Community discussions

MikroTik App

Search found 969 matches

by macsrwe
Thu Sep 17, 2020 6:30 am
Forum: General
Topic: Firewall time semantics [SOLVED]
Replies: 1
Views: 263

Re: Firewall time semantics [SOLVED]

Apparently, only the MikroTik smartphone app allows this syntax -- Winbox flags it as invalid.

And it doesn't actually work, so I guess the answer is no.
by macsrwe
Tue Sep 15, 2020 7:59 am
Forum: General
Topic: Firewall time semantics [SOLVED]
Replies: 1
Views: 263

Firewall time semantics [SOLVED]

I'm doing "kid control," blocking some sites between bedtime and the end of the school day. The firewall time field allows constructs such as: chain=forward action=drop src-address=192.168.1.99 dst-address-list=BlockedSites time=21h30m- 1d 14h30m,mon,tue,wed,thu,fri Does this "do the right thing," o...
by macsrwe
Sat Jul 11, 2020 2:36 pm
Forum: General
Topic: Can't get EOIP tunnel to run
Replies: 3
Views: 766

Re: Can't get EOIP tunnel to run

Thank you! Making those firewall changes did the trick.

It's a shame it's apparently too much to expect MT to update the Wiki with these important instructions, without which EOIP will flat never work.
by macsrwe
Sat Jul 11, 2020 11:00 am
Forum: General
Topic: Can't get EOIP tunnel to run
Replies: 3
Views: 766

Can't get EOIP tunnel to run

I have two MikroTiks that can ping and traceroute each other fine, but attempting to set up an EOIP tunnel between them isn't resulting in an active tunnel. Nothing I can do makes it go into the running state. There are no log entries, and no log message type I can find in /system logging that would...
by macsrwe
Tue Jul 07, 2020 11:06 pm
Forum: Announcements
Topic: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!
Replies: 43
Views: 79730

Re: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!

Yes, please! and don't forget to send us the t-shirt and device!
Which in keeping with the theme should be a Snapchat filter and a CHR.
by macsrwe
Sat Jun 13, 2020 10:00 am
Forum: RouterBOARD hardware
Topic: netPower 16P High Low?
Replies: 5
Views: 1398

Re: netPower 16P High Low?

Wow. Just wow!
by macsrwe
Mon Jun 08, 2020 10:07 pm
Forum: Beginner Basics
Topic: Point to Point SXTsq 200m apart
Replies: 13
Views: 3236

Re: Point to Point SXTsq 200m apart

To create a config file from your working config, use: /export file=choose-your-flle-name.rsc The /pub folder is a public folder for SMB file sharing, unless you specifically set that up (I don't know anybody who does), it would be empty. The /skins folder holds custom skins you created for Webfig (...
by macsrwe
Fri May 29, 2020 2:40 am
Forum: Forwarding Protocols
Topic: Zombie Modem
Replies: 3
Views: 1049

Re: Zombie Modem

Ugh. Coincidentally, I tried reading this writeup several weeks ago just for continuing education purposes, got total brain cramp from it, and gave up. It looks like it was written to control two gateways into the same edge router, where routing marks are already in play to load-balance traffic. In ...
by macsrwe
Thu May 28, 2020 7:56 am
Forum: Forwarding Protocols
Topic: Zombie Modem
Replies: 3
Views: 1049

Zombie Modem

I have a wireless network serving an outdoor location, configured as a ring. There are two gateways (DSL), at opposite (geographical) ends of the ring. OSPF is set up in simple fashion to deliver traffic to the closest gateway, and to reroute all traffic to the working gateway if a gateway or interv...
by macsrwe
Mon May 18, 2020 1:04 am
Forum: Beginner Basics
Topic: wAP AC Continuous Reboot After Upgrade to 6.43.8
Replies: 18
Views: 5461

Re: wAP AC Continuous Reboot After Upgrade to 6.43.8

Very strange that mikrotik don't plan to finally fix this issue once and for all for many years now.
MikroTik has never even acknowledged that this issue exists.
by macsrwe
Tue May 05, 2020 6:14 am
Forum: General
Topic: Time Sync with SNTP client and IP Cloud Not Working
Replies: 13
Views: 2142

Re: Time Sync with SNTP client and IP Cloud Not Working

I have put UDP/123 log rule on top of INPUT chain before ACCEPT related,established,untracked. And I also made sure fasttrack was disabled.
Where it is is only half the question. What it is is the other half. Could you please export your firewall rules and post them here?
by macsrwe
Mon May 04, 2020 10:06 pm
Forum: General
Topic: Time Sync with SNTP client and IP Cloud Not Working
Replies: 13
Views: 2142

Re: Time Sync with SNTP client and IP Cloud Not Working

One very common reason for NTP replies to fail is that good administration practice requires you to block NTP requests coming from the WAN interfaces. However, if done Incorrectly, this will also block all replies to your own NTP client. The proper security blocking rule includes connection state in...
by macsrwe
Mon May 04, 2020 9:57 am
Forum: General
Topic: Time Sync with SNTP client and IP Cloud Not Working
Replies: 13
Views: 2142

Re: Time Sync with SNTP client and IP Cloud Not Working

All ROS can run SNTP client.

To run NTP server you must include ntp package. Then if you also run client, you are running NTP client; which I believe is not the same code as SNTP client, which is unavailable when ntp package is present.
by macsrwe
Mon May 04, 2020 8:54 am
Forum: General
Topic: How to config BOGON FW rules not to block "valid" traffic from my ISP's router if my MikroT is behind it?
Replies: 4
Views: 1022

Re: How to config BOGON FW rules not to block "valid" traffic from my ISP's router if my MikroT is behind it?

If you know for sure the BOGON address your ISP is going to present you, just put a FW rule ahead of the blocking one that jumps around the blocking one for traffic from that address. That lets you continue to decide what input and forarding traffic you are going to accept from the ISP connection, b...
by macsrwe
Mon May 04, 2020 4:59 am
Forum: Announcements
Topic: Winbox v3.23 released!
Replies: 60
Views: 29176

Re: Winbox v3.23 released!

Looks like Winbox needs an adequate beta test program. What it has now doesn't even pretend to qualify. This sort of thing should have been nipped in the bud prior to release. Now we can't get rid of it.
by macsrwe
Wed Apr 29, 2020 11:41 pm
Forum: General
Topic: Possible fix for hAP ac2 rebooting randomly
Replies: 104
Views: 20035

Re: Possible fix for hAP ac2 rebooting randomly

NTP DDoS is extremely low probability, since only one router model is reporting this issue so far (correct me if I am wrong). Also, to prevent DDoS, your firewall should be blocking "new connection" and "unrelated" NTP traffic from the WAN interface(s) (don't block all incoming traffic on the NTP po...
by macsrwe
Fri Apr 24, 2020 12:27 am
Forum: Beginner Basics
Topic: Webfig timeout
Replies: 8
Views: 1971

Re: Webfig timeout

Actually, for illustration purposes, I probably should not have used the ROMON window, but the standard Winbox neighbors window: Screen Shot 2020-04-23 at 2.22.00 PM.jpg If a router has no IP address defined, the MAC address still shows up here, but the address is 0.0.0.0. You can still do a MAC log...
by macsrwe
Thu Apr 23, 2020 11:11 am
Forum: General
Topic: Tapatalk + Mikrotik forum
Replies: 26
Views: 5146

Re: Tapatalk + Mikrotik forum

I just logged entirely out of Tapatalk and back in, and I'm still getting the "SQL error" message on the Mikrotik forum, though other forums continue to work.
by macsrwe
Thu Apr 23, 2020 4:33 am
Forum: General
Topic: Drop connections or drop packets?
Replies: 12
Views: 2423

Re: Drop connections or drop packets?

ROS firewall fakes connection state for UDP connections. Might not be as accurate as for statefull protocols, but helps to make constructing firewall filter rules easier. Probably helps for performance as well.

Good to know, thanks. I've never had reason to block UDP.
by macsrwe
Thu Apr 23, 2020 3:02 am
Forum: General
Topic: Very strange environment variables. Did I get hacked?
Replies: 19
Views: 6699

Re: Very strange environment variables. Did I get hacked?

The output of that print is completely empty (as expected - noone else has access to the router and I don't use the default config setup at all, I always do a reset to a blank no-config state and only configure the desired fuctionality from scratch). As do I, without fail, but not running the defau...
by macsrwe
Wed Apr 22, 2020 6:23 am
Forum: General
Topic: Drop connections or drop packets?
Replies: 12
Views: 2423

Re: Drop connections or drop packets?

Mangle is the wrong tool for this job. Firewall can block connections with these parameters most straightforwardly. If you are rejecting or accepting traffic on connection-based protocols (e.g., not UDP), you should always use connection-state=new. This causes the firewall rule to be checked only on...
by macsrwe
Wed Apr 22, 2020 6:10 am
Forum: RouterBOARD hardware
Topic: wAP with missing N rate
Replies: 3
Views: 1390

Re: wAP with missing N rate

N rates table is not under "Data Rates," it is under "HT MCS."
by macsrwe
Wed Apr 22, 2020 6:05 am
Forum: General
Topic: Tapatalk + Mikrotik forum
Replies: 26
Views: 5146

Re: Tapatalk + Mikrotik forum

Still is the issue with forum opening with Tapatalk? I have following error at iOS

Still broken. No action. Sigh.
by macsrwe
Wed Apr 22, 2020 5:51 am
Forum: Beginner Basics
Topic: problem blocking RB 951
Replies: 1
Views: 819

Re: problem blocking RB 951

If you're trying to enter over the WAN port, you will fail because default configuration blocks login. If you're trying to enter over the LAN port, and you have reset the unit, there is some other issue I can't definitively name.
by macsrwe
Wed Apr 22, 2020 5:48 am
Forum: Beginner Basics
Topic: Restore "crashes" RB951G-2HnD
Replies: 10
Views: 1846

Re: Restore "crashes" RB951G-2HnD

If I were going to allow transferring a backup to another device (as the official docs do indeed mention) I don't guess that's a feature I would have included as default Backup was never designed as a migration method. The document concedes that it kinda sorta works with some limitations, but nobod...
by macsrwe
Wed Apr 22, 2020 5:41 am
Forum: Beginner Basics
Topic: Webfig timeout
Replies: 8
Views: 1971

Re: Webfig timeout

Wine seems to work fine with Winbox on a Mac FWIW as long as the router is giving out an IP
Mac WInbox works surprisingly well even with MAC address connections...
by macsrwe
Wed Apr 22, 2020 5:33 am
Forum: Beginner Basics
Topic: Correct way of creating a network with my 3 mikrotik hap ac2
Replies: 12
Views: 2218

Re: Correct way of creating a network with my 3 mikrotik hap ac2

Let me take a contrary tack... if the 5GHz frequencies work interunit, then fine; but you may discover that need to resort to the 2.4 instead to penetrate all those walls, especially the exterior walls. As far as naming the SSID's same or different, there are issues either way. If they are all the s...
by macsrwe
Sun Apr 19, 2020 1:25 pm
Forum: Beginner Basics
Topic: Login restriction by IP [SOLVED]
Replies: 2
Views: 1900

Re: Login restriction by IP [SOLVED]

Hi, I don't understand the following syntax. What does the 0 there represent? Is it a username or what? 1 https://wiki.mikrotik.com/wiki/Manual:Securing_Your_Router#Access_by_IP_address " Access by IP address Besides the fact that default firewall protects your router from unauthorized access from ...
by macsrwe
Sun Apr 19, 2020 1:01 pm
Forum: Scripting
Topic: Built in function library
Replies: 82
Views: 32666

Re: Built in function library

You can if you name your queues with a first character that is a digit, otherwise you would have to do :find of a collation string. There's no function that returns the raw byte value of an arbitrary element.
by macsrwe
Sun Apr 19, 2020 12:49 pm
Forum: RouterBOARD hardware
Topic: POE Problem with Omnitik 5ac [SOLVED]
Replies: 8
Views: 5441

Re: POE Problem with Omnitik 5ac [SOLVED]

Please help me . how i can identify that i have poe version or not , because on mikrotik website manual says omnitik is with poe output. Even easier is to examine ports 2-5 -- if they have a yellow border on the label, they provide POE, otherwise, they do not. True of all MT products.
by macsrwe
Sun Apr 19, 2020 9:06 am
Forum: General
Topic: omnitek
Replies: 5
Views: 1288

Re: omnitek

Post your configuration.

/export hide-sensitive file=whatever.rsc
by macsrwe
Sun Apr 19, 2020 6:53 am
Forum: General
Topic: Call of Duty PC Game
Replies: 2
Views: 1315

Re: Call of Duty PC Game

I think you're worrying needlessly. The ports in question would be on the forward chain, not the input chain, so they wouldn't expose the router itself to anything. They would only expose the gaming device, but no more than it is already exposed by attaching directly to the modem. If you're not worr...
by macsrwe
Sun Apr 19, 2020 6:48 am
Forum: Beginner Basics
Topic: Metal 52ac HomeAP Dual not an option [SOLVED]
Replies: 2
Views: 2043

Re: Metal 52ac HomeAP Dual not an option [SOLVED]

Metal 52 runs 5 or 2.4, not both at the same time. So no dual.
by macsrwe
Sun Apr 19, 2020 2:55 am
Forum: Beginner Basics
Topic: Can not get Netinstall to Install packages or routeros.
Replies: 10
Views: 6037

Re: Can not get Netinstall to Install packages or routeros.

I get the routers to show up in Netinstall and choose my packages but when I press Install it does nothing. The "Ready" will disappear for around 5 seconds then come back up.

This is the symptom of a very common netinstall problem with an easy solution in most cases.
by macsrwe
Sat Apr 18, 2020 11:22 pm
Forum: General
Topic: Public IP routing
Replies: 10
Views: 2320

Re: Public IP routing

The original problem is to take a very limited number of public IPs and serve a data center (many devices), only a few of which he wants to be directly accessible from the outside. That requires a NATted LAN. That requires /firewall ip nat entries.
by macsrwe
Sat Apr 18, 2020 1:58 am
Forum: General
Topic: Possible fix for hAP ac2 rebooting randomly
Replies: 104
Views: 20035

Re: Possible fix for hAP ac2 rebooting randomly

Using this 2 simple steps I can crash it pretty much on demand with any ROS version up to 6.47Beta54 within less than 10 minutes.

Is this specific to hAP ac2, or is it reproducible on arbitrary models?
by macsrwe
Fri Apr 17, 2020 10:13 pm
Forum: Announcements
Topic: Winbox v3.23 released!
Replies: 60
Views: 29176

Re: Winbox v3.23 released!

"Inner window size" problem not solved From posted change list, I inferred that they admitted in advance that this part of the problem was not yet solved. Baby steps, I guess. I wish things got broken only in baby steps. "Check for update" still does not admit availability of this version, though.
by macsrwe
Fri Apr 17, 2020 9:37 pm
Forum: General
Topic: Public IP routing
Replies: 10
Views: 2320

Re: Public IP routing

I think you can try this way:
Just have a try , i didn't test it. :)

Nothing in your example addresses his public IP issue.
by macsrwe
Fri Apr 17, 2020 9:35 pm
Forum: Beginner Basics
Topic: Deny All Set Rule
Replies: 10
Views: 2125

Re: Deny All Set Rule

You are using webfig or WInbox. These are handy tools, but do not provide complete information on your configuration.

Either use a Terminal window in Winbox, or ssh into your router to obtain a native terminal window.
by macsrwe
Fri Apr 17, 2020 9:05 pm
Forum: Wireless Networking
Topic: Metal 52 ac to Metal 52 ac
Replies: 9
Views: 2506

Re: Metal 52 ac to Metal 52 ac

The problem with expecting the MikroTik bandwidth test to show you an accurate wireless throughput is that most of the units dedicated to serious wireless don't have powerful CPUs, and the CPUs at the far end max out trying to run all the bandwidth test servers long before the wireless link is satur...
by macsrwe
Fri Apr 17, 2020 3:25 am
Forum: Wireless Networking
Topic: Mesh Network for Art Cars
Replies: 6
Views: 1590

Re: Mesh Network for Art Cars

Although one might infer that a wAP is directional from its wall-mount design, it is in fact omnidirectional.
by macsrwe
Fri Apr 17, 2020 3:23 am
Forum: Wireless Networking
Topic: Metal 52 ac to Metal 52 ac
Replies: 9
Views: 2506

Re: Metal 52 ac to Metal 52 ac

using the antenna that came in the box, both are 52ac so hoppfully they aren't the wrong ones from packing. So the OmniTIK would be better with its dual chain? then I thought of putting a mAP lite on each one for clients to connect too. Do you want an indoor or an outdoor machine? Because mAP lites...
by macsrwe
Fri Apr 17, 2020 12:52 am
Forum: RouterBOARD hardware
Topic: CRS328
Replies: 8
Views: 2369

Re: CRS328

Just remove usermanager unless you are using it?

I would have to assume that if he wasn't using it, it wouldn't be storing transactions on disk or logging error messages.
by macsrwe
Fri Apr 17, 2020 12:44 am
Forum: Wireless Networking
Topic: Metal 52 ac to Metal 52 ac
Replies: 9
Views: 2506

Re: Metal 52 ac to Metal 52 ac

currently its floating around -71/-72 and they are on 50ft apart. That's extremely punk at 50'. Something is wrong. Sorry for the basic question, but what antenna do you have attached and are you sure it's rated for the frequency you chose? A couple years ago, I asked MikroTik a relevant question; ...
by macsrwe
Fri Apr 17, 2020 12:28 am
Forum: Wireless Networking
Topic: Mesh Network for Art Cars
Replies: 6
Views: 1590

Re: Mesh Network for Art Cars

Assuming you means "cars" as in automobiles (i.e., as opposed to "AV carts"), I would expect you would like a weatherproof unit. My first choice would be one of the wAP models.
by macsrwe
Fri Apr 17, 2020 12:21 am
Forum: General
Topic: Public IP routing
Replies: 10
Views: 2320

Re: Public IP routing

If I understand your request correctly, you have multiple public IPs available at your WAN port, you have several public servers on your LAN, and you want each of those servers to be accessible from and to use one and only one of those public IPs pemanently. If this is so, the configuration is mostl...
by macsrwe
Fri Apr 17, 2020 12:01 am
Forum: General
Topic: (SOLVED) DISC Lite 5 died after upgrade, please help
Replies: 2
Views: 1099

Re: (SOLVED) DISC Lite 5 died after upgrade, please help

Check the casing on that bad boy before returning it to service. We've had consistent case failures on these units, unlike any other MT unit we use.
by macsrwe
Thu Apr 16, 2020 11:47 pm
Forum: Beginner Basics
Topic: Deny All Set Rule
Replies: 10
Views: 2125

Re: Deny All Set Rule

Tried exporting firewall filter and nothing came out for line 22 instead, a bunch of blocked IP came out for line 23. @macsrwe like you said its definitely not line 23. I will try exporting line 22 again tomorrow. But looks like either its already "deny all" so nothing came out or im doing somethin...
by macsrwe
Thu Apr 16, 2020 11:42 pm
Forum: Beginner Basics
Topic: Deny All Set Rule
Replies: 10
Views: 2125

Re: Deny All Set Rule

However, the default firewall rules in RouterOS do not have ALLOW for all the desired traffic but a DENY of all traffic NOT originating from LAN. So, when you add a DENY ALL rule at the end of that, without first adding some more ALLOW rules for management etc, you will have locked yourself out of ...
by macsrwe
Thu Apr 16, 2020 1:34 pm
Forum: Beginner Basics
Topic: Deny All Set Rule
Replies: 10
Views: 2125

Re: Deny All Set Rule

Curious... this is the opposite of the advice I have always heard, which is to craft firewall rules to explicitly allow the traffic you want to allow, then "deny all" at the end. Almost invariably for the input chain, and perhaps for the forward chain as well, depending on your application. (In my c...
by macsrwe
Thu Apr 16, 2020 10:33 am
Forum: The User Manager
Topic: Hotspot with and without radius server difference
Replies: 2
Views: 1758

Re: Hotspot with and without radius server difference

For one thing, a separate Radius server allows you to use an online billing service other than the one or two that ROS supports.
by macsrwe
Thu Apr 16, 2020 10:28 am
Forum: Beginner Basics
Topic: Deny All Set Rule
Replies: 10
Views: 2125

Re: Deny All Set Rule

Rule 23 is definitely not a "deny all" rule -- it only denies traffic that matches the specified source address list. Rule 22 "looks" like a deny all rule, but it's impossible to tell from a Winbox window whether or not there are additional conditions set in columns that are not selected. To tell fo...
by macsrwe
Thu Apr 16, 2020 1:06 am
Forum: General
Topic: WinBox can't see RB750Gr3
Replies: 19
Views: 3471

Re: WinBox can't see RB750Gr3

Yes, i guess they sould implement some kind of a popup message informing the user of a success or failure... Not logical. They do report success. They cannot explicitly report failure due to an MT bug that aborts the process without intending to. To me it would be obvious that netinstall not succee...
by macsrwe
Thu Apr 16, 2020 1:05 am
Forum: General
Topic: WinBox can't see RB750Gr3
Replies: 19
Views: 3471

Re: WinBox can't see RB750Gr3

Yes, i guess they sould implement some kind of a popup message informing the user of a success or failure...

Not logical. They do report success. They cannot explicitly report failure due to an MT bug that aborts the process without intending to.
by macsrwe
Thu Apr 16, 2020 1:02 am
Forum: General
Topic: WinBox can't see RB750Gr3
Replies: 19
Views: 3471

Re: WinBox can't see RB750Gr3

had cases where i tried 4 different versions, isnt that obvious that i was closing and opening the program again ? So if that's the case as soon as i opened netinstall for second time, it should have worked... But it didn't... Also, tell me how do you explain that it does not work the first time bu...
by macsrwe
Wed Apr 15, 2020 10:35 pm
Forum: General
Topic: WinBox can't see RB750Gr3
Replies: 19
Views: 3471

Re: WinBox can't see RB750Gr3

The proccess is : ready -> formatting ->installing-> reboot I 've never seen a case where the above 4 steps completed one by one but netinstall did not actually happen.. So i guess the progress bar might went full but actually you never saw the words formatting and/or installing ... Usually what yo...
by macsrwe
Wed Apr 15, 2020 8:55 pm
Forum: Announcements
Topic: Winbox v3.22 released!
Replies: 117
Views: 50895

Re: Winbox v3.22 released!

ctrl-c, ctrl-v everywhere... +1. I have never found a MikroTik user who found the current ^v "lock" feature useful. Conversely, I have assisted a number who were screaming "Jane! Stop this crazy thing!" after having activated it accidentally. Maybe it's time to bite the bullet, discontinue it (or m...
by macsrwe
Wed Apr 15, 2020 8:25 pm
Forum: General
Topic: WinBox can't see RB750Gr3
Replies: 19
Views: 3471

Re: WinBox can't see RB750Gr3

Launch Netinstall, quickly select "previous install" (it's always selected, by the way) and press "Install"? No, this not helps. Please don't suggest changing the version of Netinstall, changing the network adapter and other irrational things anymore. At first, I have alredy checked this and other ...
by macsrwe
Tue Apr 14, 2020 1:18 am
Forum: General
Topic: Possible fix for hAP ac2 rebooting randomly
Replies: 104
Views: 20035

Re: Possible fix for hAP ac2 rebooting randomly

If even 6.45.7 is not a long-term solution to the problem, a workaround could be to permit access to public NTP servers (and nowhere else) to just one of those devices and let the other ones synchronize from it. I read this as: let some other device on your network run NTP server. That's great as l...
by macsrwe
Mon Apr 13, 2020 12:10 am
Forum: Beginner Basics
Topic: Collecting daily/monthly usage stats?
Replies: 8
Views: 2937

Re: Collecting daily/monthly usage stats?

The interface menu retains total bytes/packets in/out for each interface. You can copy out the numbers on the first of each month than zero it for next month. If router is not rebooted for all month :) One nice thing I will never hesitate to say about using MT gear over the past 12 years is that gr...
by macsrwe
Sat Apr 11, 2020 10:01 pm
Forum: Announcements
Topic: v6.46.5 [stable] is released!
Replies: 72
Views: 28877

Re: v6.46.5 [stable] is released!

System->auto-upgrade, still problem, from ftp source !! ehhhh.... I'm very unhappy with MikroTik's recent release performance. They are releasing new features while at the same time breaking old features, then never fixing the old features. System auto-upgrade hasn't worked for months, the Dude is ...
by macsrwe
Sat Apr 11, 2020 9:42 pm
Forum: RouterBOARD hardware
Topic: PowerBox Long cable PoE in = all PoE out Short Circuit
Replies: 9
Views: 3453

Re: PowerBox Long cable PoE in = all PoE out Short Circuit

Thanks, but powering a Powerbox Pro is irrelevant to this thread, as the subject problem is present only in older Powerbox (not-Pro) and original Omnitik models, which use passive POE only. Our experience was that the issue showed itself over as short as an 8-meter cable, about the absolute minimum ...
by macsrwe
Sat Apr 11, 2020 8:15 pm
Forum: The Dude
Topic: The dude causing reboot of RB4011
Replies: 8
Views: 2566

Re: The dude causing reboot of RB4011

No hard feelings, thanks for all your work.
by macsrwe
Sat Apr 11, 2020 3:49 am
Forum: The Dude
Topic: The dude causing reboot of RB4011
Replies: 8
Views: 2566

Re: The dude causing reboot of RB4011

Then why Dude does not crash the other 30 devices? It chose just to crash the 4011 ? The other 30 do not use ROS @macsrwe ? The Dude is executing only on the 4011, isn't it? Or did I misunderstand the original post? It's comparatively unlikely that the Dude would be crashing a machine other than th...
by macsrwe
Sat Apr 11, 2020 3:38 am
Forum: General
Topic: WinBox can't see RB750Gr3
Replies: 19
Views: 3471

Re: WinBox can't see RB750Gr3

Color me dubious. I've upgraded netinstall dozens of times over the past 12 years, and since this problem started showing up about four years ago it has never changed.
by macsrwe
Sat Apr 11, 2020 3:18 am
Forum: The Dude
Topic: The dude causing reboot of RB4011
Replies: 8
Views: 2566

Re: The dude causing reboot of RB4011

If that happened, i do not know how, but lets say that dude does that, you wouldn't get "router was rebooted without proper shutdown" but just a "router rebooted"... The message you get means that the router neither was rebooted normally or shutdown through it's menu but that it lost power.... No, ...
by macsrwe
Sat Apr 11, 2020 3:14 am
Forum: RouterBOARD hardware
Topic: PowerBox Long cable PoE in = all PoE out Short Circuit
Replies: 9
Views: 3453

Re: PowerBox Long cable PoE in = all PoE out Short Circuit

I think you ought to report this as a bug. As I showed in the image, it's still possible for ROS to report a yes setting that was set some time ago, but if it no longer allows you to set a yes setting, I really believe that is a bug. These devices need that setting to run in almost all situations, w...
by macsrwe
Sat Apr 11, 2020 3:08 am
Forum: General
Topic: WinBox can't see RB750Gr3
Replies: 19
Views: 3471

Re: WinBox can't see RB750Gr3

But as compared with the article, I don't see a progress bar, flashing process took 3-4 seconds and then router's status becomes "Ready".

I strongly suspect you have encountered a common netinstall problem where the install just doesn't happen. Fix is in the link.
by macsrwe
Sat Apr 11, 2020 3:03 am
Forum: General
Topic: Very strange environment variables. Did I get hacked?
Replies: 19
Views: 6699

Re: Very strange environment variables. Did I get hacked?

My next suggestion was going to be for you to run /system default-configuration script print and peruse the output for matching strings, in case someone had established a non-standard default configuration on your router. But if mrz says this is a known bug, then it is. (I bet if you ran the command...
by macsrwe
Sat Apr 11, 2020 2:54 am
Forum: General
Topic: OSPF over a wireless link
Replies: 2
Views: 1510

Re: OSPF over a wireless link

I don't know if this satisfies whatever requirement you envision for management, but the standard way to configure this is to make the two SXTs into an L2 bridge on a /29 or so, and just have the hosts at either end treat them as a stupid cable. (Don't try to run OSPF on the SXTs themselves, they wi...
by macsrwe
Fri Apr 10, 2020 8:17 am
Forum: RouterBOARD hardware
Topic: Cable suggestions
Replies: 2
Views: 1740

Re: Cable suggestions

I am trying to imagine Ethernet connectors that will fit into a standard jack, and yet are too wide to fit through a Groove cap with the rubber grommet removed, and also too long to fit into an SXT with the door closed. I think a model of "tool-less" CAT6 tips I once carried may fit this bill, but w...
by macsrwe
Fri Apr 10, 2020 7:41 am
Forum: Beginner Basics
Topic: Cap Lite for home network help
Replies: 13
Views: 2471

Re: Cap Lite for home network help

So just to confirm theres nothing i can do to wirelessly bridge and mesh using the cap lite units? You can, but doesn't provide optimal signal coverage. Instead of putting an emitter right in the remote room where you need one, you have to locate the emitter halfway between there and your base unit...
by macsrwe
Fri Apr 10, 2020 7:35 am
Forum: Announcements
Topic: v6.46.5 [stable] is released!
Replies: 72
Views: 28877

Re: v6.46.5 [stable] is released!

wireless - added "U-NII-2" support for hAP ac2
ok, but where did U-NII-3 missing??
U-NII-2
what does that mean?
GIYF...
by macsrwe
Thu Apr 09, 2020 3:34 pm
Forum: General
Topic: Very strange environment variables. Did I get hacked?
Replies: 19
Views: 6699

Re: Very strange environment variables. Did I get hacked?

Freshly rebooted and I have these environment variables. Any ideas what they are? They look like scripts? And some are quite long. If I delete them, they'll remain deleted until the next reboot. They are global functions . From the behavior you describe, your router executes a script on startup tha...
by macsrwe
Thu Apr 09, 2020 11:56 am
Forum: Wireless Networking
Topic: Setting up Mesh network on existing Mikrotik WIFI network
Replies: 4
Views: 2084

Re: Setting up Mesh network on existing Mikrotik WIFI network

I'm not an authority on roaming. From what I've gathered from some threads I've read, there are three networking standards that have to be implemented to achieve seamless roaming, and MikroTik has implemented (I think) part of two and none of the third. I would recommend you search this forum for th...
by macsrwe
Thu Apr 09, 2020 11:42 am
Forum: General
Topic: Can traffic generator be used over more than 1 hop?
Replies: 2
Views: 1057

Re: Can traffic generator be used over more than 1 hop?

It's a bit of busywork, but you could create a tunnel interface (PPTP, L2TP, EOIP, etc.) between routers A and C and test through it.
by macsrwe
Thu Apr 09, 2020 11:35 am
Forum: Wireless Networking
Topic: Which Wireless for 10km with no-line of sight?
Replies: 2
Views: 1566

Re: Which Wireless for 10km with no-line of sight?

Sometimes you can achieve adequate "near line of sight" connections with 2.4GHz, though spectrum is crowded. Better for NLOS is 900MHz, but it is even more crowded. 5GHz and higher, you need true line of sight. You can use Google Earth's "viewshed" feature to determine line of sight (modulo building...
by macsrwe
Thu Apr 09, 2020 11:15 am
Forum: Wireless Networking
Topic: Setting up Mesh network on existing Mikrotik WIFI network
Replies: 4
Views: 2084

Re: Setting up Mesh network on existing Mikrotik WIFI network

Nobody is answering because the question doesn't make sense. From Wikipedia: A mesh refers to rich interconnection among devices or nodes. Wireless mesh networks often consist of mesh clients, mesh routers and gateways. Mobility of nodes is less frequent. If nodes constantly or frequently move, the ...
by macsrwe
Thu Apr 09, 2020 10:51 am
Forum: General
Topic: Does PowerBox "Pro" have same PoE-In cable length limit as non "Pro" version ?
Replies: 4
Views: 1670

Re: Does PowerBox "Pro" have same PoE-In cable length limit as non "Pro" version ?

I ve used this command on a 6.44.2 Version that was Released on 2019-Apr-01 12:47 ... So, how sure are you that the above does not work ? This thread is a duplicate of this one . The command works (and is necessary almost always) on Powerboxes. It does not work (nor is it necessary) on Powerbox Pros.
by macsrwe
Thu Apr 09, 2020 10:43 am
Forum: RouterBOARD hardware
Topic: PowerBox Long cable PoE in = all PoE out Short Circuit
Replies: 9
Views: 3453

Re: PowerBox Long cable PoE in = all PoE out Short Circuit

There is no "in other words." In this post , you say, "I bought a Mikrotik PowerBox (didn't realize at the time there was a Pro version)." You have Powerbox, which is old model (although still sold) and uses only passive POE. ROS command shown is available on old model, and usually always needed. Po...
by macsrwe
Thu Apr 09, 2020 9:59 am
Forum: Beginner Basics
Topic: Collecting daily/monthly usage stats?
Replies: 8
Views: 2937

Re: Collecting daily/monthly usage stats?

The interface menu retains total bytes/packets in/out for each interface. You can copy out the numbers on the first of each month than zero it for next month.
by macsrwe
Tue Apr 07, 2020 1:59 am
Forum: Forwarding Protocols
Topic: A strange routing issue, works if OSPF is disabled
Replies: 6
Views: 2284

Re: A strange routing issue, works if OSPF is disabled

I have already told you the most straightforward way to pursue this issue. Let me know when you have performed it.
by macsrwe
Tue Apr 07, 2020 12:24 am
Forum: Forwarding Protocols
Topic: A strange routing issue, works if OSPF is disabled
Replies: 6
Views: 2284

Re: A strange routing issue, works if OSPF is disabled

Your new figure contains nearly no IP address labels, so I can't follow your explanation. If you have determined that return routing of messages from 10.6.0.4 is failing with OSPF enabled, then run a traceroute from 10.6.0.4 to the original origin of the message, examine the results with OSPF disabl...
by macsrwe
Sun Apr 05, 2020 11:55 pm
Forum: General
Topic: ETHERNET SCHEDULE
Replies: 5
Views: 1458

Re: ETHERNET SCHEDULE

True... I only suggested it might do "what he actually wanted," not necessarily "the way he thought he wanted to do it."
by macsrwe
Sun Apr 05, 2020 10:56 pm
Forum: Wireless Networking
Topic: Disc Lite 5 frecuency range problem
Replies: 7
Views: 2015

Re: Disc Lite 5 frecuency range problem

Frankly, I'm flabbergasted to learn that anyone is deploying Discs indoors. Then again, with all units I have had with split casings, maybe that is the best place to deploy them. :D
by macsrwe
Sun Apr 05, 2020 8:54 pm
Forum: RouterBOARD hardware
Topic: PowerBox Long cable PoE in = all PoE out Short Circuit
Replies: 9
Views: 3453

Re: PowerBox Long cable PoE in = all PoE out Short Circuit

No, they have not removed it -- it is just hidden well, as it always has been. See image, taken today on operating equipment. If you had followed the instructions in the 2014 document, you would have found it. Note that this parameter is only available for old models of outdoor POE-out units that do...
by macsrwe
Sun Apr 05, 2020 8:02 pm
Forum: Wireless Networking
Topic: How to connect a hap ac2 to an ISP router via wifi [SOLVED]
Replies: 16
Views: 4252

Re: How to connect a hap ac2 to an ISP router via wifi [SOLVED]

Best explanation of this entire issue is here: https://wiki.mikrotik.com/wiki/Manual:Wireless_Station_Modes Once you understand section about "limitations of L2 bridging," you will understand how all the other modes work the way they do, and that the proprietary extensions like "station-bridge" that...
by macsrwe
Sun Apr 05, 2020 7:56 pm
Forum: Wireless Networking
Topic: Disc Lite 5 frecuency range problem
Replies: 7
Views: 2015

Re: Disc Lite 5 frecuency range problem

MKT tends to restrict more and more the rules per regulatory domains, with every new release. In all fairness, MikroTik is being told by national governments to obey more and more restrictions to obtain certification to sell in that country. Gone are the days when the end-user engineer was responsi...
by macsrwe
Sun Apr 05, 2020 7:46 pm
Forum: General
Topic: ETHERNET SCHEDULE
Replies: 5
Views: 1458

Re: ETHERNET SCHEDULE

Check out the "kid protect" feature, it may do what you need.
by macsrwe
Sun Apr 05, 2020 7:43 pm
Forum: General
Topic: Different Rate Between Firewall and Torch
Replies: 3
Views: 1301

Re: Different Rate Between Firewall and Torch

You did not include the firewall rule, which is necessary for any rational attempt at analysis. Preferably, all firewall rules, so that applicable prior rules can be inspected as well. You will note that the number of packets is wildly different as well. Clearly the firewall rule isn't doing what yo...
by macsrwe
Sun Apr 05, 2020 7:31 pm
Forum: Beginner Basics
Topic: 3 router config assistance please [SOLVED]
Replies: 6
Views: 3441

Re: 3 router config assistance please [SOLVED]

The limitation of bandwidth-test is that the number of server processes it starts often saturate the CPU well before the communication channel. It is best performed to a powerful router beyond the router you want to test. Using the "both" mode doubles the number of server processes, which degrades c...
by macsrwe
Sun Apr 05, 2020 5:37 am
Forum: General
Topic: [Feature request] Time in app graphing
Replies: 0
Views: 1515

[Feature request] Time in app graphing

In smartphone app, tools / graphing / interface graphs has useful sliding bar that measures traffic volume at any time, but should also display the time/date, which is available nowhere, including x axis
by macsrwe
Sat Apr 04, 2020 1:10 am
Forum: Forwarding Protocols
Topic: A strange routing issue, works if OSPF is disabled
Replies: 6
Views: 2284

Re: A strange routing issue, works if OSPF is disabled

You may be looking for the problem on the wrong unit. OSPF should be constructing reciprocal routes on the other unit, and those may be wrong. Torch the interface at 10.6.0.4 to see if your requests from 10.200.0.4 are arriving and departing. Torch the interface at 10.200.0.1 and I suspect you will ...
by macsrwe
Fri Apr 03, 2020 11:57 pm
Forum: Beginner Basics
Topic: 3 router config assistance please [SOLVED]
Replies: 6
Views: 3441

Re: 3 router config assistance please [SOLVED]

So putting the little ones in bridge mode should do the trick? In that event, do I exclude their ports (the ports they are connected to on the RB3011) from the bridge on the RB3011? No, put everything on the bridge. You need only one "router" for your house, at the ingress point. Everything else sh...
by macsrwe
Fri Apr 03, 2020 4:15 pm
Forum: Beginner Basics
Topic: RB260GS + hAP ac
Replies: 9
Views: 1939

Re: RB260GS + hAP ac

Maybe your ISP's router is miffy about talking to anything that hasn't gotten its address through their DHCP server.
by macsrwe
Fri Apr 03, 2020 3:40 pm
Forum: Scripting
Topic: [HELP]Set NAT dst-address not work [SOLVED]
Replies: 3
Views: 3327

Re: [HELP]Set NAT dst-address not work [SOLVED]

Sorry, I misspoke. The function is :tostr, not :tochar.

https://wiki.mikrotik.com/wiki/Manual:S ... g#Commands
by macsrwe
Fri Apr 03, 2020 3:31 pm
Forum: General
Topic: RouterBOARD mAP 2nD voltage
Replies: 1
Views: 1028

Re: RouterBOARD mAP 2nD voltage

Suggest you send this directly to support@mikrotik.com to get manufacturer to address this.
by macsrwe
Fri Apr 03, 2020 3:26 pm
Forum: General
Topic: Error in ip route - action timed out
Replies: 6
Views: 2031

Re: Error in ip route - action timed out

Optimal procedure would be:

Take supout
Save supout
Reboot router
See if problem went away
If not, take second supout
Send supout(s) to support@mikrotik.com along with description of what happened.
by macsrwe
Fri Apr 03, 2020 3:23 pm
Forum: General
Topic: Problem with using Netinstall
Replies: 2
Views: 1261

Re: Problem with using Netinstall

The way I'm interpreting this question is: he has a custom default configuration he wants to impose with netinstall, and the script he created works when he invokes it by hand, but it doesn't work when invoked automatically at router reboot/reset-configuration time. If this isn't correct, apologies....
by macsrwe
Thu Apr 02, 2020 6:38 am
Forum: General
Topic: physical wlan station config
Replies: 3
Views: 1342

Re: physical wlan station config

All I could think of is that in Winbox, wireless interface shows up in italics as inactive (which someone may mistake for disabled) when no one is registered to it. Either that, or this is incompetent commercial spam, following the sudden rash we have been experiencing on MT forum this week (see OP ...
by macsrwe
Thu Apr 02, 2020 12:49 am
Forum: Wireless Networking
Topic: Rural outdoor 4G / LTE Setup
Replies: 18
Views: 5087

Re: Rural outdoor 4G / LTE Setup

Good day all, I am in South Africa and have a Mikrotik LTESXT kit with a Hikvision IP camera connected to Port 2 with POE. I can see the camera on IVMS 4200 if LAN cable is plugged into my PC,but as soon as i take it out i lose connection. Do you lose connection because Hikvision loses power? Widel...
by macsrwe
Thu Apr 02, 2020 12:43 am
Forum: Wireless Networking
Topic: Impact of regulatory domain setting on TX power / overall WiFi stability (hAP ac)
Replies: 4
Views: 2121

Re: Impact of regulatory domain setting on TX power / overall WiFi stability (hAP ac)

You could try physically tilting the AP... but that might not solve your underlying problem anyway.

If your router is having problems penetrating to the floor above, your devices on the floor above are likely to have exactly the same problems penetrating to the router on the floor below.
by macsrwe
Wed Apr 01, 2020 11:59 pm
Forum: Scripting
Topic: hotspot broadcast massages all active user
Replies: 3
Views: 1822

Re: hotspot broadcast massages all active user

This company still using mainframes with timesharing? "CP\CMS GOING DOWN IN 00:05"?

This is not a networking function OSI layer 1-3. They need to invest in some sort of groupware application OSI layers 5-7.
by macsrwe
Wed Apr 01, 2020 11:53 pm
Forum: Scripting
Topic: [HELP]Set NAT dst-address not work [SOLVED]
Replies: 3
Views: 3327

Re: [HELP]Set NAT dst-address not work [SOLVED]

Common problem. Use [:tochar ] (correction) [:tostr ] to turn variable contents into a string instead of a numeric address.
by macsrwe
Wed Apr 01, 2020 11:31 pm
Forum: Scripting
Topic: Mass upgrade APs
Replies: 3
Views: 1648

Re: Mass upgrade APs

I suspect you have discovered another user-interface pessimization caused by the new update mechanism introduced in 6.46.2. You can read much about it here, keep searching for posts containing the words "hidden" and "hide."
by macsrwe
Wed Apr 01, 2020 11:17 pm
Forum: General
Topic: physical wlan station config
Replies: 3
Views: 1342

Re: physical wlan station config

Lacking some terribly basic information, such as: what model equipment are you talking about?
by macsrwe
Wed Apr 01, 2020 11:11 pm
Forum: General
Topic: Spontaneous reboots
Replies: 22
Views: 4812

Re: Spontaneous reboots

Lots of reports of NTP package causing reboots in recent releases, this may be your only problem.

MikroTik is not guaranteed to be here. To assure MikroTik attention, email bug report to support@mikrotik.com.
by macsrwe
Wed Apr 01, 2020 11:09 pm
Forum: General
Topic: Possible fix for hAP ac2 rebooting randomly
Replies: 104
Views: 20035

Re: Possible fix for hAP ac2 rebooting randomly

ROS does not allow this. You would have to downgrade all of ROS to that version.
by macsrwe
Wed Apr 01, 2020 12:44 pm
Forum: Scripting
Topic: how clear Mikrotik Log ?
Replies: 20
Views: 16239

Re: how clear Mikrotik Log ?

You would think so… but as I already said, those lines are no longer useful to clear any part of the memory log, assuming they ever were. Seriously, try them – they do nothing.
by macsrwe
Wed Apr 01, 2020 7:08 am
Forum: RouterBOARD hardware
Topic: PowerBox Long cable PoE in = all PoE out Short Circuit
Replies: 9
Views: 3453

Re: PowerBox Long cable PoE in = all PoE out Short Circuit

I believe you will find the answers to precisely these questions here.
by macsrwe
Wed Apr 01, 2020 3:42 am
Forum: Wireless Networking
Topic: Distance is different AP vs CPE
Replies: 2
Views: 1948

Re: Distance is different AP vs CPE

Known deficiency in ROS that "auto" distance is often wildly overestimated on one side of a PTP link, while correct on the other. Efficiency improvement can be had by entering specific distance into wireless config parameters instead of "auto" default. This alone may improve your CCQ situation. You ...
by macsrwe
Wed Apr 01, 2020 3:32 am
Forum: Scripting
Topic: how clear Mikrotik Log ?
Replies: 20
Views: 16239

Re: how clear Mikrotik Log ?

Misunderstood your requirement. I did not understand you wanted to clear memory-resident log. I don't make much use of memory-resident logs because they are not persistent, and IMHO anything worth logging is worth having available after a crash. I have determined that not even the commands previousl...
by macsrwe
Wed Apr 01, 2020 2:13 am
Forum: General
Topic: Weird packet loss on CCR1009-7G-1C [SOLVED]
Replies: 10
Views: 3507

Re: Weird packet loss on CCR1009-7G-1C [SOLVED]

You should at least have a default 0.0.0.0/0 route defined in /ip route, preferably also a small number of dependable static routes. One of your complaints was that you would lose some number of pings before establishing good traffic, that is a common symptom of having 100% dynamic routing. OSPF &c ...
by macsrwe
Wed Apr 01, 2020 12:34 am
Forum: General
Topic: Weird packet loss on CCR1009-7G-1C [SOLVED]
Replies: 10
Views: 3507

Re: Weird packet loss on CCR1009-7G-1C [SOLVED]

I cannot seem to find any /ip route anywhere. That would be a major omission.
by macsrwe
Wed Apr 01, 2020 12:25 am
Forum: Beginner Basics
Topic: Router exposed to internet over night [SOLVED]
Replies: 6
Views: 3489

Re: Router exposed to internet over night [SOLVED]

The default firewall in the default configuration protects the router if you connect to the internet via the default port (ether1). However, if you are playing with your own custom configurations or firewall rules, and hook up through an unprotected port, your router is visible to hackers who indeed...
by macsrwe
Tue Mar 31, 2020 10:55 pm
Forum: Beginner Basics
Topic: disabling Auto Negotiation on 1000M full [SOLVED]
Replies: 10
Views: 4323

Re: disabling Auto Negotiation on 1000M full [SOLVED]

It was on fiber, come to think of it, not copper.
by macsrwe
Tue Mar 31, 2020 8:36 am
Forum: Beginner Basics
Topic: disabling Auto Negotiation on 1000M full [SOLVED]
Replies: 10
Views: 4323

Re: disabling Auto Negotiation on 1000M full [SOLVED]

Keep in mind that a posting in this forum is not guaranteed to be seen or responded to by MikroTik personnel. If you want to make sure MikroTik sees and responds to your issue, you should email it to support@mikrotik.com. Feel free to return back here and post the gist of their response for those wh...
by macsrwe
Tue Mar 31, 2020 4:51 am
Forum: Beginner Basics
Topic: disabling Auto Negotiation on 1000M full [SOLVED]
Replies: 10
Views: 4323

Re: disabling Auto Negotiation on 1000M full [SOLVED]

If true, the standard is not uniformly obeyed. In my region, CenturyLink gateway feeds are routinely supplied that run 1G and refuse negotiation, and you can't connect with them unless you configure your interface as 1G non-negotiated. Something to watch out for.
by macsrwe
Tue Mar 31, 2020 4:16 am
Forum: Beginner Basics
Topic: disabling Auto Negotiation on 1000M full [SOLVED]
Replies: 10
Views: 4323

Re: disabling Auto Negotiation on 1000M full [SOLVED]

It's quite possible you're not doing anything incorrectly. If your peripherals default to 100M in the absence of negotiation, and require negotiation to step up to 1G -- which is not unreasonable default operation -- all of the behavior you describe would occur. You don't specifically say, but I inf...
by macsrwe
Tue Mar 31, 2020 2:09 am
Forum: General
Topic: Weird packet loss on CCR1009-7G-1C [SOLVED]
Replies: 10
Views: 3507

Re: Weird packet loss on CCR1009-7G-1C [SOLVED]

Without configuration, impossible to guess well. My first guess would be an ambiguous addressing setup or ARP issues.

/export hide-sensitive file=whatever

Post contents of whatever.rsc here.
by macsrwe
Tue Mar 31, 2020 2:03 am
Forum: General
Topic: Using Fasttrack with Simple Queues [SOLVED]
Replies: 2
Views: 2705

Re: Using Fasttrack with Simple Queues [SOLVED]

I believe easiest way to think of this problem is to remember that firewall rules must be present that specifically enable fasttrack between designated pairs of interfaces. (Interface lists can muddle the underlying behavior, so pretend for the moment that they are not there to use.) Ensure your con...
by macsrwe
Tue Mar 31, 2020 1:37 am
Forum: General
Topic: Load external image on captive portal
Replies: 14
Views: 3077

Re: Load external image on captive portal

This posting is short on specifics. Is the host containing/generating this image allowed in your set of walled garden hosts?
by macsrwe
Tue Mar 31, 2020 1:30 am
Forum: Beginner Basics
Topic: Router exposed to internet over night [SOLVED]
Replies: 6
Views: 3489

Re: Router exposed to internet over night [SOLVED]

You don't say what version of ROS it was running... to be safest, you should netinstall unit entirely.
by macsrwe
Mon Mar 30, 2020 4:57 am
Forum: Wireless Networking
Topic: w60g MCS rates
Replies: 1
Views: 1490

Re: w60g MCS rates

It depends how loosely you define "achieve." If the radio isn't staying there in production use, it's almost always because you wouldn't like the results if it stayed there. A higher modulation that craters your CCQ is no bargain.
by macsrwe
Mon Mar 30, 2020 3:37 am
Forum: General
Topic: DNS Issue
Replies: 4
Views: 1605

Re: DNS Issue

As stated, this is a Windows peculiarity, not MikroTik limitation. Another option is that you can just invent your own local TLD (e.g., .icarus) and define all your local devices that way; then you would resolve "sqlserver.icarus" with no problems.
by macsrwe
Sun Mar 29, 2020 12:45 pm
Forum: General
Topic: why
Replies: 4
Views: 1416

Re: why

Again, you don't provide any useful description of what you did, so my answer can only be so helpful. You cannot make this change just in /ip address and expect the router to work. You must also potentially change /ip firewall nat, /ip dhcp-server, and possibly other places before everything will ta...
by macsrwe
Sat Mar 28, 2020 1:02 am
Forum: Wireless Networking
Topic: Low signal when using USB Wi-FI adaptor with hAP Lite
Replies: 6
Views: 2009

Re: Low signal when using USB Wi-FI adaptor with hAP Lite

Change the channel on the hAP and see if that improves things. You could be "auto"ing to a channel your USB dongle doesn't work with.
by macsrwe
Sat Mar 28, 2020 12:33 am
Forum: Announcements
Topic: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!
Replies: 43
Views: 79730

Re: MUM EUROPE AND OTHER UPCOMING EVENTS - POSTPONED!

Is there anything planned like a virtual mum /VMUM/ - like live streaming ?

Every attendee gets a free virtual router (CHR) and a virtual t-shirt (sunscreen not included).
by macsrwe
Thu Mar 26, 2020 5:11 am
Forum: General
Topic: System note ERROR
Replies: 2
Views: 1066

Re: System note ERROR

...or just drag the window wider.
by macsrwe
Mon Mar 23, 2020 12:42 am
Forum: General
Topic: Roadwarrior client router
Replies: 20
Views: 4148

Re: Roadwarrior client router

I'm not surprised it disappeared -- 0.0.0.0/0 is the default ("everywhere"). Your rule is in the input chain. That means that traffic to the router itself (not your network, just the router) will be accepted from those addresses. If you're trying to get your router to serve this traffic to some othe...
by macsrwe
Sun Mar 22, 2020 2:19 pm
Forum: General
Topic: Roadwarrior client router
Replies: 20
Views: 4148

Re: Roadwarrior client router

I suspect your problem is that 0.0.0.0 is not the same as 0.0.0.0/0 .
by macsrwe
Sun Mar 22, 2020 5:43 am
Forum: The Dude
Topic: The Dude IS Dead, really, isn't it?
Replies: 39
Views: 13739

Re: The Dude IS Dead, really, isn't it?

After changing some of the polling parameters, and saving historical data at less detail, it is still struggling, and often will lock up, forcing me to re-open the client. I am now under the impression that I must either downgrade the Dude, or offload polling to agents Yeah, I did the polling time ...
by macsrwe
Sat Mar 21, 2020 2:55 pm
Forum: General
Topic: Unable to get full gigabit speed on RB750Gr3
Replies: 33
Views: 10519

Re: Unable to get full gigabit speed on RB750Gr3

Speed limit of the device is here. If routing properly with fasttrack, you should be able to achieve gigabit with all reasonable packet sizes.
by macsrwe
Sat Mar 21, 2020 2:49 pm
Forum: Beginner Basics
Topic: Slow internet speed [SOLVED]
Replies: 10
Views: 4760

Re: Slow internet speed [SOLVED]

What wireless channels are being used on each device?

What speed do you get if you cable in to the Deco?
by macsrwe
Fri Mar 20, 2020 9:47 am
Forum: General
Topic: How to access Irish Content
Replies: 4
Views: 1378

Re: How to access Irish Content

Stupid spam, too. He forgot to global-replace "Iran" with "Ireland" inside the spam.
by macsrwe
Tue Mar 17, 2020 8:04 pm
Forum: General
Topic: Which modem/router. Help
Replies: 4
Views: 1416

Re: Which modem/router. Help

+1. Nothing like having the freedom to plan out a good wired network before the walls are up.

And don't forget to pull a few to your roof as well, for later use for security cameras, wireless bridges to outbuildings, or whatever.
by macsrwe
Tue Mar 17, 2020 3:33 am
Forum: General
Topic: Which modem/router. Help
Replies: 4
Views: 1416

Re: Which modem/router. Help

Trying to serve a large house wirelessly from a single central point, particularly if there are intervening walls, plumbing, appliances, or masonry, is a bad choice. It doesn't matter how strong your router signal is -- your PC, phone, and IOT device signals won't be strong enough to be seen reliabl...
by macsrwe
Mon Mar 16, 2020 10:12 pm
Forum: General
Topic: Looking for POE Access Point Suggestions
Replies: 4
Views: 1496

Re: Looking for POE Access Point Suggestions

I ran an RB951 for years and was happy with it; then replaced it with a hAP ac lite I got as checkin swag at a MUM, which added 5GHz. I'm equally happy with that. I ran both from a central location, wall-mounted, and fed with POE. Realize that if you have a large house or many intervening walls, run...
by macsrwe
Mon Mar 16, 2020 10:06 pm
Forum: General
Topic: Issue regarding the famous api bug following us from last year;
Replies: 1
Views: 1221

Re: Issue regarding the famous api bug following us from last year;

It's difficult to tell from your text precisely what your problem is. But from what I can gather, you have some routers showing API errors and some not showing them, yet all are on same RouterOS level. My first guess would be that some of your units were compromised by the rash of exploits that occu...
by macsrwe
Mon Mar 16, 2020 10:01 pm
Forum: General
Topic: RB260GS old vs new distinction
Replies: 3
Views: 1554

Re: RB260GS old vs new distinction

As far as I know the "old" version of the RB260GS was the RB250GS. I'm not aware of two RB260 versions.
by macsrwe
Mon Mar 16, 2020 9:55 pm
Forum: General
Topic: DHCP server problem
Replies: 10
Views: 3077

Re: DHCP server problem

I have found that very dirty power failures (where power fluctuates off/on several times close together at just the right delay) can scramble configurations of many devices, including MikroTiks, up to and including full factory reset.
by macsrwe
Mon Mar 16, 2020 9:49 pm
Forum: General
Topic: Feature Request: Logging of all administrator user actions
Replies: 22
Views: 8340

Re: Feature Request: Logging of all administrator user actions

we do this already, in 5 minute intervals if change is detected

I am curious... given the nearly nonexistent support of file contents availability in the command language, how do you detect a configuration change?
by macsrwe
Mon Mar 16, 2020 9:10 pm
Forum: RouterBOARD hardware
Topic: Powerbox to Powerbox, daisy chain
Replies: 1
Views: 2010

Re: Powerbox to Powerbox, daisy chain

This is theoretically possible, except that you cannot exceed the output power budget on the single port on PowerBox 1 that runs PowerBox 2 and its attached devices. Unless you are running some very low power devices on PB2, you will have a hard time. You may do better installing a POE splitoff adap...
by macsrwe
Mon Mar 16, 2020 9:02 pm
Forum: General
Topic: Option to duplicate rule....
Replies: 6
Views: 3525

Re: Option to duplicate rule....

What's wrong with

/ip firewall filter add copy-from ... ?
by macsrwe
Mon Mar 16, 2020 8:58 pm
Forum: General
Topic: Poor Download Speeds CCR1016-12G
Replies: 5
Views: 1858

Re: Poor Download Speeds CCR1016-12G

Did you ever solve your problem?
by macsrwe
Mon Mar 16, 2020 8:54 pm
Forum: The Dude
Topic: how to put public ip on host
Replies: 1
Views: 4310

Re: how to put public ip on host

You can do this with simple port forwarding, but for security purposes it is discouraged to leave WAN-facing ports open on a MikroTik.
by macsrwe
Mon Mar 16, 2020 8:51 pm
Forum: The Dude
Topic: The Dude IS Dead, really, isn't it?
Replies: 39
Views: 13739

Re: The Dude IS Dead, really, isn't it?

It's been great for me - up until I expanded my map - added sub-maps. Now it barely runs with 200 devices. It freezes up on the client side frequently. The number 200 grabbed my attention. My own Dude layout began dropping stuff on the floor at this level. I discovered the host router (hEX) was spe...
by macsrwe
Sun Mar 15, 2020 10:54 am
Forum: General
Topic: Config - Interface mac variable and last four?
Replies: 1
Views: 991

Re: Config - Interface mac variable and last four?

Use the :pick function. You may also need to use :tostr and :tonum ("0x" . $whatever) appropriately, depending on what you need to have in hand for intermediate values.
by macsrwe
Sun Mar 15, 2020 3:17 am
Forum: RouterBOARD hardware
Topic: High CPU Utilization
Replies: 1
Views: 2417

Re: High CPU Utilization

use /tool profile to determine what flavor of process is eating your CPU.
by macsrwe
Sun Mar 15, 2020 3:09 am
Forum: Scripting
Topic: need help for editing HT mcs rates [SOLVED]
Replies: 8
Views: 5142

Re: need help for editing HT mcs rates [SOLVED]

My experience has been that you cannot disable a wireless data rate with MT HCS without unticking both sides. If you untick just one side, the data rate still gets used. It's not even as useful as to say that you can limit the transmit or the receive data rate alone by unticking one side, I have nev...
by macsrwe
Thu Mar 12, 2020 2:32 am
Forum: Beginner Basics
Topic: Point to Point SXTsq 200m apart
Replies: 13
Views: 3236

Re: Point to Point SXTsq 200m apart

Recommend you test at full distance without hidden ID; only hide it after everything else works. Been there.
by macsrwe
Thu Mar 12, 2020 2:10 am
Forum: Announcements
Topic: Winbox v3.22 released!
Replies: 117
Views: 50895

Re: Winbox v3.22 released!

The window size should be stored in session file. Make sure you have autosave on or save the session before closing. Yes, outermost window size is saved with session file, but zoom level is not. Yes, I no longer have to drag the window larger before zooming it, but I still have to zoom it ^3 every ...
by macsrwe
Thu Mar 12, 2020 1:45 am
Forum: Beginner Basics
Topic: Point to Point SXTsq 200m apart
Replies: 13
Views: 3236

Re: Point to Point SXTsq 200m apart

To secure the bridge SSID, define a profile under /interface wireless security, and then enter that profile name in /interface wireless for that interface. Be aware that if you hide the SSID you must "hardwire" that SSID in the main wireless settings on the station side; it will not work with a "con...
by macsrwe
Tue Mar 10, 2020 4:37 am
Forum: General
Topic: Block Torrents & p2p Traffic 100% working on all versions
Replies: 59
Views: 165015

Re: Block Torrents & p2p Traffic 100% working on all versions

And layer7 matcher is practically obsolete, because everyone uses tunnels now. You are chasing a dragon here.
by macsrwe
Tue Mar 10, 2020 4:33 am
Forum: General
Topic: Poor Download Speeds CCR1016-12G
Replies: 5
Views: 1858

Re: Poor Download Speeds CCR1016-12G

I don't know how geographically distributed your users are (e.g., especially if your ether cables go to wireless interfaces to remote places), but it appears to me that you are using a bridged architecture on a single bridge that encompasses all your users, and that bridge is using the default proto...
by macsrwe
Tue Mar 10, 2020 4:20 am
Forum: Beginner Basics
Topic: Point to Point SXTsq 200m apart
Replies: 13
Views: 3236

Re: Point to Point SXTsq 200m apart

If you are running the units close together for testing and do not turn down the power, you will get garbage speed. Keep them at least on opposite sides of a normal room and turn the power down to absolute minimum until you deploy them outside. Even then, watch your power levels, keep the registrati...
by macsrwe
Tue Mar 10, 2020 4:09 am
Forum: Beginner Basics
Topic: Bridging with MikroTik Sxtsq lite5
Replies: 3
Views: 2032

Re: Bridging with MikroTik Sxtsq lite5

Your question is ambiguous. "I have a router, and far away a device I want to connect to the network, so I believe the configuration desired is bridge" But you don't say whether you are locating the SXTsq at the router side or at the device side, so no one can answer you. You don't say whether this ...
by macsrwe
Tue Mar 10, 2020 4:03 am
Forum: Announcements
Topic: v6.46.4 [stable] is released!
Replies: 107
Views: 50074

Re: v6.46.4 [stable] is released!

There are currently no problems with schedules if they are built by SNMP. Ah, so you are saying that data collection is unimpaired, but data display by /tool graph (only) is faulty...? Specially after your question I translated the schedule from ROS to SNMP. As you can see, the same graph is displa...
by macsrwe
Mon Mar 09, 2020 12:58 am
Forum: Announcements
Topic: v6.46.4 [stable] is released!
Replies: 107
Views: 50074

Re: v6.46.4 [stable] is released!

There are currently no problems with schedules if they are built by SNMP.

Ah, so you are saying that data collection is unimpaired, but data display by /tool graph (only) is faulty...?
by macsrwe
Sun Mar 08, 2020 11:30 pm
Forum: Wireless Networking
Topic: Can I use the Wireless Wire for this?
Replies: 2
Views: 2141

Re: Can I use the Wireless Wire for this?

"Can you" if the physical object interference is negligible and the distance is not too great? Of course, that's what it's for. Are those conditions true in your particular house? Only you can best judge this, not someone on a forum. But you cannot just plug an antenna into it, you must use a third ...
by macsrwe
Sun Mar 08, 2020 11:27 pm
Forum: Wireless Networking
Topic: Hardware Issue - PA Damage?
Replies: 2
Views: 2299

Re: Hardware Issue - PA Damage?

Can you make an actual connection in mode=station to any one of the networks shown in the scan? If not, my suspicion is that the transmitter section is fried in the WiFi chip.
by macsrwe
Sun Mar 08, 2020 11:12 pm
Forum: Announcements
Topic: v6.46.4 [stable] is released!
Replies: 107
Views: 50074

Re: v6.46.4 [stable] is released!

New problems with 6.46.4. All information that is removed through the ROS is distorted. For example, on graphs of loading of interfaces of jumping 2-3 times bigger than real. What is the % CPU usage on your DynaDish? This graph looks symptomatic of the metering process periodically missing interval...
by macsrwe
Sun Mar 08, 2020 11:07 pm
Forum: Announcements
Topic: v6.45.8 [long-term] is released!
Replies: 87
Views: 64816

Re: v6.45.8 [long-term] is released!

In specific, the backup file size under V6.44.6 is about 1.1MB, but the size of backup file under V6.45.8 is just 640KB. Such difference maybe a proof of incomplete backup file generated in newer version which results in failure of restoration. Make sure you report this via email to support@mikroti...
by macsrwe
Sun Mar 08, 2020 10:52 am
Forum: RouterBOARD hardware
Topic: POE out - why do most MikroTik products not follow the standards?
Replies: 22
Views: 7240

Re: POE out - why do most MikroTik products not follow the standards?

It looks like this problem is being reported by many people . One post estimates a 1:4 failure rate for Hikvision units in powering up, and the same problem is reported with many models of POE gear. My only suggestion would be for you to power up other 802.3af units from the OmniTik port and satisfy...
by macsrwe
Sun Mar 08, 2020 12:20 am
Forum: RouterBOARD hardware
Topic: POE out - why do most MikroTik products not follow the standards?
Replies: 22
Views: 7240

Re: POE out - why do most MikroTik products not follow the standards?

Sorry for barging in like this but I have a question too, in similar manner: Why do I need to turn "Forced On" on Ominitk 5 PoE ac, to be able to power Hikvision camera ? Auto ON simply doesn't work. Both are 802.3af compatible and I have 48V PSU on Omnitik. Typically that's an indication that the ...
by macsrwe
Sat Mar 07, 2020 3:11 am
Forum: Wireless Networking
Topic: LHG 60G mount - can't use a ratchet wrench
Replies: 6
Views: 2852

Re: LHG 60G mount - can't use a ratchet wrench

Is there any reason you can't just use a shifting spanner, fixed wrench or socket wrench? You sort of have to... but that's often not a very tower-friendly solution. Keep in mind that half the time, the nut is on the far side of the unit from you, where you can't see it. On some of these mounts, yo...
by macsrwe
Fri Mar 06, 2020 1:22 am
Forum: Wireless Networking
Topic: SXTsq 5 ac not loading backup file configuration
Replies: 3
Views: 2183

Re: SXTsq 5 ac not loading backup file configuration

One point I overlooked: if you're trying to distribute a configuration as a backup file, it won't work. Backup files are specific to individual units. They don't work at all between different router models, and even if you try to load them on identical router models with identical firmware and ROS l...
by macsrwe
Fri Mar 06, 2020 1:18 am
Forum: Wireless Networking
Topic: SXTsq 5 ac not loading backup file configuration
Replies: 3
Views: 2183

Re: SXTsq 5 ac not loading backup file configuration

Usually this indicates that there is a error (sometimes syntax, sometimes interface-specific, etc.) in the configuration file, and configuration was aborted ether before it started or when the error was encountered. The only direct way to debug this is to reset the router with no-default-configurati...
by macsrwe
Fri Mar 06, 2020 1:00 am
Forum: Wireless Networking
Topic: LHG 60G mount - can't use a ratchet wrench
Replies: 6
Views: 2852

Re: LHG 60G mount - can't use a ratchet wrench

DynaDish mount also suffers from this shortcoming. Sometimes possible to use a ratcheting end wrench, but even so sometimes there is not enough room to swing it one ratchet step. We have had to do these much more than we would like using adjustable Crescent wrenches. :-(
by macsrwe
Thu Mar 05, 2020 11:19 pm
Forum: Beginner Basics
Topic: Rewriting outbound traffic originating from Mikrotik
Replies: 1
Views: 1734

Re: Rewriting outbound traffic originating from Mikrotik

Maybe I'm missing something (because I cannot believe this would not have been noticed by now), but I think you've found a bug. Tools / btest-server allows you to select a set of ports other than the default 2000-2100, which would normally address your issue. However, I can find no provision to make...
by macsrwe
Thu Mar 05, 2020 10:56 pm
Forum: Beginner Basics
Topic: Ping drops first 2-3 packets then low stable latency. [SOLVED]
Replies: 3
Views: 3748

Re: Ping drops first 2-3 packets then low stable latency. [SOLVED]

I'll mention, just in case you might be unaware, that any queue priorities you assign traffic are entirely internal to the RouterBoard, and get discarded when the traffic exits an interface. So, if the problem is indeed at or in the modem, priorities won't solve it. Have you run a traceroute instead...
by macsrwe
Thu Mar 05, 2020 8:09 am
Forum: Wireless Networking
Topic: wireless dish alignement
Replies: 2
Views: 2179

Re: wireless dish alignement

Totally wild guess: perhaps you are trained on a sidelobe instead of the main lobe?
by macsrwe
Thu Mar 05, 2020 7:59 am
Forum: The Dude
Topic: Install a mikrotik web proxy
Replies: 1
Views: 2808

Re: Install a mikrotik web proxy

Do you have a MikroTik as your gateway router? You can use the (free) proxy facility right in that router to do this. You will, however, need some website where you can store the message to the customer (it can be on your LAN if you have a server running 24/7). Here is the configuration I used to pr...
by macsrwe
Thu Mar 05, 2020 6:58 am
Forum: General
Topic: CRS default config: Bridge and Interface MAC in IP Neighbors
Replies: 3
Views: 2019

Re: CRS default config: Bridge and Interface MAC in IP Neighbors

There are other threads about this same issue. It was introduced in an upgrade version within the past six months or so. It's pretty clearly a bug.
by macsrwe
Thu Mar 05, 2020 6:49 am
Forum: Beginner Basics
Topic: PTP link for shooting range camera.
Replies: 2
Views: 2149

Re: PTP link for shooting range camera.

I don't understand your setup. Terms like "shooting bench side" and "camera side" don't mean much when you haven't diagrammed your setup. Especially since the way I am imagining such a setup, you have them backwards, but I can't be sure what you think you are trying to do.
by macsrwe
Thu Mar 05, 2020 6:45 am
Forum: Beginner Basics
Topic: Cap AC vs Wap ac vs Omnitik AC? [SOLVED]
Replies: 5
Views: 4616

Re: Cap AC vs Wap ac vs Omnitik AC? [SOLVED]

What are the differences? They seem the same on paper, 2x2 802.11ac APs. Not so much performance, but environmental, connectivity, and decor. OmniTik line doesn't do 2.4GHz or wall-mounting, and offers multiple ports which can be had with POE-out; cAP AC is not an outdoor unit, and comes with two E...
by macsrwe
Thu Mar 05, 2020 6:36 am
Forum: Announcements
Topic: v6.46.4 [stable] is released!
Replies: 107
Views: 50074

Re: v6.46.4 [stable] is released!

Facing a problem, The system auto-upgrade broken since 6.46.1 Yup, and no announcement that a fix is in the works. And since then, they broke the Dude. I am absolutely not upgrading anything anywhere until these two regressions are fixed. Hope you have someone working on these high priority, MT.
by macsrwe
Tue Mar 03, 2020 1:34 am
Forum: General
Topic: Kansas City MUM USA
Replies: 20
Views: 4383

Re: Kansas City MUM USA

Since OP is on limited budget, don't hesitate to use AirB&B...it could surprise you!

Agreed. Don't overlook VRBO/HomeAway as well. Have used them before in cases of "sold-out function hotel" with fine results.
by macsrwe
Sun Mar 01, 2020 11:39 pm
Forum: General
Topic: Intermittent Power Cycle - RB2011
Replies: 13
Views: 3354

Re: Intermittent Power Cycle - RB2011

That's pretty normal, but it's not going to show you an intermittent problem. I'd replace the power adapter right off, if possible, with one offering slightly more current.

Also, the 2011 has one POE-out port, and a real or illusory power draw on that port may be overtaxing the power adapter.
by macsrwe
Sun Mar 01, 2020 11:30 pm
Forum: Beginner Basics
Topic: Can't acces by pptp
Replies: 1
Views: 1438

Re: Can't acces by pptp

Was your "new device" by any chance an Apple device? Shortly after PPTP was deemed insecure, the propeller-heads at Apple unilaterally decided to remove all support for it from their OSes, so now you cannot access any networks that still offer only PPTP interfaces.
by macsrwe
Sun Mar 01, 2020 9:24 pm
Forum: SwOS
Topic: POE-Short Circuit
Replies: 3
Views: 3171

Re: POE-Short Circuit

It just seems somehow wasteful to me to buy a switch with POE out and then not use it. If you power the cAP from the POE-out port, you gain the advantage of being able to power-cycle it remotely if you ever have to (e.g., if it stops talking to you). Plus, it gives you a spare injector for when a wa...
by macsrwe
Sun Mar 01, 2020 8:04 pm
Forum: General
Topic: Firewall filter due date
Replies: 5
Views: 1758

Re: Firewall filter due date

Maybe it would be worthwhile if you could describe a situation that would require a NAT rule to deactivate itself after a specific period, because my imagination is failing me.
by macsrwe
Sun Mar 01, 2020 10:57 am
Forum: General
Topic: Routing one ip across a tunnel.
Replies: 3
Views: 1606

Re: Routing one ip across a tunnel.

It's a unique "router ID" for OSPF and MPLS. "The router ID is the highest IP address on the box—or, if a loopback exists, the loopback becomes the router ID. It is highly recommended that you define a loopback address so that it will be elected as a router ID. One good reason is that, if a link is ...
by macsrwe
Sun Mar 01, 2020 5:31 am
Forum: Wireless Networking
Topic: Signal fall with Antenna Gain setting on RB2011
Replies: 8
Views: 3219

Re: Signal fall with Antenna Gain setting on RB2011

@Cameroon: yes there is no creation of energy out of nothing.
Cameroon is a spammer. He has been making worthless posts like this in many forums today, and they have all been removed.
by macsrwe
Sun Mar 01, 2020 5:26 am
Forum: SwOS
Topic: POE-Short Circuit
Replies: 3
Views: 3171

Re: POE-Short Circuit

I hope I understand your problem description correctly. There is a 260GS and a 260GSP. The first has no POE out, and the second does. Although you insist that you don't have one of each, I suspect you really do, because only the second model will show a POE menu or give you POE error messages. Look ...
by macsrwe
Sun Mar 01, 2020 4:50 am
Forum: General
Topic: Firewall filter due date
Replies: 5
Views: 1758

Re: Firewall filter due date

And yet that rule DOES take a dst-address-list argument that has to be matched in order to invoke it... so put the router's own WAN address in an address list with an expiration time (in addition to a non-expiring bogus address, just to be safe) and the dst-nat will stop working when that entry expi...
by macsrwe
Sun Mar 01, 2020 3:35 am
Forum: General
Topic: Firewall filter due date
Replies: 5
Views: 1758

Re: Firewall filter due date

If you were clever, and your specific requirement suited such a strategy, you could configure your rules to use address lists instead of addresses, and then populate those address lists with expiring entries. Otherwise, I can't think of anything short of scripting.
by macsrwe
Sun Mar 01, 2020 2:15 am
Forum: Announcements
Topic: Winbox v3.21 released!
Replies: 55
Views: 18238

Re: Winbox v3.21 released!

I reported above that the log window columns crop the data at the right side edge because the columns are too narrow in the zoomed view. They also lack headers to be able to manually resize them to the desired width.

Well, yes, but that's always been a deficiency in the log window.
by macsrwe
Fri Feb 28, 2020 12:26 pm
Forum: General
Topic: Netinstall sending offer, but not installing [SOLVED]
Replies: 8
Views: 6581

Re: Netinstall sending offer, but not installing [SOLVED]

I did have it time out once and go back into "ready" mode. I did nothing but close Netinsall, restart it and tried again - boom it simply worked. I see this same complaint so often, MikroTik should put it in the netinstall Wiki (if they're not going to fix the bug). If I can use "Previous install" ...
by macsrwe
Fri Feb 28, 2020 11:31 am
Forum: Scripting
Topic: Mode button test internet
Replies: 2
Views: 1874

Re: Mode button test internet

It looks like it does what you want, but I have to wonder why you think rebooting the router is the best (or even an effective) way to get the Internet back.
by macsrwe
Fri Feb 28, 2020 9:27 am
Forum: Beginner Basics
Topic: Firewall Rules for UDP Across LAN
Replies: 18
Views: 3522

Re: Firewall Rules for UDP Across LAN

I would insert the following rule after 5: chain=forward action=passthrough dst-address=192.168.9.225 src-address-list=God_Mode log=yes log-prefix="666?" Then check the log for occurrences when you think you should be seeing a packet that 5 should have accepted, and see what the log says about the p...
by macsrwe
Fri Feb 28, 2020 8:25 am
Forum: Beginner Basics
Topic: Firewall Rules for UDP Across LAN
Replies: 18
Views: 3522

Re: Firewall Rules for UDP Across LAN

Ah, well, then, clearly something in rule 5 is deficient and is not matching the packets. It could be something that doesn't show in the Winbox window because it's in a column you aren't showing, like perhaps the TCP flags or whatever. Use the CLI to do a /ip firewall filter print, and look for some...
by macsrwe
Fri Feb 28, 2020 7:40 am
Forum: Beginner Basics
Topic: Firewall Rules for UDP Across LAN
Replies: 18
Views: 3522

Re: Firewall Rules for UDP Across LAN

First question: do you also see the counts for rule 5 or 6 increasing, or just 10? If not, something is wrong with your specification in 5 and 6.
by macsrwe
Fri Feb 28, 2020 6:46 am
Forum: Forwarding Protocols
Topic: Apple Bonjour across vlans?
Replies: 16
Views: 5425

Re: Apple Bonjour across vlans?

No.
by macsrwe
Fri Feb 28, 2020 5:51 am
Forum: Forwarding Protocols
Topic: Apple Bonjour across vlans?
Replies: 16
Views: 5425

Re: Apple Bonjour across vlans?

They're never going to see those broadcasts. The mechanics of why have been previously posted. Bonjour will not work on remote access connections without active server assistance. If you absolutely need Bonjour to work, you'll have to obtain the avahi server, invest in a Linux device to run it, and ...
by macsrwe
Fri Feb 28, 2020 5:38 am
Forum: Forwarding Protocols
Topic: Apple Bonjour across vlans?
Replies: 16
Views: 5425

Re: Apple Bonjour across vlans?

Give your devices names and preassigned DHCP reservations, then reference them by name instead of using Bonjour at all.

Yes, it's replacing a zero-configuration process with a configuration process. Sorry, but that's all there is.
by macsrwe
Thu Feb 27, 2020 12:16 pm
Forum: Forwarding Protocols
Topic: Apple Bonjour across vlans?
Replies: 16
Views: 5425

Re: Apple Bonjour across vlans?

It's not that you can use a DNS to make Bonjour work, it's that you can use a DNS as a next-best option to compensate for the fact that Bonjour doesn't work.
by macsrwe
Thu Feb 27, 2020 10:24 am
Forum: General
Topic: MacOS Catalina, iOS, Catalyst, SwiftUI & Wine
Replies: 179
Views: 65704

Re: MacOS Catalina, iOS, Catalyst, SwiftUI & Wine

For God's shake! How many users or IT professionals are going to work seriously on a MikroTik from iPad?? - Definitely its not a simple task.
I have at times been forced to work on MikroTiks from my iPhone; at least on an iPad I wouldn't have to cross my eyes.
by macsrwe
Thu Feb 27, 2020 10:06 am
Forum: General
Topic: Kansas City MUM USA
Replies: 20
Views: 4383

Re: Kansas City MUM USA

Normis, you just denied this man the benefit of a healthy 7 min brisk walk at least twice a day.
Watch out, you may get sued for denying an americans right to exercise
Not to worry, Normis promised me they were remembering to print the 3X-4X t-shirts this year.
by macsrwe
Thu Feb 27, 2020 9:41 am
Forum: Forwarding Protocols
Topic: Apple Bonjour across vlans?
Replies: 16
Views: 5425

Re: Apple Bonjour across vlans?

Can't be done in RouterOS without MT creating an avahi server package, which they have no plans to do.
by macsrwe
Thu Feb 27, 2020 9:31 am
Forum: Beginner Basics
Topic: DUDE Installation
Replies: 2
Views: 1643

Re: DUDE Installation

There's no requirement to do it in any order. You can install the Dude client on your PC any time you want, but until the server is enabled, it won't have anything to talk to.
by macsrwe
Mon Feb 24, 2020 7:30 pm
Forum: Announcements
Topic: Winbox v3.21 released!
Replies: 55
Views: 18238

Re: Winbox v3.21 released!

Log window (only!) is totally unreadable because the top and bottom of every line is sheared off. a fix for log window is needed before this can be used in production. Furthermore, /log print in Terminal is also useless because scrolling back Terminal screen to anything before the final contents re...
by macsrwe
Mon Feb 24, 2020 12:19 am
Forum: The Dude
Topic: Network map not showing links
Replies: 3
Views: 3672

Re: Network map not showing links

OK... I've used the Discovery feature no more than three times in my life, and at least two of those were on the old incarnation of the Dude when the server was on your PC instead of being on the MT device. I don't remember links ever being automatically generated, but my memory could be lacking, or...
by macsrwe
Sun Feb 23, 2020 11:27 pm
Forum: Scripting
Topic: Save frequency monitor scan to file
Replies: 3
Views: 1909

Re: Save frequency monitor scan to file

I don't know of one, maybe someone else does.

The Dude has a particularly elegant frequency monitor tool, but I suspect if you try to use it remotely on a CPE, you'll just get disconnected.
by macsrwe
Sun Feb 23, 2020 6:02 pm
Forum: Scripting
Topic: Save frequency monitor scan to file
Replies: 3
Views: 1909

Re: Save frequency monitor scan to file

The answer is quite simple: there is no "save-file" option to frequency-monitor.
by macsrwe
Sun Feb 23, 2020 2:42 am
Forum: Wireless Networking
Topic: Mikrotik WISPs: Where?
Replies: 98
Views: 69477

Re: Mikrotik WISPs: Where?

Grand Avenue Broadband in Wickenburg, Arizona USA, was until recently a 100% MikroTik WISP with >200 subscribers in three towns. In the past nine months, a number of the wireless units (some AP sectors and long PTP links) have been replaced with more effective competitive radio equipment, but the bu...
by macsrwe
Sun Feb 23, 2020 2:36 am
Forum: The Dude
Topic: Network map not showing links
Replies: 3
Views: 3672

Re: Network map not showing links

Discovery is cute, but I found it largely useless, as it's only really useful once in the lifetime of a configuration. The Dude has no idea what the interconnections between various devices are. You have to tell it, by using the "Add Link" choice, then drawing the appropriate lines between devices. ...
by macsrwe
Sun Feb 23, 2020 2:33 am
Forum: Scripting
Topic: how clear Mikrotik Log ?
Replies: 20
Views: 16239

Re: how clear Mikrotik Log ?

/file remove [find name~"log\\..*\\.txt"]

Is that easier or harder?

You can script any of these, you know, then just

/system script run NameOfScript
by macsrwe
Sun Feb 23, 2020 2:27 am
Forum: RouterOS v7 BETA
Topic: Big problems
Replies: 1
Views: 1856

Re: Big problems

Try posting on a netduma forum instead.
by macsrwe
Sun Feb 23, 2020 2:21 am
Forum: Announcements
Topic: Winbox v3.21 released!
Replies: 55
Views: 18238

Re: Winbox v3.21 released!

Just updated to this. On Retina screen, default presentation is way too small to read. At max zoom, it is barely smaller than the previous Winbox, and Log window (only!) is totally unreadable because the top and bottom of every line is sheared off. Needs at least one more zoom level; needs to rememb...
by macsrwe
Sun Feb 23, 2020 1:54 am
Forum: Beginner Basics
Topic: Another newbie. Seems to work but intermittant.
Replies: 2
Views: 1757

Re: Another newbie. Seems to work but intermittant.

Not clear from your posting where your WiFi is coming from now. The assumption is your "new router." Is it a MikroTik router or what? Also assuming that you are asking how to turn your hAP ac lite into a simple wireless access point with no other functionality. In brief, put all the interfaces into ...
by macsrwe
Fri Feb 21, 2020 2:43 am
Forum: General
Topic: 6.46.2 introduced DHCP client strange behavior
Replies: 2
Views: 1347

Re: 6.46.2 introduced DHCP client strange behavior

Read recently in another thread that having STP/RSTP enabled on a DHCP target bridge can slow responses way down, you might try going to "none".
by macsrwe
Sun Feb 09, 2020 3:58 am
Forum: General
Topic: Bring Tapatalk back
Replies: 32
Views: 4359

Re: Bring Tapatalk back

Ditto. iOS still fails.
by macsrwe
Thu Feb 06, 2020 1:38 am
Forum: Scripting
Topic: Bit inversion on a number
Replies: 1
Views: 1494

Re: Bit inversion on a number

I thought :tobool of the number would do the job, but apparently :tobool of a num produces a nil, which looks like a bug or a limitation.
by macsrwe
Thu Feb 06, 2020 1:11 am
Forum: Scripting
Topic: Help with my automatic script
Replies: 2
Views: 1837

Re: Help with my automatic script

Is the double "[[" a typo in your script, or only in your posting?
by macsrwe
Thu Feb 06, 2020 12:59 am
Forum: General
Topic: Run Script Button vs Terminal script run - Bug?
Replies: 1
Views: 545

Re: Run Script Button vs Terminal script run - Bug?

Explanation at bottom section of this page strongly indicates this behavior is a bug. Report it to support@mikrotik.com and let us all know what they say.
by macsrwe
Thu Feb 06, 2020 12:34 am
Forum: General
Topic: Filtering outputs on print commands? How?
Replies: 6
Views: 9106

Re: Filtering outputs on print commands? How?

Only "outside the CLI box," viz., you can use Winbox instead and display only columns you select.
by macsrwe
Thu Feb 06, 2020 12:32 am
Forum: General
Topic: Feature request: ask confirm for every operation
Replies: 9
Views: 1292

Re: Feature request: ask confirm for every operation

I think situation here is not for deliberate clicks that do the wrong thing, but accidental clicks (muscle spasm, dropped mouse, cat) where user immediately wonders what the click changed. In this case, user would surely answer no to confirmation dialog. I agree though that this feature is unlikely ...
by macsrwe
Thu Feb 06, 2020 12:13 am
Forum: General
Topic: 2 Mikrotik Fails in a week reputation tarnished, major opportunity for MT
Replies: 6
Views: 1215

Re: 2 Mikrotik Fails in a week reputation tarnished, major opportunity for MT

Never tried to use authorize.net myself, but if I was going to, I know an independent consultant who can work this problem in his sleep and is at least close to my time zone. I wouldn't expect to need to work with someone from the manufacturer. Have you tried using the consultants listed on the MT w...
by macsrwe
Tue Feb 04, 2020 11:36 pm
Forum: Beginner Basics
Topic: IP Neighbor Duplicates
Replies: 9
Views: 2641

Re: IP Neighbor Duplicates

This may be an issue in the OP's configuration, but the bug exhibits even on configurations that do not contain such an error. See image. All MAC addresses are correct, all bridging is correct, all addressing is correct, yet neighbors still show up more than once, only one of them with correct prope...
by macsrwe
Tue Feb 04, 2020 12:48 pm
Forum: RouterBOARD hardware
Topic: RB411 no ethernet connection
Replies: 48
Views: 7785

Re: RB411 no ethernet connection

I have license level = 3 So there is no way to use it as Wifi Extender?? You can purchase a level 4 license on mikrotik.com and apply it to your old hardware, but at that point may be more cost effective to get modern router with faster CPU and L4 included for comparable price. Only time I have eve...
by macsrwe
Tue Feb 04, 2020 12:40 pm
Forum: General
Topic: Cloud based management
Replies: 3
Views: 989

Re: Cloud based management

You asked for a "cloud-based" management system (e.g., Dude). Responder suggested running Dude on a VPS in the Cloud. He did not suggest running it on your hardware, which is not cloud-based in the first place.
by macsrwe
Tue Feb 04, 2020 12:30 pm
Forum: Beginner Basics
Topic: IP Neighbor Duplicates
Replies: 9
Views: 2641

Re: IP Neighbor Duplicates

I see this behavior too, on a network established for years, one that does not have any of the addressing issues proposed, or use CapsMAN, and NEVER showed this behavior until a recent release, on or around the time of the one that changed the user password encryption method. I am confident that it ...
by macsrwe
Tue Feb 04, 2020 12:05 pm
Forum: Announcements
Topic: v6.46.2 [stable] is released!
Replies: 121
Views: 34563

Re: v6.46.2 [stable] is released!

Is there a problem with the auto upgrade via different source on version 6.46.1? I added a package source, which is a different mikrotik to manage what OS I want to be installed onto my routerboards. All my tests work with previous versions of routerOS, but as soon as I hit 6.46.1, it would seem to...
by macsrwe
Sat Feb 01, 2020 2:39 am
Forum: Scripting
Topic: Useful scripts
Replies: 67
Views: 129509

Re: Useful scripts

i have problem about my script... -first of all i am changing mikrotik user name and password and delete standard username user add name=******* password=******* group=full user remove admin /system scheduler add name="30 gunde reboot" start-date="jul/12/1970" start-time="04:00:00" interval="1d 00:...
by macsrwe
Sat Feb 01, 2020 2:21 am
Forum: General
Topic: Looking for simple way to detect ISP connection state changes
Replies: 5
Views: 1132

Re: Looking for simple way to detect ISP connection state changes

Using the naked name of a script instead of "/script run <name>" works in some places in RouterOS, not in others. Try "/script run <name>" instead if you need to run an actual multi-line script.
by macsrwe
Fri Jan 31, 2020 12:20 am
Forum: Beginner Basics
Topic: Cable test [SOLVED]
Replies: 24
Views: 4446

Re: Cable test [SOLVED]

Autoneg not working on single rate optics? Wow, I haven't run into that for at least a decade, and even then it was vanishingly rare. Maybe not so much "not working" as not performed by ISP. Lines from our common carrier up here never auto-negotiate, you set your end manually or they don't work. Wh...
by macsrwe
Wed Jan 29, 2020 10:35 pm
Forum: Announcements
Topic: v6.45.8 [long-term] is released!
Replies: 87
Views: 64816

Re: v6.45.8 [long-term] is released!

iWell, if you upgrade from 6.44.6 (previous long-term) to 6.45.8 OF COURSE it includes new functionality. It does not if you upgrade from 6.45.7 to 6.45.8. Indeed. The question was why is that huge jump when we talk about long-term. Logics behind is an Terra Unknown for me, so some explanation woul...
by macsrwe
Wed Jan 29, 2020 9:31 pm
Forum: Announcements
Topic: v6.46.2 [stable] is released!
Replies: 121
Views: 34563

Re: v6.46.2 [stable] is released!

But this all boils down to the question: "Is there any good reason for hiding the files?" And the answer is definitely "no", at least MT has not come up with one single reason yet, apart from "the system files are hidden an now the upgrade files follow that path too" which sounds like a politician'...
by macsrwe
Wed Jan 29, 2020 6:24 am
Forum: The Dude
Topic: Help with ping in The Dude
Replies: 2
Views: 2756

Re: Help with ping in The Dude

Usual Dude parameters specify how many seconds between pings, and how many pings a device must miss to be considered down. It sounds like you want the opposite of this: not to mark the device up until it has responded to so many pings in a row. Is this a correct understanding? If so, I don't believe...
by macsrwe
Wed Jan 29, 2020 6:14 am
Forum: General
Topic: Free MUM entry vouchers for everyone with positive Karma
Replies: 19
Views: 4910

Re: Free MUM entry vouchers for everyone with positive Karma

Anyway, mum entrance is free. Just register. But if you can pay the very affordable price, you get much more than you pay: lunch, license, a router, coffee and beer also! I thought the router was with all tickets? Looking forward to Kansas City, but please remember the 2-4XL shirts this time (weari...
by macsrwe
Wed Jan 29, 2020 6:09 am
Forum: Beginner Basics
Topic: Update via terminal when no internet access
Replies: 2
Views: 1039

Re: Update via terminal when no internet access

You can't downgrade the OS just by uploading an older version and rebooting without performing the explicit downgrade command, otherwise RouterOS will detect the older version, ignore it, and discard the files. As far as the script not working, any error in the script will cause it to be aborted, so...
by macsrwe
Wed Jan 29, 2020 5:53 am
Forum: General
Topic: What is the solution of whole update Mikrotik without Not enough disk space?
Replies: 35
Views: 3967

Re: What is the solution of whole update Mikrotik without Not enough disk space?

Unfortunately, sometimes you can't do what you want to do.

Perhaps you need to buy a different model router with more memory in it; then it will do what you want it to do.
by macsrwe
Wed Jan 29, 2020 1:13 am
Forum: RouterBOARD hardware
Topic: RB411 no ethernet connection
Replies: 48
Views: 7785

Re: RB411 no ethernet connection

My RB has a wlan card, so how can I setup a wifi AP by serial console?
Read Wiki on how to configure a simple AP; type in all those commands by hand.
by macsrwe
Wed Jan 29, 2020 1:12 am
Forum: RouterBOARD hardware
Topic: RB411 no ethernet connection
Replies: 48
Views: 7785

Re: RB411 no ethernet connection

Ok I do a system reset configuration and now something strage happen. If I connect the RB to a linux PC the ethernet light on RB blink (before the reset configuration there was no blink), but if I connect RB to a windows PC no light blink. Maybe the port on your PC is so old it does not have Auto-M...
by macsrwe
Tue Jan 28, 2020 9:34 pm
Forum: The Dude
Topic: Device types question (MikroTik Device/RouterOS)
Replies: 5
Views: 3457

Re: Device types question (MikroTik Device/RouterOS)

I will eagerly watch this thread for an answer, because I could never find any utility or advantage to specifying either of them.
by macsrwe
Tue Jan 28, 2020 1:04 pm
Forum: RouterBOARD hardware
Topic: RB411 no ethernet connection
Replies: 48
Views: 7785

Re: RB411 no ethernet connection

/interface ethernet cable-test <interface-identifier>
by macsrwe
Tue Jan 28, 2020 2:23 am
Forum: General
Topic: Upgrade with small disk
Replies: 3
Views: 755

Re: Upgrade with small disk

Thank you. Please mark original response as the solution.
by macsrwe
Tue Jan 28, 2020 2:16 am
Forum: RouterBOARD hardware
Topic: RB411 no ethernet connection
Replies: 48
Views: 7785

Re: RB411 no ethernet connection

First I would try the cable test command to see what it thinks about the cable. If it shows zero length, the interface hardware may be bad. If it shows the length of the cable, the interface hardware on the other device may be bad or inactive. It may also show a problem on some cable conductor(s). N...
by macsrwe
Mon Jan 27, 2020 12:26 pm
Forum: General
Topic: What is the solution of whole update Mikrotik without Not enough disk space?
Replies: 35
Views: 3967

Re: What is the solution of whole update Mikrotik without Not enough disk space?

Maybe you have log space configured very large, and rebooting deletes the logs.
by macsrwe
Mon Jan 27, 2020 12:19 pm
Forum: General
Topic: Simple Queues script to change type [SOLVED]
Replies: 9
Views: 1388

Re: Simple Queues script to change type [SOLVED]

Curiously, neither (total-queue="") nor (total-queue is nil) work. One of these really should work. What does work is: :foreach i in=[find where ("foo" . total-queue) = "foo"] do={....} Note that the previous post marked "solution" will simply set every entry to wireless-default, even if it had been...
by macsrwe
Mon Jan 27, 2020 4:43 am
Forum: The Dude
Topic: Device types question (MikroTik Device/RouterOS)
Replies: 5
Views: 3457

Re: Device types question (MikroTik Device/RouterOS)

Device types shown come from a table you have control over. Click the box with three dots ("...") to the right of the field you show, this will open up all defined device types. Examine the ones you have questions about, see what differences there are and what defaults they have. (Some of the values...
by macsrwe
Mon Jan 27, 2020 4:32 am
Forum: The Dude
Topic: DNS
Replies: 1
Views: 2464

Re: DNS

Maybe I don't understand your question properly, because it doesn't sound hard.

On the Routerboard running the Dude, set up /ip dns and choose a public server like 8.8.8.8. Now Dude will always find a working DNS.
by macsrwe
Mon Jan 27, 2020 3:32 am
Forum: General
Topic: RoMON only showing some devices
Replies: 5
Views: 1029

Re: RoMON only showing some devices

More information needed.

Are you using a secret or no secret?

Are you using the same secret on all routers?

In /ip neighbor, do all routers show all neighbors that should be appearing, or are some missing?
by macsrwe
Sun Jan 26, 2020 11:19 pm
Forum: Announcements
Topic: v6.46.2 [stable] is released!
Replies: 121
Views: 34563

Re: v6.46.2 [stable] is released!

In my experience, "rebooted without proper shut down" usually indicates a power down, not a panic.
by macsrwe
Sun Jan 26, 2020 9:16 pm
Forum: RouterBOARD hardware
Topic: RB411 no ethernet connection
Replies: 48
Views: 7785

Re: RB411 no ethernet connection

Yes it do a first beep and then after some seconds a double beep. Ok my cable is not null, I will try to modify it. Do you have some suggestions to do it? You can buy small male/female plug to put on the end of your USB to serial adapter that will do the same thing without having to rewire a cable....
by macsrwe
Sat Jan 25, 2020 7:04 pm
Forum: General
Topic: Upgrade with small disk
Replies: 3
Views: 755

Re: Upgrade with small disk

If you place the upgrade packages in the "flash" folder, that is permanent memory (which is small, so they probably won't fit anyway). If you place them outside the "flash" folder, that is in RAM.

Hope this is what you were asking.
by macsrwe
Fri Jan 24, 2020 10:43 am
Forum: RouterBOARD hardware
Topic: RB411 no ethernet connection
Replies: 48
Views: 7785

Re: RB411 no ethernet connection

You need to acquire USB to serial hardware dongle, optional gender changer depending on dongle, and puTTY or equivalent software package.
by macsrwe
Fri Jan 24, 2020 10:29 am
Forum: Beginner Basics
Topic: [UPDATED] Bare IpSec: VPN reaches the local LAN, but not the other way round? Also, is my config sane? [SOLVED]
Replies: 11
Views: 3303

Re: [UPDATED] Bare IpSec: VPN reaches the local LAN, but not the other way round? Also, is my config sane? [SOLVED]

I'm a bit thrown by DHCP having issued you an address with netmask of /32 and a totally unrelated pref-src, but I'm assuming this is a PPPoE artifact and I'm not familiar with PPPoE. I'd give that a quick second glance just in case my unease is justified. I tried to look up why that would be a prob...