http://10.100.0.202:8080/json.htm?username=xxx&password=xxx&type=command&...
by frank333
Mon Aug 23, 2021 5:43 pm
Forum: RouterOS beta
Topic: v7.1rc1 [development] is released!
Replies: 344
Views: 78110

Re: v7.1rc1 [development] is released!

on rbm11 it works fine it loaded without any problems . I will update this post with any problems I encounter. 71.png some % characters remained in some webfig windows. in webfig firewall and others, these columns can no longer be adjusted. LTE cell scanning has been reduced to two, with the old 7.1...
by frank333
Mon Aug 23, 2021 4:02 pm
Forum: RouterOS beta
Topic: v7.1rc1 [development] is released!
Replies: 344
Views: 78110

Re: v7.1rc1 [development] is released!

great mikrotik!! now i try to install it on the little rbm11
by frank333
Sat Aug 07, 2021 2:54 pm
Forum: RouterOS beta
Topic: EM160 and 5G Quectel Modems: lte1: reply timeout for: AT+QENG="servingcell"
Replies: 5
Views: 2854

Re: EM160 and 5G Quectel Modems: lte1: reply timeout for: AT+QENG="servingcell"

If the modem is an ES version, the problem rarely occurs. (serial up to .100) What version of modem do you have?
by frank333
Sat Jul 31, 2021 9:28 am
Forum: RouterOS beta
Topic: EM160 and 5G Quectel Modems: lte1: reply timeout for: AT+QENG="servingcell"
Replies: 5
Views: 2854

Re: EM160 and 5G Quectel Modems: lte1: reply timeout for: AT+QENG="servingcell"

it seems that the problem is due to the modem version.
I have the Engineer sample version and this error appears very rarely.
by frank333
Fri Jul 16, 2021 12:28 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 243570

Re: v7.1beta6 [development] is released!

It contains the fixes for Frag Attacks: https://blog.mikrotik.com/security/fragattacks.html
@ Guntis
hi, can you give us a preview of the new release?
by frank333
Mon Jul 12, 2021 10:34 am
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 243570

Re: v7.1beta6 [development] is released!

It depends on the staff, I think, if they are full they can do it.
https://help.mikrotik.com/docs/display/ ... col+Status
by frank333
Sun Jun 27, 2021 5:43 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 243570

Re: v7.1beta6 [development] is released!

error.png
after a disconnection, the router reconnects 1 second later; but the indication connect failed remains in the interfaces lists menu. this should be reported as a bug. rbm11g modem em160
by frank333
Tue Jun 22, 2021 2:20 pm
Forum: RouterOS beta
Topic: Reset to Factory Default on every reboot
Replies: 9
Views: 3440

Re: Reset to Factory Default on every reboot

Perform a Netinstall and then check again...
https://wiki.mikrotik.com/wiki/Manual:Netinstall
ok!.seems to work now on rbm11g ROS 7.06 tnx
by frank333
Sun Jun 20, 2021 10:27 am
Forum: RouterOS beta
Topic: Router crashes are wiping the config
Replies: 14
Views: 9852

Re: Router crashes are wiping the config

@ Easen
so reverting to beta 5 no longer has the problem you had in the first post.So I'll try.
by frank333
Sun Jun 20, 2021 8:11 am
Forum: RouterOS beta
Topic: Reset to Factory Default on every reboot
Replies: 9
Views: 3440

Re: Reset to Factory Default on every reboot

I can add another RB2011 ...
I have the same problem as you how did you solve it?
by frank333
Sun Jun 20, 2021 7:56 am
Forum: RouterOS beta
Topic: Router crashes are wiping the config
Replies: 14
Views: 9852

Re: Router crashes are wiping the config

with 7.1beta6 on rbm11g on shutdown it crashes, I have to log in with winbox.
how did you solve it? using netinstall? or updating from win box menu?
by frank333
Sat Jun 12, 2021 5:41 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 243570

Re: v7.1beta6 [development] is released!

1.png
in routerboard RBM11G in IP routes and in nexthopes the % sign appears should be reported
by frank333
Wed May 26, 2021 11:44 am
Forum: RouterBOARD hardware
Topic: QUICK EP06-A setup
Replies: 8
Views: 6513

Re: QUICK EP06-A setup

I wrote in this post because the only way to contact you, I tried several times in telegram but the account seems off, I will delete the post if you think it is not relevant.
ps:I just wrote you on telegram
by frank333
Wed May 26, 2021 10:57 am
Forum: RouterBOARD hardware
Topic: QUICK EP06-A setup
Replies: 8
Views: 6513

Re: QUICK EP06-A setup

very important info, @Sib, you also have some scripts for the quectel EM160? I am preparing the rbm11g
by frank333
Wed May 26, 2021 10:25 am
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

@sindy
I know it's a risk, for rb3011, should I try to update ROS to 48.2?
by frank333
Tue May 25, 2021 3:06 pm
Forum: RouterBOARD hardware
Topic: RBM33G + LTE Theoretical speed limit
Replies: 9
Views: 4174

Re: RBM33G + LTE Theoretical speed limit

@SIB, ok, thanks for the info Sib, do you know if there is a command in ROS to understand or choose the type of connection (example: /system routerboard usb set type=mini-PCIe) , reading on this forum it seems that they managed to use usb3 on mpcie to activate a quectel modem .(last post https://lte...
by frank333
Mon May 24, 2021 9:51 pm
Forum: RouterBOARD hardware
Topic: RBM33G + LTE Theoretical speed limit
Replies: 9
Views: 4174

Re: RBM33G + LTE Theoretical speed limit

Block Diagram not show us for RBM11G info what limitation have a mPCIe slot at this unit. Maybe like USB3.0 or USB2.0 - you have it and can check this !. I not have M11G or M33G and I base at forum answers and documentation. I have only rbm11g not yet have the modem, I was asking if you could under...
by frank333
Mon May 24, 2021 6:04 pm
Forum: RouterBOARD hardware
Topic: RBM33G + LTE Theoretical speed limit
Replies: 9
Views: 4174

Re: RBM33G + LTE Theoretical speed limit

  • So to get the maximum bandwidth, i have to connect a fast modem like EM160 with a usb3 adapter ?
  • From the block diagram it seems that an mPCIe port is connected directly to the mediatek SoC.
  • I have a rbm11g so the maximum bandwidth will always be 480M (usb2) ?
by frank333
Mon May 24, 2021 2:39 pm
Forum: RouterBOARD hardware
Topic: RBM11G PCIe USB mode switch
Replies: 4
Views: 2141

Re: RBM11G PCIe USB mode switch

...
I wanted to know which MT7621 GPIO is controlled when this command is run on RBM11G board.
GPIO9
by frank333
Fri May 21, 2021 8:41 pm
Forum: General
Topic: Winbox for linux
Replies: 17
Views: 67168

Re: Winbox for linux

of course, you can use a virtualbox, but what I wanted to discuss is essentially this, since by now the linux distributions have already pre-installed I don't understand the distrust of a completely open and parsable script that installs original programs in a sandbox. the problem of wine that 'poll...
by frank333
Fri May 21, 2021 6:00 pm
Forum: General
Topic: Winbox for linux
Replies: 17
Views: 67168

Re: Winbox for linux

I understand, is like saying but go take up knitting! ,you're a poor incompetent, but I would like to understand what is so scary according to you in running snapcraft that is an application (a sandbox) built by the same developers of ubuntu, which installs wine in a reduced and minimal form, and ru...
by frank333
Fri May 21, 2021 4:22 pm
Forum: General
Topic: Winbox for linux
Replies: 17
Views: 67168

Re: Winbox for linux

however here https://github.com/panaceya/winbox there is the snap of winbox and I have not seen anything critical in terms of security if you notice something wrong write it in the post, basically download the latest version of winbox from the site mikrotik and makes the connections for snapcraft
by frank333
Fri May 21, 2021 4:06 pm
Forum: General
Topic: Winbox for linux
Replies: 17
Views: 67168

Re: Winbox for linux

@ rextended
I found a version of winbox compiled for mac, so sources should be available (the developer does not answer me), do you know where to find them?
by frank333
Fri May 21, 2021 3:59 pm
Forum: General
Topic: Winbox for linux
Replies: 17
Views: 67168

Re: Winbox for linux

but, I have checked for a while with wireshark it seems clean does not connect to strange ip
by frank333
Fri May 21, 2021 3:50 pm
Forum: General
Topic: Winbox for linux
Replies: 17
Views: 67168

Re: Winbox for linux

waiting for a version of winbox compiled for linux...
works more than well I would say!
by frank333
Fri May 21, 2021 3:35 pm
Forum: General
Topic: Winbox for linux
Replies: 17
Views: 67168

Winbox for linux

I found a simple and effective way to run Winbox on linux, here are the instructions https://snapcraft.io/winbox I tried it on ubuntu 18.04 LTS and it works great!
by frank333
Sat May 15, 2021 3:04 am
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

If I disable the mangle rules that redirect to one or the other wan the pings work.
by frank333
Tue May 11, 2021 7:23 am
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

the configuration modvlan.rsc If I disable WAN1 the ping on 192.168.9.1 works. sniff.png I have RouterOS version v6.46.6 (testing) maybe upgrading to the latest one could solve it, but I've read about problems with 3011 this one below from another computer ping 192.168.9.1 sniff.png tracepath with b...
by frank333
Mon May 10, 2021 6:00 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

sniff.png
from another bridge port
by frank333
Mon May 10, 2021 5:52 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

sniff.png
let's continue another day, I'm not able to start the quick sniffer directly from a computer, and not even with wireshark
by frank333
Mon May 10, 2021 5:25 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

yes,and pings at 8.8.8 also work f@ff:~$ ping 192.168.9.2 PING 192.168.9.2 (192.168.9.2) 56(84) bytes of data. 64 bytes from 192.168.9.2: icmp_seq=1 ttl=64 time=0.217 ms 64 bytes from 192.168.9.2: icmp_seq=2 ttl=64 time=0.199 ms 64 bytes from 192.168.9.2: icmp_seq=3 ttl=64 time=0.168 ms 64 bytes fro...
by frank333
Mon May 10, 2021 5:05 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

sniff.png
by frank333
Mon May 10, 2021 4:13 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

sniff.png
by frank333
Mon May 10, 2021 4:01 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

in the interface list I succeeded ,
interface_list.png
eth10 remains in the bridge
by frank333
Mon May 10, 2021 3:52 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

How does /ip firewall address-list export look like, and what does the sniffing as suggested above show?
I cannot add wan2-100 to the bridge, nor can I add it to the interface list, I can use wireshark on the port for sniffing.
by frank333
Mon May 10, 2021 3:30 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

I've tried changing the mangle as you told me, I can't ping from any pc, either directly to the 3011 or from the netgear.
rule_mangle(1).rsc
by frank333
Mon May 10, 2021 8:54 am
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

When connecting a computer to a bridge port on the 3011, I cannot ping 192.168.9.1.
Here is the configuration after the changes.
mod_vlan.rsc
I do not understand these settings
bridge.png
interface_list.png
by frank333
Mon May 10, 2021 6:49 am
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

I tried the script; I had to enter / interface bridge port add bridge = bridge interface = ether10 instead of / interface bridge port enable [find interface = ether10] . From a client connected to the netgear I can't reach the main page of the LTE router (192.168.9.1) and the ping doesn't work, from...
by frank333
Sun May 09, 2021 9:45 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

@anav
Yes, the 2 WANs have fixed IPs
wan1 is 192.168.8.2
wan2 is 192.168.9.2
by frank333
Sun May 09, 2021 4:52 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

@anav
On the 3011 from ports 2--->9 there are connected 2 accesspoints a miniserver for home automation and clients computers. Client computers are connected to the netgear switch on ports 2,3,4.
by frank333
Sun May 09, 2021 4:43 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

@sindy
The purpose of publishing it is to get your feedback on whether I have configured the switch correctly. It was just the configuration of the switch that was not working , I will try again tonight.I am now testing the switch with the image configuration and I can reach vlan10 anyway.
by frank333
Sun May 09, 2021 4:04 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

@anav the vlan10 that you see in my configuration is used to reach the management interface of the two ubiquity access points that I have, and should keep separate data traffic from the management traffic, I do not know if it is set correctly also because from each android wifi client I can reach th...
by frank333
Sun May 09, 2021 2:06 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

vlansetting.png
membership1-100.png
PVID.png
by frank333
Sun May 09, 2021 12:13 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

....
So what have I missed?
....
you're right, I'm the one who got lost :-)
by frank333
Sun May 09, 2021 11:46 am
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

@sindy
the ip provided by the LTE router to the WAN2 of the 3011 is dynamic and when I connect it to the eth5 of the netgear it will be maintained even when passing as VLAN100 ?
by frank333
Sun May 09, 2021 10:49 am
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

@anav
here is my configuration
testvlan.txt
@sindy
I wasn't able to do much this morning especially with the vlan on the switch, I'll try again with the directions you wrote above
by frank333
Sat May 08, 2021 11:10 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

I would like the netgear to have 3 ports connected to the 3011 LAN bridge.
by frank333
Sat May 08, 2021 10:44 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

Re: WAN over VLAN

hi sindy, thanks for your reply; the eth10 port is now working as a load balancing wan2, when I go to hook the vlan100 I will have to assign to the vlan created a static ip of the same class that I have now on WAN2? In the netgear switch will the untagged ports be connected to the LAN bridge? Tonigh...
by frank333
Fri May 07, 2021 12:51 am
Forum: Beginner Basics
Topic: Mikrotik LHGG LTE6 kit (RBLHGGR&R11e-LTE6) freeze cell lock or band lock
Replies: 33
Views: 7241

Re: Mikrotik LHGG LTE6 kit (RBLHGGR&R11e-LTE6) freeze cell lock or band lock

If you already have the "A07" firmware ...
good to know, I ordered the modem and other parts from your blog links, which is very accurate.
by frank333
Thu May 06, 2021 1:21 pm
Forum: Beginner Basics
Topic: Mikrotik LHGG LTE6 kit (RBLHGGR&R11e-LTE6) freeze cell lock or band lock
Replies: 33
Views: 7241

Re: Mikrotik LHGG LTE6 kit (RBLHGGR&R11e-LTE6) freeze cell lock or band lock

@uiblogit
so, is it still necessary to update the firmware on the em160 modem and mikrotik to version 7 unstable?
by frank333
Thu May 06, 2021 1:09 pm
Forum: General
Topic: WAN over VLAN
Replies: 45
Views: 4802

WAN over VLAN

vlan.png
I have two wans with working PCC load balancing. I wanted to change the configuration so that with only one ethernet cable and a managed swicth I can separately transport both wan2 and use the remaining switch ports as LAN. Can you recommend a guide or some basic information?
by frank333
Tue Apr 27, 2021 11:39 am
Forum: Announcements
Topic: Future of LTE products, user feedback requested
Replies: 208
Views: 102463

Re: Future of LTE products, user feedback requested

in my opinion an ideal device for LTE should have external cpe have a 4x4 mimo triband antenna no pcb a motherboard M2 to ethernet 10G and accept any linux compatible modem (possibility to upload drivers linux in RoS) be manageable by a downstream router. price around 200€ the possibility of choosi...
by frank333
Tue Apr 27, 2021 10:34 am
Forum: Beginner Basics
Topic: LHGG LTE6 kit-Carrier Aggregation
Replies: 1
Views: 870

Re: LHGG LTE6 kit-Carrier Aggregation

After update LTE Firmware, always show " A newer version of modem firmware available! ". can't understand, why show all time? regarding the warning , it is a bug of RoS 7 . For LHGG LTE6 the CA characteristics of the modem are these https://smartphonecombo.it/?device=R11e-LTE6 or https://...
by frank333
Tue Apr 27, 2021 10:03 am
Forum: RouterBOARD hardware
Topic: Router LTE DIY Quectel EM160R-GL, tips.
Replies: 2
Views: 2163

Re: Router LTE DIY Quectel EM160R-GL, tips.

sector.png interesting the two sectional antennas (are they pcb? ) what brand are they, are there antennas for the 4 x 4 mimo in one panel? For lte management on LR8 LTE what version do you have of os router and what modem card do you have. I had thought to modify the LHGG LTE6 but it is not mimo4x...
by frank333
Mon Apr 26, 2021 10:46 pm
Forum: RouterOS beta
Topic: Fibocom L850-GL
Replies: 20
Views: 8882

Re: Fibocom L850-GL

Hello,
i have a Fibocom L850 LTE module which works fine under linux in mbim mode with a usb3 adapter. When i connect it to my x86 machine with router os v7 beta it is recognised as PPP interface and no LTE interface brings up. What can i do?
the modem is compatible, how did you solve it?
by frank333
Mon Apr 26, 2021 9:57 pm
Forum: RouterBOARD hardware
Topic: Router LTE DIY Quectel EM160R-GL, tips.
Replies: 2
Views: 2163

Router LTE DIY Quectel EM160R-GL, tips.

I am going to build an external router, with RBM11G, a quectel EM160R-GL cat16 modem and 4 Halo coflex3200 antennas. With a similar configuration, I would like to be able to maintain the connection on a nearby local BTS that I can not reach with the router I have now, but that I hook only with the s...
by frank333
Fri Jun 19, 2020 6:06 pm
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

try to follow this holy man's guidance,
https://jcutrer.com/howto/networking/mi ... over-https
by frank333
Thu Jun 18, 2020 11:13 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

slimprice,
cloudflare has the fastest dns, then there is google, and all the other .Open dns here at my place is very slow.
by frank333
Tue Jun 16, 2020 12:14 am
Forum: Announcements
Topic: v6.47 [stable] is released!
Replies: 348
Views: 172818

Re: v6.47 [stable] is released!

on RB3011 with v 6.47 I can't see the memory and CPU graphs anymore, does anyone know how to solve it?
by frank333
Mon Jun 15, 2020 11:18 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

yes normis, I wanted to say this that I tried, but in addition to having problems with continuous writing on the nand with v6.47 I still can not enable the verification of certificates in addition to that of cloudflare, also can not yet enter a second doh server that acts as failover.
by frank333
Mon Jun 15, 2020 11:08 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

In my opinion, doh is the first example of how much mikrotik cares about the safety of its users and other initiatives in this direction are welcome.
The only thing I can reproach are the problems I had using the firmware 6.47 and the lack of possibility to use other dns besides cloudflare.
by frank333
Sun Jun 14, 2020 9:40 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

slimprize.
that's what I do . in the PEM download section.
Schermata del 2020-06-14 08.31.14.png
by frank333
Fri Jun 12, 2020 12:28 am
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

so ?
/ip firewall nat
add chain=dstnat action=dst-nat to-addresses=192.168.88.1 to-ports=53 protocol=tcp dst-port=53
add chain=dstnat action=dst-nat to-addresses=192.168.88.1 to-ports=53 protocol=udp dst-port=53 
put in front of all the rules ?
192.168.88.1 is ip of router mikrotik
by frank333
Thu Jun 11, 2020 9:03 pm
Forum: General
Topic: nand writing counter on RB3011
Replies: 2
Views: 945

Re: nand writing counter on RB3011

Yes, I couldn't find any commands to read the writing counter on the 3011 nand.
I downgraded to 6.46.5 today.
https://download.mikrotik.com/routeros/ ... 6.46.5.npk
by frank333
Thu Jun 11, 2020 2:21 am
Forum: General
Topic: nand writing counter on RB3011
Replies: 2
Views: 945

nand writing counter on RB3011

Can someone tell me how to read the scripture counter on the nand of Tik RB3011?
I tried with /system resource print but there is no information.
I need it to see if the 6.47 firmware is frying my nand.
by frank333
Wed Jun 10, 2020 4:02 pm
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

on linux to control the dns i do this, reboot the connection and control with nmcli device show myinterface | grep IP4
by frank333
Wed Jun 10, 2020 3:50 pm
Forum: General
Topic: How to Configure L2TP clients
Replies: 2
Views: 931

Re: How to Configure L2TP clients

you have to open a shell with ssh root@ipyourrouter then once you are in the router type /export hide-sensitive and copy the result or save it to file=myfileexport
by frank333
Wed Jun 10, 2020 2:15 pm
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

I thought the result file was written on mikrotik's hdd, so I moved it to the external MMC. Schermata del 2020-06-10 12.54.41.png The script always populates the mikrotik DNS cache even when the DOH cloudflare fails. For the query response errors I thought about this . Schermata del 2020-06-10 13.00...
by frank333
Wed Jun 10, 2020 12:55 pm
Forum: General
Topic: DNS over HTTPS
Replies: 258
Views: 121331

Re: DNS over HTTPS

I'm using the script and it works well, I've imported global certificates and tested several DoH servers but you always get an error as a response.
I set the scheduling every minute and had the results written on an external sacrificial MMC card, not to fry the tik flash.
by frank333
Mon Jun 08, 2020 6:59 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

unless you'd turn the approach upside down and instead of manually configuring remote IPs which require use of the same WAN, you'd manually configure IPs which don't. :shock: I don't understand exactly how you can do it and what you get is very complicated. I enclose here below my final working con...
by frank333
Sun Jun 07, 2020 9:29 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

sindy, thanks again, everything works properly, practically the traffic is sorted a bit on one gateway a bit on the other keeping the routes for an hour. The only thing I lost with the latest changes are the multiple connections and the sum of the total bandwidth, but I think it's inevitable. I'll b...
by frank333
Sun Jun 07, 2020 12:15 am
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

It seems to work, I've put the mangle rules in this way for both WAN1 and WAN2. /ip firewall mangle add action=add-dst-to-address-list address-list=use-WAN1 address-list-timeout=1h chain=postrouting comment="list connection balance" out-interface=ether1-WAN1 add action=add-dst-to-address-l...
by frank333
Sat Jun 06, 2020 9:55 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

Sindy, that's what I did. /ip firewall mangle add action=passthrough chain=postrouting comment="test_speedtest.net (server 88.149.202.248)" dst-address-list=speedtest protocol=tcp routing-mark=to_WAN1 add action=passthrough chain=postrouting dst-address-list=speedtest protocol=tcp routing-...
by frank333
Sat Jun 06, 2020 9:15 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

Interesting .
I figured out how to make a static list of addresses.
Can you explain how to make a dynamic list with an expiry time for accumulated addresses?
by frank333
Sat Jun 06, 2020 8:17 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

I'm noticing, however, that while browsing I lose the ip on the pages. For example, if I log into the mikrotik forum I lose the login.
How you could solve?
by frank333
Sat Jun 06, 2020 7:57 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

I deleted the rule and rewritten it in the same position, now it works.
Mysteries!
Schermata del 2020-06-06 18.51.23.png
by frank333
Sat Jun 06, 2020 7:35 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

the balance works perfectly!! but the mangle rule that routes in sip traffic on the vpn no longer works
add action=mark-routing chain=prerouting comment=\
    "redirect sip to VPN pc frank" new-routing-mark=vpn passthrough=yes \
    protocol=udp src-address=10.0.0.152 src-port=5060
by frank333
Sat Jun 06, 2020 7:00 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

Hi, Sindy, I changed again the firewall rules and routes because I wanted to have a failover with the recursive method, I disabled the fastrack as you suggested. Now they work . ping direct from Tik, vpn and failover Balancing does not work, internet browsing only takes place on gateway 192.168.8.1 ...
by frank333
Fri Jun 05, 2020 5:42 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

Re: PCC balance of two WAN (lte) and failover

the balance works quite well, I noticed that the traceroute, ping and updates on the RB3011 no longer works and the vpn does not connect, I read many posts but I do not understand what to add in the firewall. I added in /ip route add distance=1 gateway=192.168.8.1 vpn works and pinging from tik work...
by frank333
Wed Jun 03, 2020 3:15 pm
Forum: General
Topic: PCC balance of two WAN (lte) and failover
Replies: 18
Views: 5329

PCC balance of two WAN (lte) and failover

export.txt.rsc On RB3011 I connected two identical lte routers one to port eth1 and the other to port eth10 and assigned static ip to both. Inserting these rules that I copied from a previous configuration the balance works, but if I disconnect one of the two wan and try to navigate I see the main ...
by frank333
Thu May 14, 2020 1:33 pm
Forum: General
Topic: Efficient queue management with three classes
Replies: 2
Views: 1395

Re: Efficient queue management with three classes

I take this post to not disperse some information, I wanted to implement HTB, but I can not write the correct rules of mangle, especially to prioritize voip and ICMP traffic, bypass fasttrack. Someone can help me. I tried some rules but nothing works. /ip firewall filter add action=accept chain=forw...
by frank333
Mon Apr 06, 2020 9:05 pm
Forum: Beginner Basics
Topic: How to Bridge VPN Client to Single LAN Port ?
Replies: 2
Views: 2576

Re: How to Bridge VPN Client to Single LAN Port ?

that's what I did: /ip dhcp-client add disabled=no interface=ether1 /interface list member add interface=ether1 list=WAN add interface=ether2 list=LAN add interface=bridge1 list=LAN /ip address add address=192.168.1.103/24 disabled=no interface=ether1 network=192.168.1.0 add address=192.168.189.10/2...
by frank333
Sun Apr 05, 2020 2:36 am
Forum: General
Topic: Roadwarrior client router
Replies: 20
Views: 6632

Re: Roadwarrior client router

Zacharias ,
to turn the LAN traffic on vpn, using a tik in mode bridge are the same rules that you explained above?
here is my configuration:
viewtopic.php?f=13&t=158995&p=781073#p781073
by frank333
Mon Mar 23, 2020 2:01 am
Forum: General
Topic: Roadwarrior client router
Replies: 20
Views: 6632

Re: Roadwarrior client router

macsrwe
I'd like to reroute all traffic on ether3 port to vpn ipsec.
by frank333
Sun Mar 22, 2020 2:37 pm
Forum: General
Topic: Roadwarrior client router
Replies: 20
Views: 6632

Re: Roadwarrior client router

ok macsrwe ,
I modified but it doesn't work, moreover it disappeared ( webfig ) the interface l2tp-out1 even if vpn is up
by frank333
Sun Mar 22, 2020 1:13 pm
Forum: General
Topic: Roadwarrior client router
Replies: 20
Views: 6632

Re: Roadwarrior client router

I'm trying to do the same thing by only enabling vpn on an ethernet port.

I added this rule
/ip firewall filter
add action=accept chain=input dst-address=0.0.0.0 in-interface=l2tp-out1 src-address=192.168.42.0/24

but I can only access the tik from the external network
by frank333
Sun Mar 22, 2020 9:39 am
Forum: Beginner Basics
Topic: How to Bridge VPN Client to Single LAN Port ?
Replies: 2
Views: 2576

How to Bridge VPN Client to Single LAN Port ?

Would like to connect a single lan port to the vpn client. I enclose my network schematics and mikrotik configuration. Vpn ipsec already works, in fact I can reach the mikrotik from outside LAN https://forum.mikrotik.com/download/file.php?id=40366 https://forum.mikrotik.com/download/file.php?id=40367
by frank333
Sun Mar 22, 2020 9:30 am
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

I went back to the default bridge configuration, because I couldn't connect to mikrotik via cable or wifi. I can't clearly tell you what doesn't work, but on mikrotik I did this: I deleted the failover routes back to the previous configuration (as you can see in the previous screenshot) and then to ...
by frank333
Sun Mar 22, 2020 12:24 am
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

I tried, unfortunately it doesn't work, the wifi connects for a few seconds and then disconnects, same thing for ethernet connections.
by frank333
Sat Mar 21, 2020 1:53 pm
Forum: General
Topic: remote syslog external to the LAN
Replies: 0
Views: 1641

remote syslog external to the LAN

you can configure a remote syslog external to the LAN with RB941-2nD
I tried that, but it doesn't work.
Schermata del 2020-03-21 12.51.55.png
by frank333
Sat Mar 21, 2020 10:45 am
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

for the failover I modified the routes as you suggested I added these rules and the screenshot of how the routes changed. /ip route add dst-address=88.149.128.12 gateway=192.168.1.1 scope=10 add dst-address=8.8.8.8 gateway=192.168.8.1 scope=10 /ip route add distance=1 gateway=88.149.128.12 routing-m...
by frank333
Fri Mar 20, 2020 10:44 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

that's just what I wanted to say, 'add check-gateway option (ping or arp) for all four routes' if I ping e.g. gateway 192.168.1.1 this will always be up even without connection from wisp1
by frank333
Fri Mar 20, 2020 8:47 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

mythical Sob,
works well , I am very happy , for the failover as you could do since the two gateways to the two gateways can not ping.
by frank333
Fri Mar 20, 2020 6:37 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

But do you mean that both LTE and RB are on LAN0, i.e. there are two L3 subnets in same L2 segment? In that case, forget VLANs and simply add 192.168.2.x/24 on bridge. The only thing you'll need to tweak is srcnat rule. I'll think about that if you confirm this. yes, RB and LTE are on the same netw...
by frank333
Fri Mar 20, 2020 6:29 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

If this is a ubiquiti issue you are in the wrong forum. :-) https://help.ubnt.com/hc/en-us/articles/219654087-UniFi-Using-VLANs-with-UniFi-Wireless-Routing-Switching-Hardware https://www.youtube.com/watch?v=grg8TxsSops https://community.ui.com/questions/Beginners-VLAN-Setup/68f554d0-4196-4cc8-a1d9-...
by frank333
Fri Mar 20, 2020 6:08 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

I'm still lost, I'm affraid. Where exactly is LTE modem connected to? Does it have some LAN1 on router? Assuming that it does and that LAN0 is your main LAN with 192.168.1.0/24, what happens if you add VLAN with id 8 in "VLAN Network" on top of LAN0 and then create new BRIDGE2 containing ...
by frank333
Fri Mar 20, 2020 5:38 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

associates only the prefixed interfaces to the vlan does not tag the individual port So what exactly e.g. LAN0.10 in screenshot does? I'd expect it to be tagged VLAN 10 on top of LAN0 interface. yes Schermata del 2020-03-20 16.47.09.png the LAN0 is practically a whole block of 4 non-tackable ports
by frank333
Fri Mar 20, 2020 5:20 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

Hi, Sob,
your configuration is brilliant, I tried to create a vlan on the ubiquity router, but this is not possible because it hasn't the possibility to tag ports .practically it can do two vlan but only with LAN, WAN, WLAN interfaces it can't assign a vlan to a port .
by frank333
Thu Mar 19, 2020 10:42 am
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

Sorry, I missed this one. There are two important pieces: 1) You need two distinct gateways. You have one on main router and then you need other one from LTE router. You can either connect it to RB using vlan, or you could simply bridge everything together (you'd have one L2 segment with two L3 sub...
by frank333
Fri Mar 13, 2020 6:21 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

But then you have another problem. RB could intercept connections from devices connected behind it, but not from other devices connected directly to main router and not passing through RB. it might not be a problem, I am interested that on mikrotik and its wifi area there is load balancing and fail...
by frank333
Fri Mar 13, 2020 4:03 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

Re: load balancing and failover on mikrotik from generic router with ppoe and static connection

It seems to me that you're looking at wrong place. If both WANs are connected to Ubiquity router and RB is only bridge, it's the router that should be handling any kind of load balancing. I understand that the ubiquity router should handle the balancing but I can't reverse the devices because the m...
by frank333
Fri Mar 13, 2020 3:02 pm
Forum: General
Topic: load balancing and failover on mikrotik from generic router with ppoe and static connection
Replies: 26
Views: 7488

load balancing and failover on mikrotik from generic router with ppoe and static connection

mylan.png myconfig.txt Good morning, everyone, I can use a single connection at a time by configuring the connected computer now I would like to do load balancing and failover between the 2 connections. I tried to use these instructions but I have difficulty in the firewall mangle because I can't m...
by frank333
Mon Jun 10, 2019 10:30 am
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

here, I'll send you my files, enter the right interface names, and delete the previous script environment.
PS: remember to bypass the fasttrack ,therefore the script does not work
by frank333
Sun Jun 09, 2019 6:05 pm
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

rayohms, I also have problems in automatically starting the script; but I restart it manually every time I restart the router. In about six months I've restarted it twice. Can you at least start it manually?
by frank333
Tue Nov 13, 2018 8:33 pm
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

if I don't run the script manually, the ACC script is not executed ; even if the sheduler counter marks the activation every 15 seconds.
Does not vary the the max limit in short, in queue list.
by frank333
Tue Nov 13, 2018 8:24 pm
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

if I run the script from the terminal ( /system script run ACC ) after I turn on the router, works everything.
I hope I made myself clear, so tell me what I can do.
by frank333
Tue Nov 13, 2018 12:48 pm
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

hi,
  • Yes, the counter is activated every 15 seconds.
  • If I run the script from terminal it works.
test.txt
by frank333
Fri Nov 09, 2018 4:03 pm
Forum: General
Topic: Efficient queue management with three classes
Replies: 2
Views: 1395

Efficient queue management with three classes

the sebastia user uses an effective queue system, which consists of 3 simple classes ; here's what he writes: I got 3 classes: "20", "30" & "FT" for bulk / rest. The last one is where FastTrack is defaulting to. For classification I'm not using the QOS/DSCP classes ...
by frank333
Fri Nov 09, 2018 3:50 pm
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

systemscheduler.txt.rsc
I tried, but the schedule's not working. :(
I think it could be a different management of variables.
I open a new post for queue management viewtopic.php?f=2&t=141410
by frank333
Thu Nov 08, 2018 6:16 pm
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

I put start type at 00:00:00 (I'd tried that before, but it didn't work.); * also make sure that the actual functions are loaded before that -> so start-time=startup & interval=0 but here I do not know how to do . tonight I try to restart the router. you on your router have a very simple dscp yo...
by frank333
Thu Nov 08, 2018 11:08 am
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

Schermata del 2018-11-08 10.07.10.png hi, the script no longer starts when I restart the router, I solved partially, manually starting the script is a bit uncomfortable but it works. I wanted to ask you then how you did to set only 3 queues in the dscp because I can no longer find your explanation ...
by frank333
Wed Nov 07, 2018 8:13 pm
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

sebastia, I updated to version v6.43.4 and your script doesn't work anymore, mysteries! What could have happened?
by frank333
Sun Nov 04, 2018 7:15 pm
Forum: Scripting
Topic: Script implementing Active Congestion Control
Replies: 63
Views: 17647

Re: Script implementing Active Congestion Control

hello frankcale, if it's something simple I can answer you, what's your problem?
by frank333
Tue Jul 24, 2018 12:06 am
Forum: General
Topic: PCC between wan pppoe , static gateway on bridge; and dscp management
Replies: 28
Views: 3422

Re: PCC between wan pppoe , static gateway on bridge; and dscp management

yes wireless ISP , so I have to resign myself and leave things as they are. :(
by frank333
Mon Jul 23, 2018 10:55 pm
Forum: General
Topic: PCC between wan pppoe , static gateway on bridge; and dscp management
Replies: 28
Views: 3422

Re: PCC between wan pppoe , static gateway on bridge; and dscp management

for example now (21.54 ETC) is starting to go wrong the line with very high latency, if I lower the max-limit on the uplink everything works wonderful. Weird?
by frank333
Mon Jul 23, 2018 10:28 pm
Forum: General
Topic: PCC between wan pppoe , static gateway on bridge; and dscp management
Replies: 28
Views: 3422

Re: PCC between wan pppoe , static gateway on bridge; and dscp management

Btest :mrgreen: , the script I've attached works well for the dowlink but for the uplink (ppoe gwLTE) I've already tried to modify it without results and I think I'd solve all the problems since I'm testing the pcc and it seems to work well when the connection is stable at 30/3.
by frank333
Mon Jul 23, 2018 9:03 pm
Forum: General
Topic: PCC between wan pppoe , static gateway on bridge; and dscp management
Replies: 28
Views: 3422

Re: PCC between wan pppoe , static gateway on bridge; and dscp management

I can't get what is ACC, and I don't know what bufferbloat are you talking about. https://www.gargoyle-router.com/wiki/doku.php?id=qos&s[]=acc comma 5 Do you mean a bufferboat problem related to WAN->LAN VoIP traffic or a bufferbloat problem related to the other WAN->LAN traffic? WAN->LAN traff...
by frank333
Mon Jul 23, 2018 7:36 pm
Forum: General
Topic: PCC between wan pppoe , static gateway on bridge; and dscp management
Replies: 28
Views: 3422

Re: PCC between wan pppoe , static gateway on bridge; and dscp management

sindy is a brilliant idea, but I wouldn't solve the problem of the bufferbloat that with this system of ACC+DSCP allows me to have very low latency inside the LAN.
by frank333
Sun Jul 22, 2018 11:50 pm
Forum: General
Topic: PCC between wan pppoe , static gateway on bridge; and dscp management
Replies: 28
Views: 3422

Re: PCC between wan pppoe , static gateway on bridge; and dscp management

I always thought that the 'Tik' bandwidth test took precedence over all LAN traffic. :(
But anyway it's obvious I think, that when I have 3 Mbps instead of 30 and very little traffic in lan, the wisp is reducing the bandwidth
by frank333
Sun Jul 22, 2018 10:54 pm
Forum: General
Topic: PCC between wan pppoe , static gateway on bridge; and dscp management
Replies: 28
Views: 3422

Re: PCC between wan pppoe , static gateway on bridge; and dscp management

i.e. throttling of the throttlable traffic 200 kbit/s below the currently available downlink bandwidth and keeping that margin for real time traffic. I have never been able to understand how to do this without using a script, since the maximum bandwidth in uploads and downloads varies continuously ...
by frank333
Sun Jul 22, 2018 10:15 pm
Forum: General
Topic: PCC between wan pppoe , static gateway on bridge; and dscp management
Replies: 28
Views: 3422

Re: PCC between wan pppoe , static gateway on bridge; and dscp management

....So if your downlink bandwidth is 30 Mbit/s as you say, and you want to support two phone calls simultaneously, you have to leave a margin of at least 200 kbit/s so the max-limit of the queue shaping the "throttlable" traffic in WAN->LAN direction must be 29.8 Mbit/s. here's just that ...
  • 1
  • 2