Community discussions

MikroTik App

Search found 167 matches

by floaty
Thu May 21, 2020 6:33 am
Forum: Scripting
Topic: Neighbor connection with Terminal
Replies: 4
Views: 566

Re: Neighbor connection with Terminal

make yourself acquainted with ssh-key authenticaton !
.
BUT of course you can try ! ... the youngest day ... ? ... is public !
by floaty
Thu May 21, 2020 6:27 am
Forum: Scripting
Topic: Neighbor connection with Terminal
Replies: 4
Views: 566

Re: Neighbor connection with Terminal

the script just fails ...
.
it's a nice "try just at home example" :shock:
by floaty
Thu May 21, 2020 5:49 am
Forum: General
Topic: QinQ trunk port
Replies: 6
Views: 835

Re: QinQ trunk port

that may or may not be so ...
better you check that out by testing your configuration(s)
.
you should be suspicious, if two versions work : )
.
had QinQ never in production ... but earned all the the time mx'ed emotions, hearing production stories ....
by floaty
Wed May 20, 2020 11:12 pm
Forum: RouterOS v7 BETA
Topic: Feature Request: GREtap
Replies: 8
Views: 1786

Re: Feature Request: GREtap

.
A bit of a pity that MikroTik defined their own protocol type
.
... sometimes it's just about having my own "Jodeldiplom" ?!
.
... but opening a platform for a compatibilty is - of course - always a sometimes hard-to-know business-decision ...
I see more options, than contraints for this case
by floaty
Wed May 20, 2020 10:37 pm
Forum: RouterOS v7 BETA
Topic: Feature Request: GREtap
Replies: 8
Views: 1786

Re: Feature Request: GREtap

. Open vSwitch is using GRETAP as a tunneling option ! ... maybe also an option to terminate MTik-wireless-devices over a distributed-foreign network-infrastructure ?! ... with the new hiperf-switches and 10/25G-routers ... ?! that would be "a feature" also for datacenter-like installations !! ... o...
by floaty
Wed May 20, 2020 10:17 pm
Forum: RouterOS v7 BETA
Topic: Feature Request: GREtap
Replies: 8
Views: 1786

Re: Feature Request: GREtap

.
just to illustrate the issue ( ... opened the archives)
.
diff-is-diff.png
by floaty
Wed May 20, 2020 9:51 pm
Forum: RouterOS v7 BETA
Topic: Feature Request: GREtap
Replies: 8
Views: 1786

Re: Feature Request: GREtap

nope ... tried that ! MTik-EoIP and GRETAP make use of different protocol-types ... so ... the feature-request ... is simply a request for a compatibility-flag . https://tools.ietf.org/html/rfc2784 . 7.2. Protocol Types GRE uses an ETHER Type for the Protocol Type. New ETHER TYPES are assigned by Xe...
by floaty
Wed May 20, 2020 9:32 pm
Forum: Scripting
Topic: Neighbor connection with Terminal
Replies: 4
Views: 566

Re: Neighbor connection with Terminal

stunts like that will not work with user/password-authentication (there is no unattended remote-shell usage which needs interaction for authentication - security-reasons) you need to setup key-authentication between the devices then you can use ... : . [admin@tikki] > system ssh-exec <address> -- <c...
by floaty
Wed May 20, 2020 9:13 pm
Forum: General
Topic: QinQ trunk port
Replies: 6
Views: 835

Re: QinQ trunk port

in case your netflix is off duty ... surrogate:
https://www.youtube.com/watch?v=C46ISu_T2SE
starting 33:00
by floaty
Wed May 20, 2020 9:09 pm
Forum: General
Topic: QinQ trunk port
Replies: 6
Views: 835

Re: QinQ trunk port

https://wiki.mikrotik.com/wiki/Manual:I ... LAN#Q-in-Q
.
not 100% posititve about ... but maybe the remote-device uses 802.1ad compliant tagging
then you need to set
use-service-tag = yes
by floaty
Wed May 20, 2020 10:29 am
Forum: RouterOS v7 BETA
Topic: Feature Request: GREtap
Replies: 8
Views: 1786

Re: Feature Request: GREtap

by floaty
Thu May 14, 2020 4:16 pm
Forum: General
Topic: SXT5ac managment VLAN
Replies: 3
Views: 640

Re: SXT5ac managment VLAN

just add a vlan-interface and choose your ethernet-interface as source-interface in case you need this vlan on multiple ports, you have to interconnect the vlan-interface(s) with a bridge ... (there are more options if a hardware-switch in your plattform is involved ... but above option should work ...
by floaty
Wed May 13, 2020 1:34 am
Forum: General
Topic: RB1100AHx4 queries for www.mikrotik.com
Replies: 6
Views: 1271

Re: RB1100AHx4 queries for www.mikrotik.com

As I said: "The DNS on the router is not enabled." . there is no "The DNS" on the router ... there is a dns resolver in the ip stack and a service which you can enable or not. . if there is no dns-server-entry in the /ip/dns-settings ... you can still catch a dns-server address if a dhcp-client is ...
by floaty
Tue May 12, 2020 11:54 pm
Forum: The User Manager
Topic: userman not showing actual user consomption
Replies: 1
Views: 511

Re: userman not showing actual user consomption

In the the communication between a network-access-server (short: nas) aka "your mikrotik hotspot __and__ a radius-server aka "your user-manager" (maybe both functions on the same device), are two different communication-channels defined. One for authentication and one for accounting. Obviously the a...
by floaty
Tue May 12, 2020 11:17 pm
Forum: General
Topic: Multiple Networks accessible from each other
Replies: 2
Views: 660

Re: Multiple Networks accessible from each other

guess you're looking for somewhat of a reprint of the manuals ? ... yeah man I would ! ... but I bruised ma pötchen . but you could search the index for "vlan" "switching" "routing" ... then "firewall" ... and my experience ... once you've started ... you do not stop for a year ! . best you start wi...
by floaty
Tue May 12, 2020 11:02 pm
Forum: General
Topic: RB1100AHx4 queries for www.mikrotik.com
Replies: 6
Views: 1271

Re: RB1100AHx4 queries for www.mikrotik.com

... and you should have blacked out every other url in the screenshot ... so it's an easy guess :)
by floaty
Tue May 12, 2020 10:58 pm
Forum: General
Topic: RB1100AHx4 queries for www.mikrotik.com
Replies: 6
Views: 1271

Re: RB1100AHx4 queries for www.mikrotik.com

- capture some of these packets and have a look inside ... dns is propably good for some information bouta source of these requests
- disable the web-interface (if it's enabled) of the router ... there's a link ... maybe a client is triggering that link (may be you : )
by floaty
Tue May 12, 2020 10:50 pm
Forum: RouterOS v7 BETA
Topic: UI/UX On WinBox
Replies: 16
Views: 2488

Re: UI/UX On WinBox

think we're done here
by floaty
Sat May 09, 2020 12:32 am
Forum: General
Topic: Mikrotik administrator authentication against radius
Replies: 5
Views: 2034

Re: Mikrotik administrator authentication against radius

.
the squirrel may be not really the fastest one on the ash ... but nimble and diligent !
.
cp2.PNG
by floaty
Thu May 07, 2020 4:36 pm
Forum: General
Topic: Mikrotik administrator authentication against radius
Replies: 5
Views: 2034

Re: Mikrotik administrator authentication against radius

.
https://www.open.com.au/radiator/ref/Ra ... ation.html
.
... guess this is the point where I ask for a "generate RADSEC-Cert-pair" button ... ... jeez ... why has it always to be pandemonium ?
by floaty
Thu May 07, 2020 4:25 pm
Forum: General
Topic: Mikrotik administrator authentication against radius
Replies: 5
Views: 2034

Re: Mikrotik administrator authentication against radius

. obviously something odd with the parser in the log-subsystem ... communication is running on port 2083 . [admin@tikki] > 15:05:47 echo: radius,debug new request 0d:5f code=Access-Request service=login 15:05:47 echo: radius,debug sending 0d:5f to 192.168.7.74:8968 15:05:47 echo: radius,debug RADSEC...
by floaty
Thu May 07, 2020 3:12 am
Forum: Beginner Basics
Topic: Intervlan forwarding delay? Slow SSH/https across vlans [SOLVED]
Replies: 3
Views: 740

Re: Intervlan forwarding delay? Slow SSH/https across vlans [SOLVED]

. First thing that comes to mind is the typical reverse DNS query most linux distros do when accessed via SSH . agreed by the 100% . check /etc/ssh/sshd_config of your containers ...vm's whatsoever ... . #PermitUserEnvironment no #Compression delayed #ClientAliveInterval 0 #ClientAliveCountMax 3 Per...
by floaty
Thu May 07, 2020 2:54 am
Forum: General
Topic: Couldn't change Swithc Port <ether 3> - vlan mode not supported
Replies: 6
Views: 897

Re: Couldn't change Swithc Port <ether 3> - vlan mode not supported

switching hardware is a "Thing" in ROS ... did you try to change the mode to fallback ? ( ... fallback normally doesn't hurt)
... maybe it's just an unsopported handle in the interface ?! ... best guess.
.
btw. is this a good old XP-box ?
.
xp.PNG
by floaty
Thu May 07, 2020 2:36 am
Forum: General
Topic: High CPU usage
Replies: 6
Views: 1117

Re: High CPU usage

. and ... bringing in the question as accurate as obviously possible ... could have spared IO-ops too : | . I know what's loading the CPU. My question is, why so much? One EPYC Rome core can do 1.7 GBytes/s AES encryption. Two cores can 2*1.7*8=27 Gbits/s My traffic is very small, only 0.5 Gbit/s CP...
by floaty
Thu May 07, 2020 2:31 am
Forum: General
Topic: High CPU usage
Replies: 6
Views: 1117

Re: High CPU usage

. maybe a problem with exposing all your heroic cpu-capabilities to your CHR-vm ?! . ... and why do you give a rotten f**t about your VM-cpu ? ... what's with your host cpu ? . ... and in the end ... being busy its what you paid the cpu for ! . give me your CPU-problems and you can have my IO-ops di...
by floaty
Thu May 07, 2020 2:15 am
Forum: The Dude
Topic: Dude Database Import Problem
Replies: 3
Views: 921

Re: Dude Database Import Problem

.
call for input !
by floaty
Thu May 07, 2020 2:15 am
Forum: The Dude
Topic: Dude Database Import Problem
Replies: 3
Views: 921

Re: Dude Database Import Problem

.
do you obeyed orders ? : )
.
https://wiki.mikrotik.com/wiki/Manual:T ... nToNewDude
.
honestly I haven't done it myself ... would be interesting if it is possible to switch a database from x86 to arm ... or reverse ?!
by floaty
Thu May 07, 2020 2:01 am
Forum: Wireless Networking
Topic: Peculiar setup [SOLVED]
Replies: 3
Views: 818

Re: Peculiar setup [SOLVED]

. route whenever you can route ... bridge only when needed ( I would say: when unavoidable ). . you wanna have control over your traffic flow ? ... separate your interfaces, build up small broadcast-domains ... then you can measure the traffic with fw-rules. . carefull with bridging wireless-interfa...
by floaty
Thu May 07, 2020 1:45 am
Forum: Wireless Networking
Topic: Peculiar setup [SOLVED]
Replies: 3
Views: 818

Re: Peculiar setup [SOLVED]

. seems everyone is skipping the "keep-it-simple-course" in network-potty-class ... . why ? . fun of administrating one of these devices is knowing what you're doing ... . I also created 3 virtual wireless interfaces (one for each physical wireless one ) and bridged them in bridge 2 . what for ? flo...
by floaty
Thu May 07, 2020 1:11 am
Forum: General
Topic: Mikrotik administrator authentication against radius
Replies: 5
Views: 2034

Re: Mikrotik administrator authentication against radius

.
or maybe "radius" is already sensitive :shock:
.
... it smells sensitive : )
by floaty
Thu May 07, 2020 1:08 am
Forum: General
Topic: Mikrotik administrator authentication against radius
Replies: 5
Views: 2034

Re: Mikrotik administrator authentication against radius

. what*s with good old trust ? . or maybe our MTikl-friends add a radius-tickbox ... end of story ... your complain makes sense ... seems not to be a very big story . tikbox.PNG . other question ... were you able to authenticate against a RADSEC-enabled server ? . have'nt found a success-message on ...
by floaty
Wed May 06, 2020 11:53 pm
Forum: General
Topic: High CPU usage
Replies: 6
Views: 1117

Re: High CPU usage

.
or maybe /tool/profile ... can grow to a friend of yours ?
.
perf-profile.PNG
by floaty
Wed May 06, 2020 11:42 pm
Forum: General
Topic: High CPU usage
Replies: 6
Views: 1117

Re: High CPU usage

by floaty
Wed May 06, 2020 11:35 pm
Forum: General
Topic: High CPU usage
Replies: 6
Views: 1117

Re: High CPU usage

.
my best guess ... calculating encryption ?! ... ... even packet forwarding isn't a "Zuckerschlecken"
switch off IPSec for the tunnel ... check again !?
by floaty
Wed May 06, 2020 11:22 pm
Forum: General
Topic: Wrong traffic reading ccr1072
Replies: 2
Views: 761

Re: Wrong traffic reading ccr1072

when you enable the webinterface of your routers ... you can see the perf graphs for the interfaces there also ...
.
... so when you do, do you have the same FX ?
.
web-perf.PNG
by floaty
Wed May 06, 2020 10:46 pm
Forum: Wireless Networking
Topic: Dude can't SNMP monitor its own host!!
Replies: 1
Views: 527

Re: Dude can't SNMP monitor its own host!!

.
In ROS the SNMP strings are setup the same as all other devices
.
We really want to believe you :!:
... but show us.
.
/snmp export
by floaty
Wed May 06, 2020 10:33 pm
Forum: General
Topic: Split traffic then merge [SOLVED]
Replies: 78
Views: 7383

Re: Split traffic then merge [SOLVED]

I'm not sure that I understand correctly
.
just a side-degression in iperf ... please proceed
by floaty
Wed May 06, 2020 9:50 pm
Forum: General
Topic: Split traffic then merge [SOLVED]
Replies: 78
Views: 7383

Re: Split traffic then merge [SOLVED]

. sorry to interfere only for beeing so nitpicky ... I have to give the tcp-default ... but ... mutiple "routes" ? ... nöh . 39494 39500 39498 39496 . root@badger:~# iperf -c 192.168.67.140 -P 4 ------------------------------------------------------------ Client connecting to 192.168.67.140, TCP por...
by floaty
Wed May 06, 2020 5:17 am
Forum: General
Topic: LoRa Packet forwarding stopps
Replies: 1
Views: 579

Re: LoRa Packet forwarding stopps

after a while (some hours) data is only send to the first server configured, the second and third server does not get data anymore. . since your setup seems to be working for a while ..., but than not ... a bug would come to mind so ... maybe one of your devices are still under support ?! ... try t...
by floaty
Wed May 06, 2020 4:48 am
Forum: General
Topic: Mikrotik log in notifications with exception
Replies: 1
Views: 500

Re: Mikrotik log in notifications with exception

I'm struggeling with my english a life long ... and the english men ... struggle with me ... bouta'länguoch'uff'curse !! . sooo ...? . question: do you use 'dude' for monitoring ? or some other inside-ROS-tool with a script ... . The problem is that my monitoring 10.10.4.180, polls the device, and l...
by floaty
Wed May 06, 2020 4:25 am
Forum: General
Topic: queue pcq , dhcp lease, is posible?
Replies: 2
Views: 666

Re: queue pcq , dhcp lease, is posible?

ooops ... if this is about dhcp-options ?!
... sorry for coming sassy in the first place ...
there are interesting features coming up in the testing- and beta-versions which might raise your interest ...
check out the news-channels ...
by floaty
Wed May 06, 2020 4:13 am
Forum: General
Topic: queue pcq , dhcp lease, is posible?
Replies: 2
Views: 666

Re: queue pcq , dhcp lease, is posible?

1. we are all agree from leasing .. really !
.
since you now may feel a little bit better, you might be able to give us a 'communique' of your sufferings ?!
by floaty
Wed May 06, 2020 3:52 am
Forum: Beginner Basics
Topic: Internet Not Full-Speed [SOLVED]
Replies: 20
Views: 3404

Re: Internet Not Full-Speed [SOLVED]

Lukas 23,34
:shock:
by floaty
Wed May 06, 2020 3:32 am
Forum: Beginner Basics
Topic: Blocking all unused/unneeded protocols, keeping only bare minimum essential ones [SOLVED]
Replies: 24
Views: 3181

Re: Blocking all unused/unneeded protocols, keeping only bare minimum essential ones [SOLVED]

Yeah, can be done, but for the danger of locking myself out of the switch :-)
.
every good network administrator has done this ... like every good sailor has crossed the ... fan :lol:
by floaty
Wed May 06, 2020 3:24 am
Forum: Beginner Basics
Topic: Can't Save OVPN Server
Replies: 2
Views: 817

Re: Can't Save OVPN Server

sometimes ... if ... nothing new appears ... nothing happened ?! . you like to see a new ppp-interface ... why ? if you setup a new (ov)ppp-server ... only the capabiltiy for such an interface is born (goda** I'm biblic today) . good old atheists would check with an "/export" before and after ... if...
by floaty
Wed May 06, 2020 2:58 am
Forum: Beginner Basics
Topic: Blocking all unused/unneeded protocols, keeping only bare minimum essential ones [SOLVED]
Replies: 24
Views: 3181

Re: Blocking all unused/unneeded protocols, keeping only bare minimum essential ones [SOLVED]

you can ! ... all the way ... use the contrary approach ... drop everything, till "your" network works again like expected ...
.
or you do a trip to google ... protocols that should never left my local-LAN ... my local-machine ... ... my Mind ... etc.
by floaty
Wed May 06, 2020 2:52 am
Forum: Beginner Basics
Topic: Blocking all unused/unneeded protocols, keeping only bare minimum essential ones [SOLVED]
Replies: 24
Views: 3181

Re: Blocking all unused/unneeded protocols, keeping only bare minimum essential ones [SOLVED]

A firewall segregates two or more parts of a network, A network is called a functional interaction of items. . Make a packet-trace (only the the headers ... to be wise) on every part of your network(s) AND decide yourself what's needed and what's not ! . You wanna call yourself bible-proof ... so re...
by floaty
Wed May 06, 2020 2:16 am
Forum: RouterOS v7 BETA
Topic: Future request - Configuration propagation similar to CAPsMAN
Replies: 5
Views: 1155

Re: Future request - Configuration propagation similar to CAPsMAN

and sorry I couldn't resist ... let be god a G00dm4n
by floaty
Wed May 06, 2020 2:13 am
Forum: RouterOS v7 BETA
Topic: Future request - Configuration propagation similar to CAPsMAN
Replies: 5
Views: 1155

Re: Future request - Configuration propagation similar to CAPsMAN

not shure you've checked out the TR069 capabilities of ROS yet ? (yepp ... right ... me neither)
.
but since these capabilities are implemented, so you should start to crtitize these functionality ?!
.
you want a bridge ? ... checkout the ferry before !
by floaty
Wed May 06, 2020 1:59 am
Forum: Beginner Basics
Topic: Use hAP ac³ LTE6 kit for LTE redundancy
Replies: 1
Views: 510

Re: Use hAP ac³ LTE6 kit for LTE redundancy

earn a very 'yes' to the provider redundancy part ( and keep studying the relevant forum-posts ) ... and earn a 'maybe' to the WLAN part ... your brandnew hAP ac² should have of "a place" of 'undoubtabletized' LTE-receiving quality ( like blessed mother mary ) ... if this is also the place where you...
by floaty
Wed May 06, 2020 1:31 am
Forum: General
Topic: Split traffic then merge [SOLVED]
Replies: 78
Views: 7383

Re: Split traffic then merge [SOLVED]

can only measure 5MBps from the server->client. But only if I measure with a single thread. If I measure with parallel option of iperf3 (this way it creates multiple connections), the bandwidth can reach the uplink limits (25MBps) even through the abroad ISP. . little bit unclear how long you did t...
by floaty
Wed May 06, 2020 12:46 am
Forum: RouterBOARD hardware
Topic: WAP LTE KIT installation outsite in a hot country. Can be a problem?
Replies: 2
Views: 784

Re: WAP LTE KIT installation outsite in a hot country. Can be a problem?

... and more dangerous ! in dry areas temperatures rise and fall with dust and dawn extremely. brings ... condensed water into the equation !! NO FUN ... had that myself when I found one of our antenna-cables with N-connector drowned ... first I thought it wasn't well enough insulated. But wise-guys...
by floaty
Wed May 06, 2020 12:28 am
Forum: RouterBOARD hardware
Topic: WAP LTE KIT installation outsite in a hot country. Can be a problem?
Replies: 2
Views: 784

Re: WAP LTE KIT installation outsite in a hot country. Can be a problem?

in summer the temperature in shadows can reach 42ºC . guess you can have such extremes nearly worldwide now (exept really circumpolar) ... WAP LTE is specified (Tested ambient temperature -40°C to 60°C) ... since you have to expose the device with it's internal antennas ... :( . advice ? start with...
by floaty
Sat May 02, 2020 11:58 pm
Forum: Beginner Basics
Topic: Cant get Band 20 4G.....i KNOW ITS THERE
Replies: 5
Views: 1054

Re: Cant get Band 20 4G.....i KNOW ITS THERE

... and ... whenever possible ... recheck with another device, where you can also see the configuration and connection-state ... it's possible your provider does not want you, with your device.(-identifier) on that frequency ( at that time ... with that contract ... whatsoever ) ... it's a policied ...
by floaty
Sat May 02, 2020 11:47 pm
Forum: Beginner Basics
Topic: IPSec IPIP tunnel
Replies: 2
Views: 680

Re: IPSec IPIP tunnel

MTU 1418, while rest of the network and of course internet connection is 1500 . you build a tunnel inside a tunnel ... you build a bridge over a bridge ... this is what happens ! . A fat man creeping though a tunnel, should be aware of the problem, ... before forwarding. . maybe you should check: h...
by floaty
Sat May 02, 2020 11:16 pm
Forum: Beginner Basics
Topic: OPENVPN ppp and no access to LAN
Replies: 1
Views: 567

Re: OPENVPN ppp and no access to LAN

openvpn is very wealthy in it's feature-set ... please give us an "/export/withou... " from your terminal as an attachment to your next post, for further investigations.
.
nice gesture would be, to make a little sketch with relevant links and addresses ... to fetch the issue even faster ...
by floaty
Sat May 02, 2020 11:05 pm
Forum: Virtualization
Topic: Docker Mikrotik - In two minutes ( en dos minutos )
Replies: 3
Views: 1807

Re: Docker Mikrotik - In two minutes ( en dos minutos )

my first guess ?! ...
FF UU NN
:shock:
by floaty
Sat May 02, 2020 10:52 pm
Forum: General
Topic: Book for advanced routing
Replies: 7
Views: 1929

Re: Book for advanced routing

I guess he's offering free outlays for critical assessment ... isn't he ?!
.
who had the boldness :lol: ... ... this is not the place to worship mammon !
by floaty
Sat May 02, 2020 10:20 pm
Forum: General
Topic: SRC_ADDR for PPP VPN
Replies: 2
Views: 675

Re: SRC_ADDR for PPP VPN

! OR ! . if your "two-tunnel-machine" can be the ppp-client in the setup ... you can set that client-interface into a VRF to work-around the "one-IPeed-client" and hence the routing-problem ... ... but as always and before we're opening that barrel: better tell the auditorium about the use-case you ...
by floaty
Sat May 02, 2020 10:12 pm
Forum: General
Topic: SRC_ADDR for PPP VPN
Replies: 2
Views: 675

Re: SRC_ADDR for PPP VPN

can i make 2 PPP VPNs (L2TP) from 2 different WAN ? For ex. LTE + WAN1 , One tunnel connect from LTE , second one from WAN. I see no problem in here ... . Dst. Addr both tunnels are the same. ... this might trigger a routing problem, because your tunnel-client-ip is either reachable over LTE OR ove...
by floaty
Sat May 02, 2020 9:41 pm
Forum: General
Topic: Dot1X authentication with freeradius [SOLVED]
Replies: 2
Views: 1058

Re: Dot1X authentication with freeradius [SOLVED]

Is there an issue I´m mising? ... highly presumable. 1. did you perform a test of your freeradius-server over the network with a tool like radtest ( or similiar ) ? ( ... it's the first thing you would do !) 2. stop your freeradius-(service) and start the server from the command-line in debug-mode ...
by floaty
Wed Apr 29, 2020 3:16 am
Forum: Forwarding Protocols
Topic: Bonding multiple LTE
Replies: 3
Views: 982

Re: Bonding multiple LTE

so ... first ... I am not catholic ( and 'am spending no sympathies for any tribes ... ) . BUT . Is there an option to bond multiple LTE wan (example 3x LHG LTE6) with two Mikrotik via GRE,EoIP or VPN to reduce broadcasting latency? . you can avoid congestion-related latency by increasing the bandwi...
by floaty
Wed Apr 29, 2020 2:20 am
Forum: Beginner Basics
Topic: Accessing ROS with Winbox over internet
Replies: 6
Views: 1160

Re: Accessing ROS with Winbox over internet

your WAN-interface is: 1. with good reason 2. for your own good 3. and therefore by default not in the fancy roundel for such pieces of lunacy ! . please make your self aquainted with common strategies of internet-security ... and the sophisticated concepts of the before named, which offers the Mikr...
by floaty
Wed Apr 29, 2020 1:46 am
Forum: Beginner Basics
Topic: Did I buy the wrong LTE Router?
Replies: 7
Views: 1588

Re: Did I buy the wrong LTE Router?

... or you catch the guy who's maintaining your local cell-tower by impeding his beer in the local pub, because you instructed the bar-crew before, to do so ... and ask him if it's worth !? .. or you spend then a "beer more" on him ... and he's considering a custom config for your IMEI (please have ...
by floaty
Wed Apr 29, 2020 1:03 am
Forum: Forwarding Protocols
Topic: L3 traffic stops passing on specific interface (OSPF related maybe)
Replies: 5
Views: 1037

Re: L3 traffic stops passing on specific interface (OSPF related maybe)

and maybe it's worth to investigate the "router-isn't-usable-by-IP-anymore*-thing ... on local interface ? no ping ? no arp ? no mac (! see ... you're doing mac-telnet ) ... there is mac-access ! what about arp ? ... so every little step ... like an outsider ( ... maybe like an intruder) . I had thi...
by floaty
Wed Apr 29, 2020 12:52 am
Forum: Forwarding Protocols
Topic: L3 traffic stops passing on specific interface (OSPF related maybe)
Replies: 5
Views: 1037

Re: L3 traffic stops passing on specific interface (OSPF related maybe)

. Main problem is, It's not possible to reproduce the issue with (yet) known tasks or tools ... . graylog is exactly the tool I would use for such investigations ... did you mentioned interface up/downs from one of your routers when you timeframed the occurence of the incident ... any route chances ...
by floaty
Tue Apr 28, 2020 11:57 pm
Forum: General
Topic: Different DHCP pools on ports from 192.168.1.0/21 network
Replies: 18
Views: 2422

Re: Different DHCP pools on ports from 192.168.1.0/21 network

... to give my inside pestalozzi a chance ... All clients see each other, all client can access internet on port1. All clients use same gateway 192.168.1.1 ... why in the name of pestalozzi, do these entities need addresses from different pools for ? ... what is the distinguishable criterion for the...
by floaty
Tue Apr 28, 2020 11:35 pm
Forum: General
Topic: Different DHCP pools on ports from 192.168.1.0/21 network
Replies: 18
Views: 2422

Re: Different DHCP pools on ports from 192.168.1.0/21 network

mmh ... without being rude (trying), I can recommend a link: . http://www.subnet-calculator.com/ . you're switching bits very frequently ... which can you bring in networking-devils kitchen very soon 8) . so ... if I see this right, you have more a DHCP-problem than a networking problem ?! . If you ...
by floaty
Tue Apr 28, 2020 11:06 pm
Forum: Virtualization
Topic: License rent for CHR
Replies: 8
Views: 1536

Re: License rent for CHR

... A A N N D D ... by the way there is a 60 day grace period for every CHR-VM ... fully featured ... so if you do it the very scottish way ... : you rent this one to your customer and after that you can use the money for your nephews christmas CHR ... so you can pour yourself an extra bottle eggnog...
by floaty
Tue Apr 28, 2020 10:55 pm
Forum: Virtualization
Topic: License rent for CHR
Replies: 8
Views: 1536

Re: License rent for CHR

not shure which license do you have in mind ? ... renting ?! ... interesting ! guess you're burning more money to setup the rental-contract and keep your related paperwork tidy, than the license would cost you. but sometimes business-ways are mysterious ways ... ?! so ... do it the scottish way: res...
by floaty
Tue Apr 28, 2020 9:38 pm
Forum: Forwarding Protocols
Topic: L3 traffic stops passing on specific interface (OSPF related maybe)
Replies: 5
Views: 1037

Re: L3 traffic stops passing on specific interface (OSPF related maybe)

Since the problem occures very sparsely, it's not so probable that you catch the trigger for the event by a "lucky punch". Anyway if you haven't yet, setup centralized syslogging and keep all you routers in time-sync. The rough timestamp of the event and the surrounded syslog-events from all other r...
by floaty
Tue Apr 28, 2020 7:26 pm
Forum: General
Topic: Different DHCP pools on ports from 192.168.1.0/21 network
Replies: 18
Views: 2422

Re: Different DHCP pools on ports from 192.168.1.0/21 network

guess you are a little bit out of "usual concept" !? . your interfaces are in the same IP-subnet 192.168.1.1/21 is (192.168.0.1 - 192.168.7.254) so there would be no need to configure different router interfaces BUT if you want it like that: +---+ +---+ +---+ +---+ +---+ +---+ | 1 | | 2 | | 3 | | 4 ...
by floaty
Mon Apr 27, 2020 6:38 pm
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

. just for the completeness of the picture: proxying a request from freeradius-v4 to MTik-UM-v7b5 seems to be a nogo . after setting up a new instance for MTik-UM in new radius_rlm of FRv4; FRv4 tries something like a check or hello or something, before the rlm is fully instantiated ... which fails ...
by floaty
Sat Apr 25, 2020 5:20 pm
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

. just discovered a nice radius testing-tool ... no eap-features ... ,but its possible to save predefined setup's, contains coa-requests, server-stress-testing ,monitoring ... tidy for windows, linux, freebsd ... decent seems ntradping, my convenient good old geezer, is ready for pension :( . https:...
by floaty
Sat Apr 25, 2020 4:00 am
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

. ... while v7 is still cooking ... were stuck with our windows-wlan-clients in the meantime ... and because corona-boreout and freeradius3.0 forming a perfect couple ... we are setting up an EAP-proxy (almost better than sudoku) . ------ ubnt bananapi CHR //// \\\\ +-------+ +-------+ +-------+ | S...
by floaty
Mon Apr 20, 2020 2:55 pm
Forum: RouterOS v7 BETA
Topic: Feature Request - Wireguard Protocol
Replies: 86
Views: 22044

Re: Feature Request - Wireguard Protocol

Mikrotik have the development smarts to cleanly integrate WireGuard into RouterOS, and now that it has been mainlined I would not be surprised if we see it in the very near future.
.
hear hear
by floaty
Fri Mar 20, 2020 1:10 am
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

. This is a nice thing ... but I have to admit my company plan is not an unlimited one, so while I normally in "the zone" every month, I want avoid any BW-kinkyness. But the test-router is intended as custumers mgmt-backup-line ( F L A T R A T E !) ... then I'm definitly able to flood some statistic...
by floaty
Sat Mar 14, 2020 3:58 am
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

. some toilet-paperroll-hunters returned to aerie ? ... or power-saving mode ... keeping the shores of kreuzberg-mountain green ? we know only a little ! plz remember ... floaty is YOUR performance leader in tha moment (actual results in post above) ... ... so far ... good night and good luck ! . 13...
by floaty
Fri Mar 13, 2020 11:54 pm
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

. just found the solution: https://mikrotik.com/product/intercell_10_b38_b39 : ) power up your own cell ... out in the middle ... no interference and with your own iperf-server !! That stops all the yodeling and tells you whats behind that door !! Maybe that beast is excatly intended for that purpos...
by floaty
Fri Mar 13, 2020 11:14 pm
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

just realized ... broke ma own record ... and still leader of the pack !
H O O K A Y I P P Y J A Y H E Y !!
by floaty
Fri Mar 13, 2020 11:08 pm
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

.
22:05 (todays watermark ... guess they'r all out there hunting the last shit-paperroll avail in the stetl ?!
.
13mar2020.PNG
.
by floaty
Fri Mar 13, 2020 4:48 am
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

. and the main problem ... results are totally erratic ... in the middle of the effin night, no lights on in the hood !! ... same config I've used before ... performance is unexplainable like "my ass" . ... who has the guts to explain such B-sheet to a paying customer ? ... are they scrubbing the an...
by floaty
Fri Mar 13, 2020 4:17 am
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

. It's not as simple as this (but not much more complicated either): users share air-time. The higher number of users, the lower air time and thus lower throughput each gets. . guess this is a verry sensefull statement ! cause good old air is a very democratic medium - shared by all of us. you wanna...
by floaty
Fri Mar 13, 2020 3:25 am
Forum: Beginner Basics
Topic: Recommend way to block Ads with Mikrotik
Replies: 30
Views: 16631

Re: Recommend way to block Ads with Mikrotik

.
If the Force might be with us :shock:
.
by floaty
Thu Mar 12, 2020 12:11 am
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

. Guess there is enough processing power in such an LTE-pop to force me to whatever channel / config they want, if I do not fit into the "for-the-greater-good-QoS-shaping-policy". And most of the time I'm not in the mood to wardrive the best spot for a high-perf LTE-link around. Good Old G. generall...
by floaty
Wed Mar 11, 2020 1:02 am
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

.
!!! B O O Y A C A S H A !!!
.
in front of the peloton:
.
!!! FF ... FF ... FF ... F L O A T Y !!!
.
in_front.PNG
.
https://www.speedtest.net/
.
.
.
pop.PNG
.
.
hw-cfg.PNG
.
.
cfg-stat.PNG
by floaty
Wed Mar 11, 2020 12:47 am
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

.
would be interesting ( ... for me)
which (and where) is the highest speed ever scored to a cellular network with the latest mt-hardware (R11e-LTE6)
...
gentlemen ... start your engines !
:evil:
by floaty
Wed Mar 11, 2020 12:09 am
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

...
guess it's not that simple ?!
.
... maybe country-specific delicacies ?!
.
skip-b20.PNG
.
b20-disable.PNG
.
by floaty
Tue Mar 10, 2020 11:51 pm
Forum: Wireless Networking
Topic: Cat6 LGH LTE Super bad performance
Replies: 34
Views: 6963

Re: Cat6 LGH LTE Super bad performance

. Again, avoid using B20 and 5Mhz bandwith. ... how ? ... and why ? . This B20 is one of slowest (compare to B3 > B1 > B7 who are THREE KING's of LTE in EMEA and R11e-LTE6 only do 2CA: B3+B7 between them). ... where got that wisdom from ?? . Just tested new delivered RBLtAP-2HnD&R11e-LTE6 ... and so...
by floaty
Sat Jan 25, 2020 9:38 pm
Forum: RouterOS v7 BETA
Topic: Feature Request - Wireguard Protocol
Replies: 86
Views: 22044

Re: Feature Request - Wireguard Protocol

I'm in.
+1 for WireGuard.
by floaty
Sat Jan 18, 2020 3:10 am
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

no ... annoying mischief, because the clock is always working against you ...
but also with the exact clocking the win7-client fails.
by floaty
Sat Jan 18, 2020 2:53 am
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

... while reviewing ... and talking odds ...
.
no_tupi_nix_w7_more_odd.png
.
maybe a clock prob I did run into ...
by floaty
Sat Jan 18, 2020 2:46 am
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

yay: one+ for a radius-eap-debugging option . ... since I found the (or a possible) power-supply for my grand ole 2530p (nice keyboard, btw) -> ... also windows7 is not able to connect to the MT-CHR7-radius. Also for my cross-check-radius-server (zeroshell) I had to install the CA and the server-cer...
by floaty
Mon Jan 13, 2020 2:27 pm
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

some tinkering-time should be integral part of any workday : )
... so if anyone calls you in for another tubby meeting ... say: sorry, I have something of tremendous importance to tinker !
by floaty
Mon Jan 13, 2020 1:16 pm
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

It is possible to define different "customers" (like administrative domains) ... and it's possible to apply different sets of user-profiles (for vouchers, quotas etc.). Not shure about the logo-customization ... If you're already using MTik-devices you can download the usermanager package, install i...
by floaty
Tue Jan 07, 2020 8:20 pm
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

seems that feature isn't so widely implemented (self carved freeradius-installation ... possible ... not exaggerated easy) and until someone put a gracious eye on your feature-request ... you can evaluate here: https://www.kaplansoft.com/tekradius/ ( ... only when you can live with a windows-box) Sh...
by floaty
Sat Dec 28, 2019 4:07 am
Forum: Beginner Basics
Topic: Recommend way to block Ads with Mikrotik
Replies: 30
Views: 16631

Re: Recommend way to block Ads with Mikrotik

just had an over-christmas-discussion with my colleagues over the topic ... . just check !! ... even dns-filtering is a walrus-nipples-thing : . ... ad-content is filtered ... the loaded site(s) seems to be slow ... because the content of interest is placed last ... no effin pictures of socks inbetw...
by floaty
Sat Dec 28, 2019 3:32 am
Forum: General
Topic: Mikortik DHCP Option 43
Replies: 16
Views: 3353

Re: Mikortik DHCP Option 43

... so far as I recall ... it was a thorny way to implement in ISC too ( for me : ) ... but there's lot of time till january 6th :evil: . [admin@homeland-chr] > ip dhcp-server vendor-class-id print Columns: NAME, VID, SERVER, OPTION-SET, ADDRESS-POOL # NAME VID SERVER OPTION-SET ADDRESS-POOL 0 gs820...
by floaty
Sat Dec 28, 2019 3:03 am
Forum: Beginner Basics
Topic: Recommend way to block Ads with Mikrotik
Replies: 30
Views: 16631

Re: Recommend way to block Ads with Mikrotik

btw.
there tons of articles in this forum how to make use of anti-spam-, anti-phishing, - or country-code related community-lists with a MTik-board.
.
add a local anti-virus-proxy ... and your'e good to go
by floaty
Sat Dec 28, 2019 2:50 am
Forum: Beginner Basics
Topic: Recommend way to block Ads with Mikrotik
Replies: 30
Views: 16631

Re: Recommend way to block Ads with Mikrotik

... every filter (dns, av, antispam ... whatsoever) will slow down your secured application ... EVERY ! ... because you delegated sagacity to an entity with more discipline than you own by yourself ... and thats a good thing ... when it comes to computed routines 8) ... but it adds cpu-, asic-, what...
by floaty
Fri Dec 27, 2019 1:09 pm
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

I guess without the ability to debug the radius server side this is as cushy as nosepicking in a hobos schnozzle. We better wait for an "upstream statement" ... Maybe an old windows7-valiant out threre can tell if he's able to connect ... [ ... also the fortiauthenticator spat out my keysize 4096 ce...
by floaty
Fri Dec 27, 2019 1:36 am
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

yeah ... good tool (and as old as methusalix) ... . maybe the binary partly crashed ... it is not showing such behaviour on my machine ... wrong shared secret -> access-reject . . btw. repeated my eap-test with new generated certificates keysize 4096 instead of 2048 ... and then also the android cli...
by floaty
Thu Dec 26, 2019 5:02 am
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

just had a little read-along ... again . 169 Dec/13/2019 00:30:55 memory manager, debug >>> rx Access-Request from [192.168.2.25]:45652, id: 119 170 Dec/13/2019 00:30:55 memory manager, debug <<< tx Access-Challenge to [192.168.2.25]:45652, id: 119 171 Dec/13/2019 00:30:55 memory manager, debug >>> ...
by floaty
Thu Dec 26, 2019 3:49 am
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

so ... for starters ... it seems the problem ist NOT related to the certificates I've generated on the chr-v7-radius-um-machine :!: I've installed these certificates on another radius-machine ... . you may ask: ... what the **ck took him so long ? a.) ... tried that on my production-machine ... whic...
by floaty
Thu Dec 26, 2019 12:31 am
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

indeed ... bootet up another wireshark to free my win10-machine for a test ... seems the setup of the encrypted eap-tunnel fails ... no accept, no reject ... stuck in challenge . so maybe a problem with my server-certificate ... or: https://support.microsoft.com/en-ph/help/3121002/windows-10-devices...
by floaty
Wed Dec 25, 2019 7:39 pm
Forum: RouterOS v7 BETA
Topic: New User Manager in RouterOS v7
Replies: 54
Views: 29818

Re: New User Manager in RouterOS v7

guess this feature will make a lot of people very happy ( and of course ... no doubt ... me too)
well done :!:
.
v7-eap-test-ws.png
.
v7-eap-test-rad-debug.png
.
v7-eap-test-um-stat.PNG
.
v7-eap-test-um-sess.PNG
.
v7-eap-test-andr.png
.
.
and unlike me, keep your clocks in sync !
by floaty
Mon Dec 23, 2019 11:44 pm
Forum: General
Topic: Mikortik DHCP Option 43
Replies: 16
Views: 3353

Re: Mikortik DHCP Option 43

divide et impera ... I agree by 100% ... but when 2000 ip-phones fresh outta box staring at you, you will beg for your vendor-class-based dhcp-features ... Sometimes you want split the ip-address-space for your VoIP by building ... add 4 types of phones (or AP's) and you will go nuts very soon :shock:
by floaty
Mon Dec 23, 2019 11:12 pm
Forum: General
Topic: Mikortik DHCP Option 43
Replies: 16
Views: 3353

Re: Mikortik DHCP Option 43

to be honest ... hopefully this feature will find it's way into v.6.4.x too ... while v7 is simmering.
... guess we will see (maybe one or another afficionado will give me "a ball plus" here : )
by floaty
Mon Dec 23, 2019 11:00 pm
Forum: General
Topic: Mikortik DHCP Option 43
Replies: 16
Views: 3353

Re: Mikortik DHCP Option 43

just had a look in v7 beta4 ... . [admin@MikroTik] /ip/dhcp-server/vendor-class-id> add Creates new item with specified property values. address-pool -- pool used for this vendor-class-id copy-from -- Item number disabled -- Defines whether item is ignored or used name -- option-set -- server -- glo...
by floaty
Mon Dec 23, 2019 10:08 pm
Forum: General
Topic: Mikortik DHCP Option 43
Replies: 16
Views: 3353

Re: Mikortik DHCP Option 43

For what I see, vendor-class-specific option-43 delivery is not implemented yet ... it's possible to have a specific ip-pool based on the vendor-class-id, but it's neither possible to add an dhcp-option-set to an ip-pool nor is there any matching condition-parm in the option-43-definition. So what's...
by floaty
Mon Dec 23, 2019 8:51 pm
Forum: General
Topic: Vendor-class-id not matching
Replies: 2
Views: 1437

Re: Vendor-class-id not matching

. maybe santa puts "wireshark" under your tree ?! ... you copied the hex-code with delimiters from the log-dump into your data-field ... not very convincing ( if I were a computer and had a saying in here ) . collect your dhcp-packets with -> Tools -> Packet sniffer . read out your vendor-spec data ...
by floaty
Mon Dec 23, 2019 5:38 pm
Forum: RouterBOARD hardware
Topic: RB960 bridge performance sfp -> cu-ethernet
Replies: 0
Views: 2527

RB960 bridge performance sfp -> cu-ethernet

Recently I had to replace a "multi-speed-media-converter" from amazon at a customer-site, because the device failed epicly in terms of performance (it's x-mas time, so the vendor is NOT revealed). The provider-cpe (presumedly set to 100MBit/full-duplex) had to be linked to a gigabit-1000base-sx port...
by floaty
Sat Dec 21, 2019 1:05 am
Forum: RouterBOARD hardware
Topic: Ubiquiti EdgeRouter 6P 'powered' by MikroTik RBGPOE with 4-Pair PoE Injector
Replies: 1
Views: 2873

Re: Ubiquiti EdgeRouter 6P 'powered' by MikroTik RBGPOE with 4-Pair PoE Injector

guess, you should introduce this to an insurance-agent of your trust to get a rate ... a good rate ... !?
... maybe even homeland-security should be asked for any objections
... who wants to be stuck in a guantanamo-style facility over x-mas by accident ? :shock:
by floaty
Wed Dec 18, 2019 3:41 am
Forum: Wireless Networking
Topic: RBwAPG-5HacT2HnD . netinstall . config fail
Replies: 0
Views: 1395

RBwAPG-5HacT2HnD . netinstall . config fail

just a low priority post ... that may ... or may not be of interest: reanimated a 'RBwAPG-5HacT2HnD' which I received as DoA from ebay ... spend 3 hours on it ! :( device came in from a probably failed openwrt-install-session ... no word on ethernet nor wifi ... after a 10sec-reset-button-reset "Old...
by floaty
Sat Oct 26, 2019 6:07 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

yepp, when I got this setup to fly, caribean retirement is on schedule 8)
by floaty
Fri Oct 25, 2019 11:21 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

and in most of the cases a GPeR would make sense ... adding a proper housing for it [GPeR IP67 Case] , would be sensefull too: installation is straight forward ... ... when using ready-made cables you have possibly to shorten the bend relief of the cable . 1_1.jpg . 2_2.jpg . 3_3.jpg . 4_4.jpg . 5_5...
by floaty
Thu Oct 24, 2019 2:28 am
Forum: The Dude
Topic: The Dude 6.40.8 - db failure: database disk image is malformed
Replies: 37
Views: 10727

Re: The Dude 6.40.8 - db failure: database disk image is malformed

At least you can simply replace it in case it breaks . mmh ... doesn't saw that - really good - point :-| Just migrated my busiest-helper-files to the m2 of my "RB1100AHx4 Dude" ... to bad I didn't got attentive of this potential issue before I began to script. Is there a tool to check the health o...
by floaty
Thu Oct 24, 2019 1:37 am
Forum: General
Topic: RAMdisk
Replies: 12
Views: 2237

Re: RAMdisk

+1 . would be a neat thing have a ppp-up (-down) script which needs helper-files to store dialer-states ... that's scratchy ... not so healthy for a flash or even for an usb-disk ... so definitly plus one ( ... even in v6.44+ [letting v7 be a good man] ... ... wanna show this to my colleagues ... .....
by floaty
Tue Oct 22, 2019 3:56 pm
Forum: RouterBOARD hardware
Topic: MikroTik MQS
Replies: 34
Views: 8491

Re: MikroTik MQS

I see
by floaty
Tue Oct 22, 2019 3:34 pm
Forum: RouterBOARD hardware
Topic: MikroTik MQS
Replies: 34
Views: 8491

Re: MikroTik MQS

one more thing:
.
reviewing your quickstart-guide, you can revise below on s.4 to 192.168.8.3 !
.
qs-mqs-s4.png
by floaty
Tue Oct 22, 2019 3:25 pm
Forum: RouterBOARD hardware
Topic: MikroTik MQS
Replies: 34
Views: 8491

Re: MikroTik MQS

What are you guys talking about?
.
bout the Mikrotik MQS Quickstart-Guide ? ... and the recommendations made there (obviously not your recommendations ?!)
...
later is "Operating system support The device software version is 1.2p" mentioned ... which differs to v1.1 :shock:
.
qs-mqs.png
by floaty
Tue Oct 22, 2019 2:28 pm
Forum: RouterBOARD hardware
Topic: MikroTik MQS
Replies: 34
Views: 8491

Re: MikroTik MQS

That's a profound complaint, ... but obviously it is the main purpose of MQS to do so. The cause could be accidental misuse or damage. To distinguish between these two possibilities a more detailed description of your problem would be necessary. :-| MQS quickstart-guide says actual sw-version is 1.2...
by floaty
Tue Oct 22, 2019 1:19 pm
Forum: RouterBOARD hardware
Topic: MikroTik MQS
Replies: 34
Views: 8491

Re: MikroTik MQS

Guess without internet access for the device, you can't. There's no manual download in the moment ... what's wrong with the running image ? . manual download - computer says: no <Error> <Code>AccessDenied</Code> <Message>Access Denied</Message> <RequestId>EFE50D47CE5598D3</RequestId> <HostId> 23YQ6R...
by floaty
Tue Oct 22, 2019 2:40 am
Forum: RouterBOARD hardware
Topic: MikroTik MQS
Replies: 34
Views: 8491

Re: MikroTik MQS

i have error
.
sad, but an error is better than nothing :!:
... would you like to share that error ?
... or a screenshot ?
by floaty
Tue Oct 22, 2019 2:05 am
Forum: RouterBOARD hardware
Topic: MikroTik MQS
Replies: 34
Views: 8491

Re: MikroTik MQS

.
where can i get the latest MQS software ?
.
.
We recommend clicking the “Check for updates” button and updating your system software to the latest
version to ensure the best performance and stability
.
https://i.mt.lv/cdn/rb_files/1568358529 ... %20web.pdf
by floaty
Fri Oct 18, 2019 1:28 pm
Forum: Scripting
Topic: Multiple Files in one e-mail.
Replies: 10
Views: 6937

Re: Multiple Files in one e-mail.

... or just send all files in a specific folder (disk2/sw/*) ...
.
/tool e-mail send  to="rcvr@rcvr.net" from="$sysName@sndr.net" body="disk2/sw-content" subject="disk2/sw-content" file=[:file find where name~"disk2/sw/"]
by floaty
Mon Oct 14, 2019 3:55 pm
Forum: General
Topic: cannot remove directory
Replies: 8
Views: 8021

Re: cannot remove directory

installed dude under dusk1/dude ? ... instead disk1/dude ?
.
obstinate files may be removeable, when logged as admin with a sftp-client (like WinSCP) ... and with circumspection :!:
by floaty
Sat Oct 12, 2019 12:01 am
Forum: The Dude
Topic: The Dude 6.40.8 - db failure: database disk image is malformed
Replies: 37
Views: 10727

Re: The Dude 6.40.8 - db failure: database disk image is malformed

Lucky you. May happen that problems are linked with usb / mSD storage type on routerboards while on CHR this does not apply. . just found, that well aged statement ... sounds like Dude on 'usb / mSD' is not one of the brightest ideas ?! ... should I keep the hands off it ? ... planned to test such,...
by floaty
Wed Oct 09, 2019 9:05 pm
Forum: The User Manager
Topic: RB750GL + Radius
Replies: 1
Views: 2028

Re: RB750GL + Radius

I am not sure if I need a level 5 license to RB750GL where Radius (user-manager) is installed or the hEX where the DHCP is installed
.
https://wiki.mikrotik.com/wiki/Manual:L ... nse_Levels
.
snip.png
.
where Radius (user-manager) is installed
by floaty
Wed Oct 09, 2019 8:05 pm
Forum: The Dude
Topic: how to "memorize" a snmp-function-result
Replies: 0
Views: 1589

how to "memorize" a snmp-function-result

Hello Forum, I am looking for a way to save the result of a function ... "somewhere". My problem: inside my devicelabels the snmp-device-name is dynamically displayed from a function. In case the device isn't responding any longer, I'm loosing the device-name in the label (but I won't !) So what are...
by floaty
Wed Oct 09, 2019 12:33 am
Forum: RouterBOARD hardware
Topic: MikroTik MQS
Replies: 34
Views: 8491

Re: MikroTik MQS

Maybe ... there is no advantage this time (the price eventually or the rugged design ? ... choose ) If I don't miss anything in the spec, it is no full RouterOS running on MQS. It is an AP-bridge only, which delivers passive PoE to a "setup-candidate" [point]. . MQS itself can be configured only in ...
by floaty
Sat Oct 05, 2019 1:05 am
Forum: RouterOS v7 BETA
Topic: adding fib to vrf failed with timeout
Replies: 3
Views: 3054

Re: adding fib to vrf failed with timeout

uuh ... yeah ... tried to push an interface into a VRF ... failed ... pushed harder ... saw the error-message ...
... maybe a little "what's-worth-to-test-and-what's-not-implemented-yet-v7-matrix" could be helpfull in the notes ... to avoid 'early redundancy'
... anyway: thumbs-up !
by floaty
Thu Oct 03, 2019 7:10 pm
Forum: RouterOS v7 BETA
Topic: adding fib to vrf failed with timeout
Replies: 3
Views: 3054

Re: adding fib to vrf failed with timeout

Version number 7.0beta2 Router's model CHR . [admin@CHRv7] > ip vrf add name=vrf10 [admin@CHRv7] > /routing table add fib name=main-fib vrf=main [admin@CHRv7] > [admin@CHRv7] > /routing table print Flags: D - dynamic; X - disabled, I - invalid; U - used 0 name="main-fib" vrf=main fib [admin@CHRv7] >...
by floaty
Thu Oct 03, 2019 6:56 pm
Forum: RouterOS v7 BETA
Topic: adding fib to vrf failed with timeout
Replies: 3
Views: 3054

adding fib to vrf failed with timeout

Version number 7.0beta2 Router's model model: RouterBOARD 3011UiAS firmware-type: ipq8060 factory-firmware: 6.42.12 current-firmware: 7.0beta2 upgrade-firmware: 7.0beta2 Steps to reproduce the issue [admin@RB3011] > ip vrf add name=vrf10 [admin@RB3011] > ip vrf add name=vrf20 [admin@RB3011] > ip vrf...
by floaty
Thu Oct 03, 2019 2:58 am
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

last advise !
while editing your posting ... and going lazy ...
... don't become sloppy with your GPER-jumpers ... :shock:

(stock your tools ... and keep hoover and cat away :!: )
.
jumper.png
by floaty
Thu Oct 03, 2019 12:38 am
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

guess this behaviour is related to PoE-detection in the switch ... no passive PoE-adapter in the arsenal to verify ... so check, before climb ! Normis explained that 802.3af/at powering only works when there's a compliant device down the line ... if there isn't one, passive PoE injector should be u...
by floaty
Wed Oct 02, 2019 11:48 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

... so far ... my request for clearance at marvell ... stuck in spam ?! ... ignored ?! ... I don't give a schattenriss ... we proceed ! ... todays setup is able to escalate things to mtu-size 9216 byte ... and is able to do a perf-test too I added a PoE-injector and removed the GPER-jumper on PoE-ou...
by floaty
Sun Sep 22, 2019 12:47 am
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

when I got my 'security cleareance' ... I will find a way, to leak in between the lines, while telling noomp :wink: . Dear floaty, We have received your registration request for use of the Marvell Extranet. You indicated on the registration form that you either don't have a Marvell Non-Disclosure Ag...
by floaty
Sat Sep 21, 2019 2:10 am
Forum: Virtualization
Topic: why a CHR can be the best friend of an ESXi-admin
Replies: 0
Views: 1831

why a CHR can be the best friend of an ESXi-admin

It may or may not occur to you, that the use of serial-console to a virtual machine on an ESXi-host could be conveniant for you ?! ... this presumption turns into pain in the a*s, when a serial console is MANDATORY :twisted: ... for me ? ... yesterday ! There might be a bunch of fun-seeking network-...
by floaty
Fri Sep 20, 2019 11:22 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

I think its a 2port switch with Poe in to power it and Poe pass-through . @chechito seems you were right by first best-guess-attempt ... btw. ... ... were you able to exactly identify, whether the marvell-chip is a 88E8040 or a 88E8042 ?? even when it is a: Marvell® Yukon 88E8040 Gigabit Ethernet C...
by floaty
Fri Sep 20, 2019 7:25 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

sooo ... hopefully without being to much over the railing, we can say: . GPER is 802.1at-PoE-powered two-port switch, which is capable to deliver 802.1at-PoE-power to a client-device and it is transparent for every Layer2-protocol*), while it supports a mtu-size of at least 9014 bytes ?! *) in a mor...
by floaty
Fri Sep 20, 2019 6:59 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

because it is my responsability to keep the readers tight and greedy ... now ... at very last ... the gretchen-question: ? MTU ? for starters: it was not so easy to find the proper equipment for the mtu-tests here at homeland-labs :? While the "wuhan-sw" supports a max. frame-size of 9600 bytes (gue...
by floaty
Fri Sep 20, 2019 3:04 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

side-note: when plugging in a GPER into my PoE-switch like that: . #1.png . ... and than add a PoE-Client behind the GPER, like that: . #2.png . ... or that: . #3.png . . ... the PoE-Client is not powered up ... I had to disconnect and reconnect the cable at PoE-Switch before power is delivered ( I ...
by floaty
Fri Sep 20, 2019 2:29 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

since we were able to add an OSPF-Router in Vlan11 on a "wuhan-sw"-port ... we can mark tickbox "multicast" as 'checked'
.
802.##4.PNG
.
802.##5.png
by floaty
Fri Sep 20, 2019 1:59 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

and not so surprising anymore: . wuhan-sw# show run --- snip --- ! interface GigabitEthernet 1/1 switchport mode trunk poe mode plus poe power limit 30.0 ! --- snip --- wuhan-sw# show vlan VLAN Name Interfaces ---- -------------------------------- ---------- 1 default Gi 1/1,3-10 11 nubecula Gi 1/1-...
by floaty
Fri Sep 20, 2019 1:42 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

... yepp ... the discourse had a little drift :wink: ... so ... STP, 802.1q: Setup: PoE-Switch<-->GPER<-->passivePoEconv<-->mapLite . 802.##1.png . . wuhan-sw# show spanning-tree active CIST Bridge STP Status Bridge ID : 32768.9A-86-03-28-05-01 Root ID : 32768.9A-86-03-28-05-01 Root Port : - Root Pa...
by floaty
Wed Sep 18, 2019 1:54 am
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

https://en.wikipedia.org/wiki/Shannon_limit
.
interesting article indeed ... and crazy numbers:
.
tönn.PNG
by floaty
Wed Sep 18, 2019 1:35 am
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

1) at what OSI layer this device work? at L1 like hub, or at L2 like switch? 2) what delay does this device add? 3) why distance is limited to 1500 m? . 1) ... the DEVICE (aka GPeR [thats from the birth-certificate] acts obviously like a switch ... different ether-speeds ... with full-duplex on bot...
by floaty
Wed Sep 18, 2019 12:03 am
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

would be good to identify the switch chip . Yeah I know ... but this reminds of christmas, when I was a child ... my sister got a new watch ... and I got lot of trouble ... and she would not accept 'my fireforce-truck' ! as compensation. To be honest ... I already tried, but my little iPhone-crowba...
by floaty
Tue Sep 17, 2019 11:27 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

oncho.png
.
... yepp ... I thought so ... ... guess I was to hasty to shoot a bundle :shock:
by floaty
Tue Sep 17, 2019 10:06 pm
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

most fun is always testing new stuff 8) ... guess we can skip the 'unboxing part', because this is obviously the wysiwyg-approach ... no knives ... no scissors ... no violence needed ... and I aggree 100% with it . 1st.png . first test ... brute force ! the big buddy in the foreground is a wireless-...
by floaty
Fri Sep 13, 2019 1:21 am
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

"Yes, it will effectively extend your cable and will pass any data you transmit" data ... yep, data is a lot ... so let us concatenate which questions: - ether-speed negotiation bursts (and the results ... we all now: it's standard ... but it's not golden in functionality ... nowhere ) - lldp-behavi...
by floaty
Fri Sep 13, 2019 12:57 am
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

a switch with 2 ports doesn't need to learn no MAC addresses of cause there would be no need, neither would be a need for that in a linux-bridge which contains two logical interfaces by my command or a 24-port switch where I only plugged two cables in ... ... but they do ! ... threrefore my questio...
by floaty
Wed Sep 11, 2019 12:34 am
Forum: RouterBOARD hardware
Topic: GPER usage questions
Replies: 34
Views: 6670

Re: GPER usage questions

It's like putting a switch in between
mmh, thats a delphi-oracle term ...
a switch learns mac-adresses ... a switch ages mac-adresses !?
so question is: is this a switch, like a two-port-bridge or is it just like patch-port in OVS which says "<->" ?
by floaty
Wed Sep 04, 2019 6:29 pm
Forum: The Dude
Topic: [BUG] Images and icons disapearing
Replies: 23
Views: 7162

Re: [BUG] Images and icons disapearing

adding ftp-rights to the user-group solved the issue for me - just like dasiu wrote

dude-read.PNG
by floaty
Fri Aug 30, 2019 5:04 pm
Forum: The Dude
Topic: using ROS-device as remote-poller for smokeping
Replies: 0
Views: 1754

using ROS-device as remote-poller for smokeping

As a big-fan of smokeping for debugging routing-issues and monitoring routing-performance I was recently kind of dejected when my ROS-remote-poller stopped working. I upgraded my central monitoring-machine to debian buster and smokeping 2.7.3-2. Everything worked out, except the mikrotik-remote-poll...
by floaty
Thu Aug 29, 2019 7:52 pm
Forum: The Dude
Topic: Feature request - Sending Reports
Replies: 4
Views: 2806

Re: Feature request - Sending Reports

Definitly joining the club, ... would be a nice thing for networks where you can only send status mails out or only dial-in access is avail ! Tried to build a script which fetches the netmap-status via https from it's own webfig and sends out a mail ... failed ... seems this is for grown up's. In ad...
by floaty
Mon Jun 10, 2019 11:35 am
Forum: General
Topic: EoIP / gretap compatibility
Replies: 1
Views: 920

EoIP / gretap compatibility

Not shure if this feature is under consideration ... ? Would be a big gain being able to terminate a gretap-tunnel to a RB-device. As far as I understand the protocol-numbers used in the header are different in Linux-gretap and RB-EoIP. Since newadays a lot of wireless-devices using gretap-bridging ...
by floaty
Thu Nov 22, 2018 1:12 am
Forum: General
Topic: L2TP server interface in VRF?
Replies: 2
Views: 868

Re: L2TP server interface in VRF?

I'm not really an english-teacher ... but ... I can still ping stuff in SYSTEM2 vrf or the main routing table. when we examine the word 'or' in the quote above , it is not possible to bring the described failure in compliance to master George Boole ... aren't we ? ... so: first check if the setup yo...
by floaty
Wed Nov 21, 2018 11:27 pm
Forum: General
Topic: Place pppoe session in VRF
Replies: 2
Views: 887

Re: Place pppoe session in VRF

Maybe you should have a look to this thread, where I've posted a couple of hints ... not shure if splynx have or allows full access to dictionaries of their radius service. I've build something like that for my customer-service-gateway ... not fully productive yet, but I'm pretty happy with it till ...
by floaty
Mon Nov 05, 2018 7:30 pm
Forum: Forwarding Protocols
Topic: PPPoE & VRF
Replies: 4
Views: 2645

Re: PPPoE & VRF

Just learned, that the radius-attribute "Mikrotik-Group" is 'ppp-aware'. So ... it seems Santa stays frosty up in Lappland this year, because you can (if you want) realize a radius-based VRF-selection with "Mikrotik-Group". You have to skip the user-decidable realm-selection in the ppp-up/down scrip...
by floaty
Sat Nov 03, 2018 2:23 pm
Forum: Forwarding Protocols
Topic: PPPoE & VRF
Replies: 4
Views: 2645

Re: PPPoE & VRF

Testing with pppoe was not so golden ... the session-setup and close in pppoe is to fast to grab the named interface-name. Figured that it's better to put a delay before reading the interface-name on a ppp-down-event and then to kill the whole shebang in the name of the zombie. If you wanna use pppo...
by floaty
Thu Nov 01, 2018 3:43 pm
Forum: Forwarding Protocols
Topic: OpenVPN + VRF
Replies: 2
Views: 1996

Re: OpenVPN + VRF

you need kind of a "crime scene cleaner" ppp-up: :local localAddr $"local-address" :local remoteAddr $"remote-address" :local callerId $"caller-id" :local calledId $"called-id" :local interfaceName [/interface get $interface name] :local calledRealm [:pick $user ([:find $user "@" ]+1) 60] :local vrf...
by floaty
Thu Nov 01, 2018 3:08 pm
Forum: Forwarding Protocols
Topic: PPPoE & VRF
Replies: 4
Views: 2645

Re: PPPoE & VRF

Yepp, were still waiting for a mikrotik radius-attribute like 'mikrotik-user-vrf' ... Till santa puts that under the tree, we can try with these humble scripts I've tweaked. Made these with open-vpn, but it should also work with other ppp-based stuff To get it work you will need a couple helper file...