You cannot install the dude on it
Inviato dal mio SM-G361F utilizzando Tapatalk
6.4Ok, I'll call it a beatiful day once the RB will be replaced. By the way which ROS version did you use on your 951?
you're welcome. assuming that you have a usb port in your router, you can use a usb pendrive to store dude settings (SYSTEM>STORES)
let us know how it works out for you.
You can install the MIPS-BE version on each MIPS-BE routerboard:there isn't the versione for this rb
http://download.mikrotik.com/dude/4.0be ... mipsbe.npk
source ip - your ip subnet i.e. 192.168.0.0/24
protocol - udp
ports 67 & 68
action - drop
i have all dhcp disable also in my router also in my apif you have routeros handling your DHCP requests then set authoritative to yes and that will solve your rogue dhcp server problem.
You will not be able to use ping-speed from script properly. Instead you should use bandwidth-test.
Run a for loop in which bandwidth-test is executed with specified interval value.
Describe in details what exactly you want to do with this script.
can you help me writing a good rule?You should only block certain (type/code) ICMP packets, not unilaterally.
So accept 0:0 and 8:0 (both Ping) and 11:0 and 3:3 (both traceroute) and 3:4 (Path MTU Discovery) and then drop the rest.
yes ok but if i block ping isn't a new security for my customers to prevent attack?-----
no, and better when it traffic will put difference traffic on the networks.
i love investigation with ping command simple for.
can you write a good rule?http://www.mikrotik.com/testdocs/ros/3.0/qos/filter.php
set DST-ADDRESS and action DROP. The address can only be an IP or you can also use PORT for some specific IM programs.
I am very very thanks to your attention.. now I am will tray to upgrade my Mikrotik version and back to you.....
netsysstar, you really really really need to upgrade to 2.9.51. If you own a license then it's no big deal, if not then fork out the couple of bucks and get legal.I am using( mikrotik v 2.9.27)
there isn't nothing masquerade, but i can masquered the public ip?Show me
/ip firewall nat print
If there is not a masquerade statement there, you will not have a gateway. It will be unreachable. No route to host.
good idea can you send me a book? or want that i send to you my book . Ei baby my problem is on the mikrotik not in my mindyour gateway
please ask your network administrator. and if you are the administrator - please ask your ISP (and read some TCP/IP basics books)
check and make sure your default ip gateway should correct entry.
i have this problem: my mk says if i ping a public ip : no route to host and my mk not resolve the dns if also the dns function.
i can resolve this problem?
and you can also configure it using ROS local Profilesu have to configure burst in a radius server..
try using mikrotik's dictionary http://www.mikrotik.com/documentation// ... y.mikrotik
How do I stop ip request by the network card of my customers?I'm sorry I'm not able to understand the problem. Probably you can give more clear explanation, where is the problem.
and to show me burst for pppoe?Hi trottolino1970,
Check the following link:
http://wiki.mikrotik.com/wiki/Hotspot%2 ... priorities
Same scenario is working fine with pppoe
I disable WWW on all of my units, mostly to prevent botnet scanners from finding them. That also has the benefit of "hiding" the router from customers.
is masquerade from apclientyou may try to block his MAC in firewall 'input' chain
upload a web page(with a nonpayment notice) to a web server, make a address list named= nonpaid user, add non paid user ip to that address list, then make dat nat rule with src-address= nonpaid user and dst-nat to your web server ip and port.
Thanks maybe it would be helpful to you.
update to the latest version. I don't remember exactly, but as far as I remember it was fixed in late versions
My mistake, Netbios port is 135-139. Try blocking ports 135 to 139. In chains INPUT and FORWARD and UDP - TCP protocols.
Then block port 137 to 139 TCP and UDP (NetBIOS), if you want to block traffic between client APs then disable the "default forward" option in your wireless interface.
And do not see computers between them?Block ports 67 and 68, in TCP and UDP.
http://www.comptechdoc.org/independent/ ... tdhcp.html
i have two different adsl in two different place so i want use two mikrotik for different authentication. it's possible?Yes,
But i'm not sure about what you're asking...
Be more specific please
ok but iwant with a pppoe serverHello!!
Like say MRZ, look for in the Wiki, there is an articule written by Alessio that explain how to make an AntiSpam with a server HotSpot
yes ok but i can block it or no? which i can block?read this document to know how you can drop broadcasts and how /ip firewall filter works:
i have two adsl in two different place so i want to mount two mk. It's possible?Like one in Texas and one in Arizona? Sure, go for it!
Seriously, please be more specific in describing your problem.