Community discussions

MikroTik App

Search found 73 matches

by HzMeister
Fri Jun 05, 2020 7:55 pm
Forum: RouterOS beta
Topic: v7.0beta8 [development] is released!
Replies: 178
Views: 92860

Re: v7.0beta8 [development] is released!

Where is CAKE?!?!?!?

Literally everyone expects it, yet there's nothing about it from mikrotik..

Kind of pathetic on their part tbh.
by HzMeister
Sat Apr 25, 2020 7:18 am
Forum: Beginner Basics
Topic: hAP AC Vs hAP AC2 without wireless performance
Replies: 5
Views: 2308

Re: hAP AC Vs hAP AC2 without wireless performance

Why not go with the rb750gr3? It has nearly the same wired performance, rock solid stability, is cheaper, and runs at near ambient temperature.
by HzMeister
Fri Apr 17, 2020 7:00 pm
Forum: Announcements
Topic: Winbox v3.23 released!
Replies: 60
Views: 49923

Re: Winbox v3.23 released!

Still have the problem with lines getting cut off in terminal when scrolling.

Image
by HzMeister
Sat Feb 15, 2020 9:37 pm
Forum: General
Topic: Mikrotik l2tp vpn server behind openwrt router - issue with OSX and security
Replies: 0
Views: 2175

Mikrotik l2tp vpn server behind openwrt router - issue with OSX and security

I've been testing an openwrt router for the last few weeks to see how cake sqm performs compared to routeros - and it's pretty awesome, so I've decided to stick with it for longer. A major downside to openwrt(aside from not having winbox) is that it doesn't have a good vpn server implementation. Aft...
by HzMeister
Wed Feb 12, 2020 10:39 am
Forum: RouterOS beta
Topic: fq_codel or cake in v7
Replies: 68
Views: 41648

Re: fq_codel or cake in v7

Cake would be awesome in v7. I just did some testing with openwrt and it performed surprisingly well.

I can't imagine why they wouldn't include it in v7 since most of the hard work is already done and openly available...
by HzMeister
Sun Jul 28, 2019 5:07 am
Forum: General
Topic: Queues and bandwidth sharing
Replies: 3
Views: 2062

Re: Queues and bandwidth sharing

Hi! Thanks! That seems to do some packet dropping and at least total bandwidth does not go over the max limit :) A bit hard to tell if it really splits bandwidth equal between the child queues... One thing I can't really understand, shouldn't the parent queue also be sfq, same as the child queues? ...
by HzMeister
Thu Jul 11, 2019 10:07 pm
Forum: General
Topic: Queues and bandwidth sharing
Replies: 3
Views: 2062

Re: Queues and bandwidth sharing

Yeah it's pretty easy to do. Mark each subnet (with separate packet marks for upload and download) in mangle. You could mark connections before packet marking like a lot of guides recommend, but I don't since I've found it unnecessary and if you're not maxing out the cpu. Ex: /ip firewall mangle add...
by HzMeister
Wed Jul 10, 2019 12:59 am
Forum: Announcements
Topic: v6.44.5 [long-term] is released!
Replies: 100
Views: 85458

Re: v6.44.5 [long-term] is released!

Upgraded from 6.44.3 on rb750gr3 without issue. Everything works great.
by HzMeister
Mon Jun 17, 2019 11:52 pm
Forum: Beginner Basics
Topic: One queue or hundred queues [SOLVED]
Replies: 2
Views: 1674

Re: One queue or hundred queues [SOLVED]

The easiest would be to use pcq.
Make one queue that encompases all of the hosts and set the pcq-rate to 10M.
There is no queue limit in mikrotik - you can have thousands of queues(both simple and in queue tree).
by HzMeister
Mon Jun 03, 2019 5:09 am
Forum: Beginner Basics
Topic: Confused with PASSTHROUGH YES/NO in Mangle
Replies: 7
Views: 7105

Re: Confused with PASSTHROUGH YES/NO in Mangle

Passthrough only matters if a packet matches a rule. It basically asks the question: "If a packet matches this rule, should I continue scanning?" So, if a packet matches a rule and passthrough=no then it stops at that rule and uses that packet mark. If it matches a rule and passthrough=yes...
by HzMeister
Sat May 11, 2019 5:36 pm
Forum: General
Topic: Queue tree upload max-limit stops working when parent=ether1
Replies: 7
Views: 3093

Re: Queue tree upload max-limit stops working when parent=ether1

No. You come here with a configuration that does not work, I give you a configuration of which I am sure it works, but I don't have experience with configs that leave lots of fields blank. Maybe they should work, apparently they don't. My queue tree and mangle configuration is 100% on point. If it ...
by HzMeister
Sat May 11, 2019 6:02 am
Forum: General
Topic: Queue tree upload max-limit stops working when parent=ether1
Replies: 7
Views: 3093

Re: Queue tree upload max-limit stops working when parent=ether1

Additionally, setting a limit-at for the heavy-upload child queue would only be useful if I wanted to guarantee 900k to it, essentially cutting the available bandwidth for other queues in half - I want queues with a higher priority to get 100% of the available bandwidth of the parent max-limit if n...
by HzMeister
Fri May 10, 2019 7:00 pm
Forum: General
Topic: Queue tree upload max-limit stops working when parent=ether1
Replies: 7
Views: 3093

Re: Queue tree upload max-limit stops working when parent=ether1

You should put the limits on the child queues, that is where they are evaluated. In this case I would put a limit-at of 900k at the heavy-up queue and set max-limit to like 2 M everywhere. Don't child queues borrow tokens from their parent queue? If so, that would mean that the child max-limit cann...
by HzMeister
Fri May 10, 2019 4:32 am
Forum: General
Topic: Queue tree upload max-limit stops working when parent=ether1
Replies: 7
Views: 3093

Queue tree upload max-limit stops working when parent=ether1

This morning I thought my isp was having problems because none of my client devices had connectivity even though all of my network devices reported no issues. It turns out that an iOS device was running a backup, saturating the upload and taking everything down. When I went to check why the queue tr...
by HzMeister
Sun Apr 28, 2019 7:55 am
Forum: General
Topic: Force Users to Use Specific DNS Server
Replies: 31
Views: 21520

Re: Force Users to Use Specific DNS Server

You've got to setup hairpin nat for the pihole. Change 192.168.1.2 to your pihole ip. /ip firewall nat add chain=dstnat action=dst-nat to-addresses=192.168.1.2 protocol=udp src-address=!192.168.1.2 dst-address=!192.168.1.2 dst-port=53 in-interface=!ether1 add chain=dstnat action=dst-nat to-addresses...
by HzMeister
Fri Apr 26, 2019 9:36 pm
Forum: Beginner Basics
Topic: NAT problems - Xbox One and Nintendo Switch
Replies: 32
Views: 11190

Re: NAT problems - Xbox One and Nintendo Switch

The tplink router might be the second nat. If they didn't configure the rb750gr3 in a way that would prevent it, you could just use that as your router and use the tplink as a switch+ap. Unplug the wire going into the WAN port of the tplink and plug into into any LAN port.Then you must be sure that ...
by HzMeister
Thu Apr 25, 2019 9:21 pm
Forum: Beginner Basics
Topic: Help: very very simple way/command to prioritize one IP address
Replies: 3
Views: 1193

Re: Help: very very simple way/command to prioritize one IP address

Delete your simple queue rules and copy/paste this into terminal: /queue simple add max-limit=2M/20M name=parent target=192.168.1.0/24 add name=doorbell parent=parent priority=1/1 queue=default/default target=192.168.1.251/32 add name=iptv parent=parent priority=2/2 queue=default/default target=192....
by HzMeister
Thu Mar 28, 2019 10:32 pm
Forum: General
Topic: CoDel support?
Replies: 46
Views: 20525

Re: CoDel support?

I just spent this past weekend comparing fq_codel(smart queue) on a ubiquiti edgerouter with sfq on mikrotik. With all this talk of how great codel is I expected the performance difference to be huge. After doing extensive testing with various configs in different scenarios, I didn't find one system...
by HzMeister
Wed Mar 20, 2019 12:07 am
Forum: Wireless Networking
Topic: Where is dtim and beacon interval??
Replies: 9
Views: 9064

Re: Where is dtim and beacon interval??

If you search the forum you will find these can't be set and have been requested for a long time... yet Mikrotik doesn't seems to be listening or there is some hidden reason why these can't be changed (their own wireless drivers?). Especially beacon interval would be handy to modify, but NOPE.... n...
by HzMeister
Tue Mar 19, 2019 8:01 pm
Forum: Wireless Networking
Topic: Where is dtim and beacon interval??
Replies: 9
Views: 9064

Where is dtim and beacon interval??

I'm looking for the dtim and beacon interval settings, and can't find them anywhere. Anyone know how to modify them? Is it only in cli or something? Thanks.
by HzMeister
Fri Mar 15, 2019 12:12 am
Forum: Announcements
Topic: v6.44.1 [stable] is released!
Replies: 85
Views: 50597

Re: v6.44.1 [stable] is released!

Wireless clients are getting disconnected after this update.
6.44 was fine, so downgraded back to it.
by HzMeister
Fri Mar 08, 2019 7:14 pm
Forum: Wireless Networking
Topic: New standard 802.11ax
Replies: 25
Views: 11366

Re: New standard 802.11ax

is there even any AC pci cards we could test on a routerboard? There is hardware: https://wikidevi.com/wiki/List_of_802.11ax_Hardware But you need to convince MT to build a driver. Nobody builds their own drivers. The majority of the driver and software stack for the chipset is from qualcomm and ev...
by HzMeister
Tue Feb 12, 2019 10:13 am
Forum: Scripting
Topic: Dynu.com script for dynamic DNS
Replies: 16
Views: 14542

Re: Dynu.com script for dynamic DNS

I just add the mikrotik ddns to "dns records" in dynu. No scripting necessary.
by HzMeister
Wed Jan 23, 2019 10:58 pm
Forum: General
Topic: PROTOCOL QUIC PLEASE & QUICkly ;-)
Replies: 8
Views: 6185

Re: PROTOCOL QUIC PLEASE & QUICkly ;-)

QUIC appears to look like udp in winbox, but doesn't have the same behavior. I found this out the hard way after realizing that it doesn't work with rules like connection-rate when marking traffic. There was a bug with connection-rate in the past, are you still having issues? At the moment, I mark ...
by HzMeister
Wed Jan 23, 2019 8:12 pm
Forum: General
Topic: PROTOCOL QUIC PLEASE & QUICkly ;-)
Replies: 8
Views: 6185

Re: PROTOCOL QUIC PLEASE & QUICkly ;-)

Quic is coming!! Really? Can someone share how much of their current traffic is QUIC, please? I have the impression, that QUIC was feeler by google and will soon be repaced by BBR with TCP-TLS. Quic is more than just a feeler. Youtube uses quic when possible and there are plenty of other services a...
by HzMeister
Mon Dec 17, 2018 11:46 pm
Forum: General
Topic: Remote access to router in offsite office
Replies: 4
Views: 1217

Re: Remote access to router in offsite office

I setup an l2tp vpn server to gain remote access to my network and set an input firewall rule to accept tcp port 8291(winbox) from LAN. If you don't want to setup a vpn for whatever reason, and you have a strong enough password, you can just make an input firewall rule to accept all connections. The...
by HzMeister
Thu Dec 13, 2018 6:53 am
Forum: RouterBOARD hardware
Topic: Why hAP ac² and CRS3xx boot significantly longer than "other" routerboards?
Replies: 6
Views: 3904

Re: Why hAP ac² and CRS3xx boot significantly longer than "other" routerboards?

One thing I like about routerboards is the fast boot-up - my rb750gr3 takes exactly 30 seconds to log into winbox from power up.
I was thinking about picking up a hap ac2 and this is obviously not a deal breaker, but It would be nice if someone from mikrotik could chime in as to why this is the case?
by HzMeister
Thu Dec 13, 2018 6:45 am
Forum: Beginner Basics
Topic: What are some other ways to mangle dns traffic?
Replies: 1
Views: 1152

What are some other ways to mangle dns traffic?

I'm trying to mangle dns traffic in order to give it priority in the queue tree. However, clients occasionally connect to their vpn using udp port 53 which is getting marked too. Aside from using the protocol, port, and packet size what are some other ways that dns traffic can be isolated from other...
by HzMeister
Wed Dec 05, 2018 9:24 am
Forum: Announcements
Topic: v6.43.7 [stable] is released!
Replies: 53
Views: 34060

Re: v6.43.7 [stable] is released!

Today I wanted to upgrade some production routers to 6.43.4 after having tested it at some less critical sites and found that the stable version has just been updated to 6.43.7 Normally I do not want to upgrade production routers to a version released an hour ago. I know it is possible to upload an...
by HzMeister
Sun Dec 02, 2018 4:52 am
Forum: RouterBOARD hardware
Topic: Vibration Sensor
Replies: 2
Views: 1483

Re: Vibration Sensor

Wouldn't it be fairly obvious without it?
If one side is mounted to a building and the other to a 20ft pole, which side do you think is most likely the problem?
And if both sides are equally janky, I don't think you need something to tell you that...
by HzMeister
Fri Nov 30, 2018 9:06 pm
Forum: Beginner Basics
Topic: 750Gr3 Private Internet Access PPTP
Replies: 8
Views: 3550

Re: 750Gr3 Private Internet Access PPTP

Here's what I use to route a set of ips through a vpn. You just need to change the login and network details to yours. Btw, I wouldn't route ALL your traffic through a vpn as a lot of sites don't work well with them and it adds some latency.. /interface pptp-client add allow=mschap2 connect-to=vpn.c...
by HzMeister
Tue Nov 27, 2018 10:29 pm
Forum: General
Topic: Mounting routers to boards - magnets?
Replies: 4
Views: 1553

Re: Mounting routers to boards - magnets?

A weak magnetic field won't have any tangible effect on the operation of the router.
But don't many Ethernet interfaces have transformer isolation that can be disrupted by magnetic fields?
I personally wouldn't mount it with magnets if at all possible..
by HzMeister
Fri Nov 23, 2018 12:10 pm
Forum: General
Topic: Crowd Funding of v7
Replies: 32
Views: 12110

Re: Crowd Funding of v7

Mikrotik isn't a startup...
by HzMeister
Thu Nov 22, 2018 6:50 am
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 4162

Re: QOS not working with file hosting sites like Megaupload

I'm leaving some reserved bandwidth for dns and some other small packets, and also downloads get grouped under another parent which has limit a bit below my total download speed, this way it doesn't saturate download and gives time for queues to drop packets so everything works smooth. If u like i ...
by HzMeister
Wed Nov 21, 2018 5:17 am
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 4162

Re: QOS not working with file hosting sites like Megaupload

add action=mark-connection chain=postrouting comment=DOWNLOADS_5+MB connection-bytes=\ 5000000-0 new-connection-mark=HTTP_DOWNLOADS_5+_2 passthrough=yes port=80,443,8080 protocol=\ tcp add action=mark-packet chain=postrouting connection-mark=DOWNLOADS_5+_2 new-packet-mark=\ HTTP_DOWNLOADS_5+ passth...
by HzMeister
Tue Nov 20, 2018 11:59 pm
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 4162

Re: QOS not working with file hosting sites like Megaupload

You using that download manager of theirs? I downloaded alot from mega thru browser directly this days and goes properly thru my queue for large downloads, simple mangle of ports 443,80,8080 and bytes set to 5+mb. No, it's through the browser only. Occasionally through the chrome plugin. Sometimes ...
by HzMeister
Tue Nov 20, 2018 7:28 pm
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 4162

Re: QOS not working with file hosting sites like Megaupload

1. Don't know mega downloads: is it using tcp? udp can't be controlled as its connectionless 2. Is mega downloading in chunks? what granuarity is pcq setup with? /ip or also /port. => with multiple chunks with different connections from different ports and /port balancing for pcq a single user can ...
by HzMeister
Tue Nov 20, 2018 12:02 am
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 4162

Re: QOS not working with file hosting sites like Megaupload

Do you have FastTrack enabled? It bypasses simple queues... Fasttrack is disabled. I know it looks like user error, but it's not. Try downloading a file from megaupload to see for yourself. Any file will work, but if you can't find one, google "bmw tools download" or "megalinks"...
by HzMeister
Mon Nov 19, 2018 10:16 am
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 4162

Re: QOS not working with file hosting sites like Megaupload

without your config no
It doesn't seem to work regardless of the config - once someone starts downloading from megaupload they take up all the bandwidth. I've tried numerous variations of every parameter in both simple queues and the queue tree without success.
by HzMeister
Mon Nov 19, 2018 9:37 am
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 4162

QOS not working with file hosting sites like Megaupload

Whenever clients on the network are downloading from hosting sites (particularly megaupload) qos completely stops functioning but otherwise works perfectly for normal downloads. Not sure what's going on. For example, the basic config below works perfectly to distribute bandwidth equally among client...
by HzMeister
Fri Aug 03, 2018 5:58 pm
Forum: Beginner Basics
Topic: VPN for Beginner
Replies: 4
Views: 1937

Re: VPN for Beginner

This method routes ALL of the traffic via the VPN? What is you only want to route traffic destine JUST for that remote subnet? What do you mean? This is NOT how to connect to an outside vpn(ie your workplace or a commercial vpn like nordvpn). This is how remote users can vpn INTO your network. All ...
by HzMeister
Thu Aug 02, 2018 5:43 pm
Forum: Beginner Basics
Topic: VPN for Beginner
Replies: 4
Views: 1937

Re: VPN for Beginner

Yeah it's definitely possible. I access my home network via vpn all the time. There's a lot of different tutorials and conflicting info out there, but for a basic vpn config, the wiki is best: https://wiki.mikrotik.com/wiki/Manual:Interface/L2TP#Basic_L2TP.2FIpSec_setup Here's a run down with a few ...
by HzMeister
Wed Jul 04, 2018 2:14 am
Forum: Announcements
Topic: v6.42.5 [current]
Replies: 124
Views: 54475

Re: v6.42.5 [current]

It was already explained above. Please read entire topic.
Where is it "explained" exactly??
by HzMeister
Tue Jul 03, 2018 10:51 pm
Forum: Announcements
Topic: v6.42.5 [current]
Replies: 124
Views: 54475

Re: v6.42.5 [current]

I upgraded to 6.42.5 on my rb750gr3 without any apparent problems.

Does this affect all devices or is it limited to specific ones?
by HzMeister
Sun May 13, 2018 6:47 am
Forum: RouterBOARD hardware
Topic: What can be improved in hEX (RB750Gr3)?
Replies: 22
Views: 7694

Re: What can be improved in hEX (RB750Gr3)?

I honestly wouldn't change a thing. The great thing about the 750gr3 is the price... op: adding more ports will increase the price adding poe will increase heat/lower reliability and cost more metal casing would be nice, but not necessary - and making it also act as a heatsink requires tight toleran...
by HzMeister
Sat Apr 14, 2018 4:39 am
Forum: General
Topic: Blocking an IP range from accessing IPsec
Replies: 4
Views: 3421

Re: Blocking an IP range from accessing IPsec

Add this rule for each ip you want to block:

/ip firewall filter add chain=input src-address=[ip-address] action=drop

Be sure to put it above all other rules that would accept it otherwise.
by HzMeister
Sun Apr 08, 2018 7:34 am
Forum: Beginner Basics
Topic: .mynetname.net
Replies: 6
Views: 20148

Re: .mynetname.net

You can't change it.
However, what I do is add it to the dns records of my dns manager, effectively having the ip update automatically while using the domain of my choosing.
by HzMeister
Sat Apr 07, 2018 6:32 pm
Forum: General
Topic: winbox x64 version, please???
Replies: 9
Views: 3654

Re: winbox x64 version, please???

In my humble opinion i‘d expect a company the size of Mikrotik to deploy their management tools x-plattform. There are way smaller companies that don‘t forget about their apple and linux community. As administrators we are on call 24/7 and on the road most of the time. There should clearly be offic...
by HzMeister
Thu Apr 05, 2018 2:52 am
Forum: General
Topic: winbox x64 version, please???
Replies: 9
Views: 3654

Re: winbox x64 version, please???

what linux distro are you running?
by HzMeister
Wed Apr 04, 2018 6:28 am
Forum: General
Topic: Any plans to make cross-platform WinBox?
Replies: 33
Views: 8219

Re: Any plans to make cross-platform WinBox?

There doesn't have to be 2 separate apps, Mikrotik can abandon WinBox, it's UI looks a little archaic anyway and release a cross-platform Qt app :) Having only a console/terminal interface is less convenient for many people, same as having only GUI app. If it was OpenWrt, I'd go with SSH but Router...
by HzMeister
Wed Apr 04, 2018 6:13 am
Forum: Beginner Basics
Topic: Queue tree beginner's question
Replies: 7
Views: 1559

Re: Queue tree beginner's question

You're trying to do qos on download, right? If so, Set passthrough=yes on the connection marks. Set chain=prerouting on all mangle rules. Set parent=LAN in the queue tree. Keep everything else the same. btw, your limit settings aren't setup correctly - I'd remove everything but the max limit on the ...
by HzMeister
Tue Apr 03, 2018 4:05 am
Forum: General
Topic: Any plans to make cross-platform WinBox?
Replies: 33
Views: 8219

Re: Any plans to make cross-platform WinBox?

I'd much rather have one really good windows app than have the winbox team spread out across multiple platforms. Besides, there's not a single scenario where you'd absolutely need to have winbox on another platform anyway. If wine doesn't work for whatever reason, there's dual booting, VMs, or even...
by HzMeister
Tue Apr 03, 2018 1:14 am
Forum: General
Topic: Any plans to make cross-platform WinBox?
Replies: 33
Views: 8219

Re: Any plans to make cross-platform WinBox?

I'd much rather have one really good windows app than have the winbox team spread out across multiple platforms. Besides, there's not a single scenario where you'd absolutely need to have winbox on another platform anyway. If wine doesn't work for whatever reason, there's dual booting, VMs, or even...
by HzMeister
Mon Apr 02, 2018 8:26 pm
Forum: Beginner Basics
Topic: DNS dynamic servers
Replies: 7
Views: 5520

Re: DNS dynamic servers

in /ip dns servers, press the ^ arrow where you have 192.168.0.1 to remove it and add the dns servers you want.
by HzMeister
Mon Apr 02, 2018 8:20 pm
Forum: General
Topic: Any plans to make cross-platform WinBox?
Replies: 33
Views: 8219

Re: Any plans to make cross-platform WinBox?

I'd much rather have one really good windows app than have the winbox team spread out across multiple platforms. Besides, there's not a single scenario where you'd absolutely need to have winbox on another platform anyway. If wine doesn't work for whatever reason, there's dual booting, VMs, or even ...
by HzMeister
Mon Apr 02, 2018 12:38 am
Forum: General
Topic: L2TP set up to connect VPN from WIN10 over IPhone
Replies: 1
Views: 1100

Re: L2TP set up to connect VPN from WIN10 over IPhone

I literally just setup an l2tp vpn server today. There's a lot of different tutorials and conflicting info out there, but for the simplest config, the wiki is best: https://wiki.mikrotik.com/wiki/Manual:Interface/L2TP#Basic_L2TP.2FIpSec_setup This worked for me: [add ip pool for vpn clients] /ip poo...
by HzMeister
Sat Mar 31, 2018 3:05 pm
Forum: General
Topic: hAP ac² noisy when using WiFi [SOLVED]
Replies: 21
Views: 8004

Re: hAP ac² noisy when using WiFi [SOLVED]

If you can hear it, it's in a relatively low frequency as far as electronics go, and probably coming from the dc/dc circuitry. Put your ear next to all the electronics you have(and/or their power supplies) and you will most likely hear something in all of them. It doesn't make a difference in perfor...
by HzMeister
Fri Mar 30, 2018 4:55 am
Forum: General
Topic: Mikrotik for 900/100 Mbit WAN
Replies: 7
Views: 1941

Re: Mikrotik for 900/100 Mbit WAN

That's a relatively simple setup that an rb750gr3 could handle, so a hap ac2 will be more than enough. Since mikrotik makes really powerful hardware, it's easy to think that anything on the lower end won't be good enough. The high end gear is meant for a lot of clients and/or complex setups that uti...
by HzMeister
Thu Mar 29, 2018 4:34 am
Forum: General
Topic: Help me decide
Replies: 11
Views: 2540

Re: Help me decide

How much bandwidth are you going to be pushing? the ccr1009 is a lot more powerful than the rb1100ahx4. even though the rb1100 will most likely be enough for your needs, might as well get the fastest one within your budget. also, since this in a home environment I'd suggest you get the CCR1009-7G-1C...
by HzMeister
Thu Mar 29, 2018 4:13 am
Forum: General
Topic: QoS for IPTV
Replies: 34
Views: 15695

Re: QoS for IPTV

Why don't set a static ip for your iptvs and mark those packets in mangle. Then you can use the queue tree to set priorities for them.
by HzMeister
Wed Mar 28, 2018 4:29 am
Forum: Beginner Basics
Topic: Please add a wiki document on settings to maximize home user privacy. [SOLVED]
Replies: 4
Views: 2032

Re: Please add a wiki document on settings to maximize home user privacy. [SOLVED]

It doesn't work like that. None of the internal network info is exposed through the router using the default config.

Besides, what kind of info do you think is being exposed? and what kind of "monkey business" do you think companies can do with it?
by HzMeister
Mon Mar 26, 2018 7:15 pm
Forum: Beginner Basics
Topic: Beginners help
Replies: 4
Views: 1714

Re: Beginners help

So you have an all fiber network? And it looks like your trying to connect the router > server > switch. If so, you need to connect the router > switch > server to get it to work out of the box. There's a good chance it may be setup as dumb switch with the default config. go to /system reset-configu...
by HzMeister
Mon Mar 26, 2018 5:39 pm
Forum: Beginner Basics
Topic: Beginners help
Replies: 4
Views: 1714

Re: Beginners help

What are you having trouble configuring? There's no "best way" to configure the switch nor do you need to plug it into a specific port to get it work. You configure each port individually based on your needs. Here are a few pointers though: The sfp+ port on the r9000 is there so you can se...
by HzMeister
Mon Mar 19, 2018 7:00 pm
Forum: Beginner Basics
Topic: 2 ISP Separate for Browsing and Online Games
Replies: 8
Views: 10339

Re: 2 ISP Separate for Browsing and Online Games

lol why would you get a second isp for only online games?
by HzMeister
Fri Mar 09, 2018 11:02 pm
Forum: General
Topic: Mikrotik Rb750 + AP Unifi - Hotspot Mikrotik [SOLVED]
Replies: 4
Views: 1737

Re: Mikrotik Rb750 + AP Unifi - Hotspot Mikrotik [SOLVED]

The cloud ddns service sends encrypted info directly to mikrotik servers so it looks like there is no way to use the functionality with 3rd party services. However, there are scripts you can use that update it: For dyn: https://wiki.mikrotik.com/wiki/Dynamic_DNS_Update_Script_for_dynDNS_behind_NAT I...
by HzMeister
Wed Feb 28, 2018 7:40 am
Forum: General
Topic: RB750Gr3 vs HAP AC2
Replies: 2
Views: 2583

RB750Gr3 vs HAP AC2

Since the new HAP AC2 just came out, is there any compelling reason to get the rb750gr3 over it?
by HzMeister
Mon Feb 26, 2018 12:31 am
Forum: General
Topic: VPN and QOS Queue Tree
Replies: 16
Views: 7880

Re: VPN and QOS - routing mark and packet mark at the same time?

These are the mangle rules that I ended up with for qos and vpn: add action=mark-routing chain=prerouting comment=vpn-rt new-routing-mark=vpn-rt passthrough=no src-address=192.168.2.0/24 add action=mark-connection chain=prerouting comment=vpn-con-dwn connection-mark=no-mark in-interface=vpn new-conn...
by HzMeister
Sun Feb 25, 2018 7:07 pm
Forum: General
Topic: VPN and QOS Queue Tree
Replies: 16
Views: 7880

Re: VPN and QOS - routing mark and packet mark at the same time?

Thanks for your suggestions. I didn't realize the packet marks were dropped when they went through the vpn. Here are all the mangle rules for the vpn: add action=mark-routing chain=prerouting comment=vpn new-routing-mark=vpn-rt passthrough=no src-address=192.168.2.0/24 add action=mark-packet chain=p...
by HzMeister
Sun Feb 25, 2018 3:15 am
Forum: General
Topic: VPN and QOS Queue Tree
Replies: 16
Views: 7880

Re: VPN and QOS - routing mark and packet mark at the same time?

There are no vlans. If I set a connection mark before the routing mark, the vpn doesn't work. If I set the packet mark to postrouting with respect to the routing mark as shown: add action=mark-routing chain=prerouting new-routing-mark=vpn passthrough=yes src-address=192.168.2.0/24 add action=mark-pa...
by HzMeister
Sun Feb 25, 2018 2:35 am
Forum: General
Topic: VPN and QOS Queue Tree
Replies: 16
Views: 7880

Re: VPN and QOS - routing mark and packet mark at the same time?

yes all upload goes through ether1
(download through bridge on ether2)
by HzMeister
Sun Feb 25, 2018 2:02 am
Forum: General
Topic: VPN and QOS Queue Tree
Replies: 16
Views: 7880

Re: VPN and QOS - routing mark and packet mark at the same time?

Thanks for the replies so far. I've disabled all other mangle rules and have distilled it down to two rules which I thought should logically work. add action=mark-routing chain=prerouting new-routing-mark=vpn passthrough=yes src-address=192.168.2.0/24 add action=mark-packet chain=prerouting new-pack...
by HzMeister
Sun Feb 25, 2018 1:28 am
Forum: General
Topic: VPN and QOS Queue Tree
Replies: 16
Views: 7880

Re: VPN and QOS - routing mark and packet mark at the same time?

I'm trying to get all 192.168.2.0/24 traffic to go through the vpn and the queue tree. If you mangle the routing marks before the packet marks, the packet marks aren't utilized in the queue tree. If the routing marks are after the packet marks, the vpn doesn't work. Here is the relevant part of my c...
by HzMeister
Sat Feb 24, 2018 11:37 pm
Forum: General
Topic: VPN and QOS Queue Tree
Replies: 16
Views: 7880

VPN and QOS Queue Tree

I have 192.168.2.0/24 set up to go through a vpn(pptp client) and would like for it to go through the queue tree.

Does anyone have any ideas on how to mangle the packet marks for qos?