Community discussions

MikroTik App

Search found 164 matches

by gdanov
Wed Jan 24, 2024 5:04 pm
Forum: General
Topic: Wireguard - allowedIPs=0.0.0.0/0
Replies: 8
Views: 608

Re: Wireguard - allowedIPs=0.0.0.0/0

It's just as obscure as I remember it to be after using it the first time. There is deterministic logic that handles the overlapping, too bad no one (on the WG team) cared to document it properly. In my experience the lookup never fails, the packet always goes somewhere and with little luck "it...
by gdanov
Wed Jan 24, 2024 4:51 pm
Forum: General
Topic: Wireguard - allowedIPs=0.0.0.0/0
Replies: 8
Views: 608

Re: Wireguard - allowedIPs=0.0.0.0/0

Through routing you determine what goes where. That's irrespective of wireguard or other vpn protocols. Through allowed-address you determine what is allowed entering the tunnel. You may want to read this: https://www.wireguard.com/#cryptokey-routing thank you, I've read it before, re-read it now b...
by gdanov
Wed Jan 24, 2024 4:20 pm
Forum: General
Topic: Wireguard - allowedIPs=0.0.0.0/0
Replies: 8
Views: 608

Re: Wireguard - allowedIPs=0.0.0.0/0

let's say my WG interface has IP 10.1.1.1/24. I see in my routing table 10.1.1.0/24 -> WG regardless how I configure the peers. So far so good I have two peers: 10.1.1.2 and 10.1.1.3 What you are saying is that the peer's allowedIPs do not affect the outgoing routing in any way. From what I've under...
by gdanov
Wed Jan 24, 2024 3:00 pm
Forum: General
Topic: Wireguard - allowedIPs=0.0.0.0/0
Replies: 8
Views: 608

Re: allowedIPs=0.0.0.0/0

it looks like due to some freak accident 0.0.0.0/0 worked for me because one of the peers routed all the traffic correctly, creating the impression I'm running full p2p, but actually I was reaching to directly connected peer indirectly. looks like when >1 peers have 0.0.0.0/0, the "first one&qu...
by gdanov
Wed Jan 24, 2024 2:40 pm
Forum: General
Topic: Wireguard - allowedIPs=0.0.0.0/0
Replies: 8
Views: 608

Wireguard - allowedIPs=0.0.0.0/0

I'm running star mesh topology on 5 nodes — 1 linux and 4 MTs. So far each peer link had `allowedIPs=destination IP/32`. Today while reading about ospf over wireguard I realized in linux you can tell wg-quick to not route all traffic via the peer (table=off, doesn't add default rule). Experimented w...
by gdanov
Tue Aug 08, 2023 10:40 am
Forum: Forwarding Protocols
Topic: advertise attached subnet via OSPF
Replies: 0
Views: 1935

advertise attached subnet via OSPF

I don't understand well OSPF, but following the manual got it working on mesh of 5+ routers. one of them is attached to subnet (192.168.100.0/24) managed by 3rd party router. I want to advertise the route to that network. the MT router is assigned IP 192.168.100.1, the router on the other side has 1...
by gdanov
Fri Jun 23, 2023 10:41 am
Forum: Announcements
Topic: v7.11beta [testing] is released!
Replies: 373
Views: 105689

Re: v7.11beta [testing] is released!

*) wireguard - fixed peer connection using DNS name on IP change; Any details? What case should it fix? yes — any chance to ever get a changelog that's actually informative? especially given this is test release, so users need to understand what's the expected or corrected behavior? or I guess we s...
by gdanov
Sat Jun 17, 2023 9:50 pm
Forum: General
Topic: 4g modem's passthrough/bridge mode stopped working
Replies: 0
Views: 473

4g modem's passthrough/bridge mode stopped working

I have ZTE 5G modem with MT behind it. Have been using this set-up in bridge/passthrough mode where the modem hands over the public IP to MT (have real one, if this matters) for more than an year and everything was fine & dandy until last weekend when there was storm (doubt it's connected). Now ...
by gdanov
Sat Jun 10, 2023 10:20 pm
Forum: Wireless Networking
Topic: Is wAP AC LTE6 really that bad? Zyxel LTE3202-m432 stable and outperforms 2-3x, how?
Replies: 7
Views: 1891

Re: Is wAP AC LTE6 really that bad? Zyxel LTE3202-m432 stable and outperforms 2-3x, how?

I've unpacked today second device - ran tests with v.25 firmware and 6.49 RouterOS, just after that upgraded to v.35 and 7.92, ran test at my home and went to smaller houses at my land but already knew what to expect. So this is true - wAP AC LTE6 has ZERO antena gain over smartphone, it might be e...
by gdanov
Sat Jun 10, 2023 10:03 pm
Forum: Wireless Networking
Topic: Is wAP AC LTE6 really that bad? Zyxel LTE3202-m432 stable and outperforms 2-3x, how?
Replies: 7
Views: 1891

Re: Is wAP AC LTE6 really that bad? Zyxel LTE3202-m432 stable and outperforms 2-3x, how?

Hopefully it was not dropped hard, and maybe some antenna broke inside 8-O
useful as usual
by gdanov
Thu Mar 30, 2023 11:09 am
Forum: General
Topic: How to deal with MTU size
Replies: 16
Views: 6753

Re: How to deal with MTU size

As I've been dealing with this recently, let me share some experience that backs up most of the advise: * if MTU is wrong, things work until they don't. In my case everything looked fine until I ran a bandwidth test that fails only on TCP only in one direction * looking on both sides' value is essen...
by gdanov
Wed Mar 29, 2023 4:09 pm
Forum: General
Topic: How to deal with MTU size
Replies: 16
Views: 6753

Re: How to deal with MTU size

Step 1: Switch to wireguard
Step 2: Use EOIP tunnel over the wireguard if you need more MTU
That's what I do, and works a treat.. but lots of manual config setup for each tunnel, not very scalable
why would I want EOIP and not IPIP?
by gdanov
Mon Mar 27, 2023 3:46 pm
Forum: General
Topic: how to fix lazy-ass ISP DHCP lease?
Replies: 21
Views: 1039

Re: how to fix lazy-ass ISP DHCP lease?

[…] uses the 10.x.x.x (not sure about the mask) […] […] and 172.x.x.x net for the same purposes […] The 100.64.0.0/10 is born to give to the ISP CGNAT or IPs for internal device o other use, for leave the 10.... 192.168... and 172.16.... ranges free for consumer/business network. But those ISPs oft...
by gdanov
Mon Mar 27, 2023 3:44 pm
Forum: General
Topic: how to fix lazy-ass ISP DHCP lease?
Replies: 21
Views: 1039

Re: how to fix lazy-ass ISP DHCP lease?

that's the point — there's zero reliability what net I'll be connected to and with little luck it would overlap with some of my subnets.

ipv6 sounds like great idea, would be significant effort. Apart from the much bigger address space — is there other mechanism to avoid such problems there?
by gdanov
Mon Mar 27, 2023 1:21 pm
Forum: General
Topic: how to fix lazy-ass ISP DHCP lease?
Replies: 21
Views: 1039

Re: how to fix lazy-ass ISP DHCP lease?

no offense. especially provided you obviously know what you are talking about.
by gdanov
Mon Mar 27, 2023 12:39 pm
Forum: General
Topic: how to fix lazy-ass ISP DHCP lease?
Replies: 21
Views: 1039

Re: how to fix lazy-ass ISP DHCP lease?

@gdanov Please don't start writing things uninformed or uncomplete... chill a little. I don't know and I'm asking. and politely explaining what I know to someone who knows even less. you say it's bad and I wont' use it. thanks for the insight. This is major telco in Bulgaria (A1, former Mtel). Yes,...
by gdanov
Mon Mar 27, 2023 10:35 am
Forum: General
Topic: how to fix lazy-ass ISP DHCP lease?
Replies: 21
Views: 1039

Re: how to fix lazy-ass ISP DHCP lease?

This IP space is reserved for private networks. There's no way verizone exposes it to the public space. Providers use it as their "intranet" and I've seen in most often in their mobile nets.
by gdanov
Sun Mar 26, 2023 9:27 pm
Forum: General
Topic: how to fix lazy-ass ISP DHCP lease?
Replies: 21
Views: 1039

how to fix lazy-ass ISP DHCP lease?

my ISP gives me this ip via DHCP
100.101.198.98/8
and of course my routing table goes to hell and I can't use the 100.64/10 network for my purposes. the gateway IP is 100.0.0.1.
What can I do to be able to use 100.64/10 for my internal segments? policy-based routing?
by gdanov
Fri Mar 24, 2023 10:03 am
Forum: The Dude
Topic: Ignore WAN?
Replies: 0
Views: 1865

Ignore WAN?

I'm on WAN with dynamic IP that gets rotated every couple of days. How do I tell the dude to not scan my wan port?
I have rule that keeps up-to-date address list with my wan ip. I have added that address list to the scan/ignore field but still, I see on the map parts of my provider's wan are scanned.
by gdanov
Mon Mar 20, 2023 2:55 pm
Forum: General
Topic: IPIP over WG performance
Replies: 8
Views: 783

Re: IPIP over WG performance

my WG/IPIP MTUs were 1420/1400 for the LTE device. It's ISP-provided oldish huawei in bridge mode by the way. Can't figure out from the UI the "base" MTU. Using ping + don't fragment shows 1400 is OK, 1401 not. So I guess it's correctly set. but in one of the directions the bandwidth test...
by gdanov
Mon Mar 20, 2023 2:39 pm
Forum: General
Topic: IPIP over WG performance
Replies: 8
Views: 783

Re: IPIP over WG performance

my WG/IPIP MTUs were 1420/1400 for the LTE device. It's ISP-provided oldish huawei in bridge mode by the way. Can't figure out from the UI the "base" MTU. Using ping + don't fragment shows 1400 is OK, 1401 not. So I guess it's correctly set.
by gdanov
Mon Mar 20, 2023 12:07 pm
Forum: General
Topic: IPIP over WG performance
Replies: 8
Views: 783

Re: IPIP over WG performance

that escalated quickly :) thanks, this is what I asked for.

to makes matter more interesting — some nodes are on fiber, others on LTE/5G
I'll go through all that and see what comes out of it.
by gdanov
Mon Mar 20, 2023 11:20 am
Forum: General
Topic: IPIP over WG performance
Replies: 8
Views: 783

Re: IPIP over WG performance

It's MTU+fragmentation on top of additional overhead (both computational as well as data volume). I wonder what IPIP functionality is missing from WG which makes you run IPIP on top of WG? did fresh test, 30Mbps line, 27Mbps effective TCP. I can totally live with that. Let's see if it holds togethe...
by gdanov
Mon Mar 20, 2023 10:16 am
Forum: General
Topic: IPIP over WG performance
Replies: 8
Views: 783

IPIP over WG performance

I'm running mesh WG "intranet" between several locations. It runs great, speed tests show WG performs within the links' limits, no complaints. I want to run IPIP on top of that mesh intranet because it makes number of things significantly easier for me. I've done some experiments and it lo...
by gdanov
Sun Mar 19, 2023 3:16 pm
Forum: The Dude
Topic: device-centric view of the network?
Replies: 2
Views: 1865

Re: device-centric view of the network?

You can do that. Each device can have multiple IP addresses, so you can add all of them to one device if you'd like. But those affects more which IP the dude will use to try communicate. If you're using any of the auto-discovery stuff, you generally want to exclude the router IP from those ranges a...
by gdanov
Sun Mar 19, 2023 1:52 pm
Forum: The Dude
Topic: device-centric view of the network?
Replies: 2
Views: 1865

device-centric view of the network?

I'm test driving the dude and something I'm puzzled about is how I see one MT router many times — one instance per IP.
How can I merge all these router nodes into one, preferably automatically?

ros 7.8
by gdanov
Sun Jan 01, 2023 2:25 pm
Forum: General
Topic: fasttrack question
Replies: 5
Views: 1307

Re: fasttrack question

#4 and #5 are after (below) #3, so they cannot prevent packets from reaching #3. The smaller number of matches on #3 than on #1 is caused by the fact that as compared to #1, the #3 additionally matches on ether1 . yes. pulled up the accept rule and the "wtf" rule gets zero traffic. I didn...
by gdanov
Sun Jan 01, 2023 2:08 pm
Forum: General
Topic: fasttrack question
Replies: 5
Views: 1307

Re: fasttrack question

thanks for the feedback.
I do have the matching accept rule, it's #4 or #5. The % of packages going through rule #3 compared to #1 is small.

my use of fasttrack is not innovative, I'm just experimenting while figuring it out.
by gdanov
Sun Jan 01, 2023 12:28 pm
Forum: General
Topic: fasttrack question
Replies: 5
Views: 1307

fasttrack question

I've got the fasttrack rules below and I'm puzzled why rule #3 gets any traffic at all (it does) as I'd expected rule #1 to take care. eth1 is my WAN. I must be misunderstanding something? 0 D ;;; special dummy rule to show fasttrack counters chain=forward action=passthrough 1 chain=forward action=f...
by gdanov
Sat Dec 31, 2022 3:46 pm
Forum: RouterOS beta
Topic: WG tunnel UDP is 5x faster than TCP
Replies: 19
Views: 5081

Re: WG tunnel UDP is 5x faster than TCP

There's no right answer to a non-issue topic.
That one fits fine.
Welcome!
of course it's an issue. miss-configuration, apparently (my default assumption). asking for help to debug it, and getting random shots in the dark or smirky unhelpful answers like yours.
by gdanov
Sat Dec 31, 2022 3:00 pm
Forum: RouterOS beta
Topic: WG tunnel UDP is 5x faster than TCP
Replies: 19
Views: 5081

Re: WG tunnel UDP is 5x faster than TCP

How can it be a bad config and barking at the wrong moon?
No way.
yet another extremely helpful answer, thanks!
by gdanov
Fri Dec 30, 2022 5:41 pm
Forum: RouterOS beta
Topic: WG tunnel UDP is 5x faster than TCP
Replies: 19
Views: 5081

Re: WG tunnel UDP is 5x faster than TCP

You’re mixing two separate issues. CPU usage involved with on-device bandwidth test, and TCP vs UDP. They’re entirely orthogonal. TCP isn’t slow because of the CPU. It’s slow because TCP-in-TCP is always bad, on all CPUs, everywhere. no I'm not. WG is TCP-in-UDP. eventually it turned out to be yet ...
by gdanov
Fri Dec 30, 2022 4:33 pm
Forum: RouterOS beta
Topic: WG tunnel UDP is 5x faster than TCP
Replies: 19
Views: 5081

Re: WG tunnel UDP is 5x faster than TCP

CPU isn't loaded. Tested on second, single-CPU mikrotik and it reaches 50Mbps with minimal differences between TCP and UDP, at 100% CPU. Exactly same setup — WG with MT bandwidth test. The argument "sometimes the CPU is bottleneck therefore bandwidth tests are unreliable" is bullshit. None...
by gdanov
Fri Dec 30, 2022 2:27 pm
Forum: RouterOS beta
Topic: WG tunnel UDP is 5x faster than TCP
Replies: 19
Views: 5081

Re: WG tunnel UDP is 5x faster than TCP

Of course! This is a known fact. Do not use the device itself to generate test and also run the tunnel. The CPU must generate random data that it will send, this is an intensive task. You must use iperf3 on some powerful machine, so that the tunnel is only a tunnel and traffic goes "over"...
by gdanov
Fri Dec 30, 2022 2:17 pm
Forum: RouterOS beta
Topic: WG tunnel UDP is 5x faster than TCP
Replies: 19
Views: 5081

Re: WG tunnel UDP is 5x faster than TCP

5x difference is too much to call “normal” I don’t have device on the other end that can run iPerf unfortunately. Are you suggesting not to use MTs own bandwidth test because it’s unreliable? Using the same client and connecting via WG to cloud servers with similar latency gives me 200Mbps TCP and t...
by gdanov
Fri Dec 30, 2022 12:23 pm
Forum: RouterOS beta
Topic: WG tunnel UDP is 5x faster than TCP
Replies: 19
Views: 5081

WG tunnel UDP is 5x faster than TCP

I'm testing WG tunnel between two locations in different countries. Mean ping is 50ms. With MT's bandwidth test i get 100Mbps UDP and 15-20Mbps TCP. No obvious problems like dropped packets. In the tested direction the client's downlink is 200Mbps so we are limited by the server's uplink. configs......
by gdanov
Fri Dec 30, 2022 12:02 pm
Forum: RouterOS beta
Topic: Simple queue that shapes one-way only
Replies: 5
Views: 2436

Re: Simple queue that shapes one-way only

Thanks, I experimented with marking different protocols in the past but never got to stable solution. Maybe I give this solution a try, but even without this my connection works very smoothly, ping is stable under load, everything's fine. My current use case will sound bit weird, but I want to shape...
by gdanov
Thu Dec 29, 2022 8:12 pm
Forum: RouterOS beta
Topic: Simple queue that shapes one-way only
Replies: 5
Views: 2436

Re: Simple queue that shapes one-way only

Maybe it is better to use a queue tree. Its function is a bit different, but at least it is clear what it does (and it affects outgoing traffic only when applied to an interface).
great idea, set it up & tested while my wife on call, exactly what I needed!
by gdanov
Thu Dec 29, 2022 6:20 pm
Forum: RouterOS beta
Topic: Simple queue that shapes one-way only
Replies: 5
Views: 2436

Simple queue that shapes one-way only

I have 50/200Mb LTE/5g connection. I need to shape my uplink without affecting the downlink. I'm using simple queue and the uplnik is shaped as expected. Problem is, I've set all the limits for the downlink (my target) to 900M and still it gets shaped somehow to 100-130Mbps. Tried different sized qu...
by gdanov
Tue Dec 27, 2022 6:35 pm
Forum: Wireless Networking
Topic: max 5g transfer speed with R11e-5HacT or hap ac2?
Replies: 8
Views: 913

Re: max 5g transfer speed with R11e-5HacT or hap ac2?

I didn't mean to be disrespectful to you. As much as I'm happy I won't be wasting more time chasing a ghost, I'm very disappointed. I've written more than once in the forum and it was always "tune your config, there's interference, blah blah blah". This is the first time I understand where...
by gdanov
Tue Dec 27, 2022 5:49 pm
Forum: Wireless Networking
Topic: max 5g transfer speed with R11e-5HacT or hap ac2?
Replies: 8
Views: 913

Re: max 5g transfer speed with R11e-5HacT or hap ac2?

Basically none of wifi gear allows real-life transfer rates as high as specified. One of reasons is technical: specifications are about maximum symbol rate, reality requires gaps (duplex gap, multi-user gaps), BSSID broadcasts and preambles. Which reduces maximum tbroughput at least by 20-30%. So e...
by gdanov
Tue Dec 27, 2022 2:31 pm
Forum: Wireless Networking
Topic: max 5g transfer speed with R11e-5HacT or hap ac2?
Replies: 8
Views: 913

Re: max 5g transfer speed with R11e-5HacT or hap ac2?

So basically MT has been making false claims about their hardware knowingly for years?
by gdanov
Tue Dec 27, 2022 1:35 pm
Forum: Wireless Networking
Topic: max 5g transfer speed with R11e-5HacT or hap ac2?
Replies: 8
Views: 913

Re: max 5g transfer speed with R11e-5HacT or hap ac2?

none of my devices is eligible for wifiwave2 and anyway, hap ac2 is specced oficially as "Wireless 5 GHz Max data rate 867 Mbit/s " which means I should be able to come close to this with ROS v6.x — but I don't. same applies to the triple-chain R11e-5HacT advertised as "Wireless 5 GHz...
by gdanov
Mon Dec 26, 2022 1:19 pm
Forum: Wireless Networking
Topic: max 5g transfer speed with R11e-5HacT or hap ac2?
Replies: 8
Views: 913

max 5g transfer speed with R11e-5HacT or hap ac2?

I have number of MTs and one of my APs was due for upgrade, but I got frustrated that the new AX hap is not available anywhere, bit the bullet and got tp-link EAP650 (ax3000 per spec). Was shocked to see it transfer files to my NAS 3-4 times faster than my best MT box, using my aging macbook which h...
by gdanov
Tue Nov 29, 2022 2:37 pm
Forum: Wireless Networking
Topic: tin roof placement of antennae
Replies: 0
Views: 376

tin roof placement of antennae

I've had my 4g/5g modem + antenna for a while on my roof. It's almost flat, metal sheet roof. Then I moved temporarily the antenna on my balcony that's surrounded by walls from 3 sides and it looks like noise and other signal parameters are bit better. This is in the city. The antenna is in the midd...
by gdanov
Fri Nov 25, 2022 11:50 am
Forum: General
Topic: winbox on MacOS (Apple Silicon) with Dock launcher
Replies: 7
Views: 2593

Re: winbox on MacOS (Apple Silicon) with Dock launcher

We will never get proper support for macOS. You can use Wine, but that will break on almost every macOS Update and will force you to use unsigned code. It was the reason, why we had to switch to other manufacturers, even though MT has splendid Hardware. If you want to have a working solution: use t...
by gdanov
Fri Nov 18, 2022 10:03 pm
Forum: General
Topic: select dhcp network/pool/server based on client identity or option?
Replies: 4
Views: 451

Re: select dhcp network/pool/server based on client identity or option?

One thing you may have missed, in a static DHCP lease, you can still use a pool rather than a particular IP address if you find that useful. But you still need one lease per each "special" client.
oh, thank you, that's convenient! didn't notic the drop box.
by gdanov
Fri Nov 18, 2022 10:09 am
Forum: General
Topic: select dhcp network/pool/server based on client identity or option?
Replies: 4
Views: 451

Re: select dhcp network/pool/server based on client identity or option?

the devices using random mac address will go to the "default" net and that's OK for my purpose. Point is how to mark the "known" devices to separate nets. I've got several wifi APs and don't want to assign vlans for now as it is too much work compared to my current primitive solu...
by gdanov
Thu Nov 17, 2022 10:36 pm
Forum: General
Topic: select dhcp network/pool/server based on client identity or option?
Replies: 4
Views: 451

select dhcp network/pool/server based on client identity or option?

I have lots of wireless clients using the same SSID. I want to pass different networks(gateway/dns) to different classes of clients. At the moment I do this by fixing the lease to static and dialing in the network ip.
is there way to do it automatically based on client's dhcp configuration?
by gdanov
Mon Sep 19, 2022 2:57 pm
Forum: RouterBOARD hardware
Topic: MIKROTIK MiFi
Replies: 11
Views: 2241

Re: MIKROTIK MiFi

just buy a smartphone with bigger battery.
by gdanov
Fri Sep 16, 2022 10:59 pm
Forum: RouterBOARD hardware
Topic: POE out - why do most MikroTik products not follow the standards?
Replies: 37
Views: 23326

Re: POE out - why do most MikroTik products not follow the standards?

Hi, Another way to have PoE: I wanted to have a surge protector, I already had a non PoE switch and found this: https://www.getic.com/product/axon-multi-net-protector-4 That gave me passive PoE, which works like a charm with 3x CAPac + 1x WAPac. The downside is, that you don´t get a power supply, s...
by gdanov
Fri Sep 16, 2022 12:58 pm
Forum: RouterBOARD hardware
Topic: POE out - why do most MikroTik products not follow the standards?
Replies: 37
Views: 23326

Re: POE out - why do most MikroTik products not follow the standards?

In general I'm not against passive POE, it's even the better option in my (home) context because I can power the IP cams, the 4g router, and minimize the power injector mess I have today. Problem is finding passive poe hub is practically impossible. That's it in first place. Had I been able to just ...
by gdanov
Fri Sep 16, 2022 12:19 pm
Forum: RouterBOARD hardware
Topic: POE out - why do most MikroTik products not follow the standards?
Replies: 37
Views: 23326

Re: POE out - why do most MikroTik products not follow the standards?

I've got the feeling that @gdanov wants to use 802.3 af/at ... offered by Mikrotik switches. So Mikrotik PoE injectors (AFAIK they are passive PoE only) are out of the picture. I wish AX "power splitters" didn't cost as much as they do, I'd moved to AX immediately, but not ready to cough ...
by gdanov
Fri Sep 16, 2022 12:17 pm
Forum: RouterBOARD hardware
Topic: POE out - why do most MikroTik products not follow the standards?
Replies: 37
Views: 23326

Re: POE out - why do most MikroTik products not follow the standards?

that's what I did of course: AC power extender with 6 power bricks (one for the switch), then the switch, the injectors... it's a mess.
by gdanov
Fri Sep 16, 2022 11:58 am
Forum: RouterBOARD hardware
Topic: POE out - why do most MikroTik products not follow the standards?
Replies: 37
Views: 23326

Re: POE out - why do most MikroTik products not follow the standards?

All's handy & dandy with why MT did what they did, but final result for me is that I need to power 4-5 devices, MT's poe switch is nowhere to be found in stock (not to mention the price), market is full of cheap AF switches, and all I can do is grind my teeth in frustration.
by gdanov
Mon Aug 29, 2022 3:17 pm
Forum: General
Topic: dhcp server per host
Replies: 3
Views: 336

Re: dhcp server per host

I did make the lease static, give it proper IP, but totally forgot to set-up the network in the networks tab so god knows what gateway, dns, etc. the client got and naturally "it does not work"

thanks.
by gdanov
Mon Aug 29, 2022 11:09 am
Forum: General
Topic: dhcp server per host
Replies: 3
Views: 336

dhcp server per host

I want to assign to some hosts (with stable eth address) IPs from different network(s). VLANs based on switch port is not an option. What's possible?
by gdanov
Mon Aug 29, 2022 11:07 am
Forum: General
Topic: hAP ac² - Apple Time Machine support via attached USB hard drive?
Replies: 5
Views: 1224

Re: hAP ac² - Apple Time Machine support via attached USB hard drive?

Time machine on samba needs some extra config (when done on linux) and I doubt that's possible to configure on MT.
by gdanov
Mon Aug 22, 2022 12:04 pm
Forum: RouterBOARD hardware
Topic: wifiwave2 for apartment building?
Replies: 1
Views: 513

wifiwave2 for apartment building?

I live in densely populated apartment building area with tons of 2.4 and 5ghz APs. I see 20+ of SSIDs. 2.4Ghz is unusable for video calls and 5Ghz is gradually getting worse as the local ISPs upgrade their clients' devices. I have to "hide" in the DFU zone or some weird frequencies to get ...
by gdanov
Thu Jun 30, 2022 12:36 pm
Forum: General
Topic: interface TX/RX stats reset when?
Replies: 8
Views: 1583

Re: interface TX/RX stats reset when?

No, interface counters are only reset on reboot. And they cannot be reset manually.
Only when you have a dynamic interface that would be removed when the link is down, e.g. an L2TP client, it would be reset.
thanks
by gdanov
Thu Jun 30, 2022 12:35 pm
Forum: General
Topic: interface TX/RX stats reset when?
Replies: 8
Views: 1583

Re: interface TX/RX stats reset when?

that's my guess too. enable/disable resets the stat but link up/downs doesn't reset the stat.
by gdanov
Thu Jun 30, 2022 12:25 pm
Forum: General
Topic: interface TX/RX stats reset when?
Replies: 8
Views: 1583

interface TX/RX stats reset when?

I'm trying to figure out my internet consumption and have forgotten to enable graphs. looking at the Ethernet interface stats I see total RX/TX, but I'm not sure when that's reset. my modem (linked via ethernet port to my MT) restarts each night, so the link goes down every 24h, but the MT interface...
by gdanov
Sat Apr 23, 2022 12:28 am
Forum: General
Topic: Non-service based mesh wireguard
Replies: 7
Views: 1068

Re: Non-service based mesh wireguard

Yes and yes. So starting over - I have Wireguard setup now with two servers/routers and multiple remotes. I would like to be able to, from my remote, access any other remote and transparently use whichever server provides the optimum connection. Is this possible - preferably using a single network?...
by gdanov
Fri Apr 22, 2022 11:52 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

Well, you sound arrogant, don't you? I've paid for the hardware and the software license. You owe me explanation. BTW open source projects where I've paid nothing provide "blog posts" for every release and excellent transparency. Unlike MT. Have a look around instead of acting dismissive....
by gdanov
Fri Apr 22, 2022 6:02 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: Yet another changelog thread

Sorry, I forgot to also tell you how good you are at changing the meaning of what was written. If I've been rude at times, it certainly isn't to make the scene you're doing. Be constructive, I now follow what @mrz suggest. You revert to ad-hominem without me ever addressing you, then ask me to be c...
by gdanov
Fri Apr 22, 2022 5:17 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: Yet another changelog thread

@gdanov, be happy, you have your moment of notoriety, keep it up, at least i hope people forget when at times i have been rude.

@Dude2048: Noticed.
notoriety? is this why you are rude to people?
by gdanov
Fri Apr 22, 2022 5:14 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: Yet another changelog thread

Wow, just noticed my first post has been branched out in separate thread. The title kinda validates there might be a problem, no? Not to mention the yet another passive-aggressive move by MT's support. Great job!
by gdanov
Fri Apr 22, 2022 5:07 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

@tangent and @gdanov; Even if you have a lab you just can't test al the different configurations which could cause a cascade of triggered bugs in a piece of software. The way it works is what Biomesh told you. MT is not alone in that regard. So; No, you don't deserve to know more, even if your sphi...
by gdanov
Fri Apr 22, 2022 3:47 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

@tangent — FOSS is a benchmark in transparency and community building, many times in support as well. Of course I make difference between open/closed development specifics and know we'll never see bug ticket internals (if they exists, which I often doubt). That's totally OK as long as we see some so...
by gdanov
Fri Apr 22, 2022 3:28 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

https://spng.subpng.com/20180526/fqh/kisspng-internet-troll-trolls-social-media-clip-art-5b095e639209a0.3454640515273406435982.jpg In case this is addressed at me, it's excellent illustration that MT's support attitude is unacceptable. Not surprisingly it appears to be organizational issue, not ind...
by gdanov
Fri Apr 22, 2022 3:19 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

I think it is hilarious that gdanov thinks software companies will always provide full details of fixed bugs. I have worked for a global software company for over 20 years in a support role and found that while customers might think they are owed detailed answers on bugs/defects, it really depends ...
by gdanov
Fri Apr 22, 2022 3:05 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

You're rude, not direct. That's a difference. Already three persons telling you that. Do something with it. @gdanov And if I call you rude too, who usually say it to me... Maybe we'll benefit more if we focus on the content? Just suggesting. If most people find the post rude, I'll accept it and thi...
by gdanov
Fri Apr 22, 2022 3:04 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

I'm calm. Just being direct. Calling BS as I see it. As well as bad customer service. I'm pretty constructive, while being fed nonsence like "some bugs are typos" and "we don't have time to explain you how you could brick your router with this release" but "upgrade to lates...
by gdanov
Fri Apr 22, 2022 2:43 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

Calm down please. Lets keep it constructive and not abusive. You have a point but things are not always that easy. We get a lot of value for the money but that comes with some downsides, learn to accept that. I'm calm. Just being direct. Calling BS as I see it. As well as bad customer service. I'm ...
by gdanov
Fri Apr 22, 2022 2:35 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

Eh. Vinegar or no vinegar, it's good that people speak the unspoken that exists in many of our minds on some level sometimes. A bit of negative critique is usually a good thing (and credit to MikroTik for keeping such platforms open and, as you say, even interacting with their users on a public-fac...
by gdanov
Fri Apr 22, 2022 2:29 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

What is your question, gdanov? Or is there a suggestion in there somewhere?
you have problems with reading comprehension? or you have nothing useful to say so reverting to passive-aggressive provocative behavior? bullying your customers, not the first time I see you doing that.
by gdanov
Fri Apr 22, 2022 12:58 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

Of course we have a bug tracking system, internal testing procedures and it's all linked with customer reports. A lot of reports are misconfiguration and turn out to be false. A lot of bugs are caused by other bugs, nothing is as straight forward as you seem to think. One improvement in some driver...
by gdanov
Fri Apr 22, 2022 12:18 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

I have suggested before that instead of this changelog you create a database with all changes (with version number of change, version where issue was introduced that it fixes, version where change becomes irrelevant, etc. as database keys) and then each item contains both a 8-9 word line and a more...
by gdanov
Fri Apr 22, 2022 12:12 pm
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

Please show us examples of detailed changelogs with descriptions of rare occasions of the issues? I looked, but I can't find changelogs with more than 8-9 words per change. I'm genuinely curious how we could improve our changelog, if you have good examples, please share and we will learn :) well, a...
by gdanov
Fri Apr 22, 2022 11:52 am
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Re: v7.2.1 [stable] is released!

Changelog contains one line rough description of changes. It's not a blog. Well, you sound arrogant, don't you? I've paid for the hardware and the software license. You owe me explanation. BTW open source projects where I've paid nothing provide "blog posts" for every release and excellen...
by gdanov
Fri Apr 22, 2022 11:40 am
Forum: General
Topic: Yet another changelog thread
Replies: 52
Views: 3376

Yet another changelog thread

For starters - this fix has nothing to do with the problem that some rare routers lose configuration after an upgrade. Still with all of your reports to support. we have not managed to reproduce the problem. As we thought before, most likely this problem is already fixed and affected are only route...
by gdanov
Thu Apr 07, 2022 11:20 am
Forum: Wireless Networking
Topic: Classic vs mesh WiFi
Replies: 1
Views: 590

Re: Classic vs mesh WiFi

AP roaming and mesh are different things. Mesh won't help you. Google AP roaming.
by gdanov
Thu Apr 07, 2022 1:03 am
Forum: Wireless Networking
Topic: R11e-LTE6 and 2.4G antenna?
Replies: 3
Views: 763

Re: R11e-LTE6 and 2.4G antenna?

I've explained it's cat12 modem used for LTE only. There's no 5G support in my neighbourhood.
by gdanov
Wed Apr 06, 2022 11:12 pm
Forum: Wireless Networking
Topic: R11e-LTE6 and 2.4G antenna?
Replies: 3
Views: 763

R11e-LTE6 and 2.4G antenna?

I need to temporally run my LTE via R11e-LTE6. At the moment I have only mikrotik's 2.4Ghz outdoor antennas and because my provider uses mostly B3 and B7 decided they could do good job. This is the monitor info: registration-status: registered functionality: full manufacturer: "MikroTik" m...
by gdanov
Fri Jan 28, 2022 3:01 pm
Forum: General
Topic: WireGuard Peer not functioning after a router restart
Replies: 52
Views: 13007

Re: WireGuard Peer not functioning after a router restart

Sorry for the confusion but right back at ya! I didnt understand the below........ so let me repeat: the local peer (one running the script) pings the remote peer's tunnel IP. 10.xc.x.x is my wireguard sub-net. Can I assume you mean the script on the client device that originates the initial connec...
by gdanov
Fri Jan 28, 2022 11:58 am
Forum: General
Topic: WireGuard Peer not functioning after a router restart
Replies: 52
Views: 13007

Re: WireGuard Peer not functioning after a router restart

regarding the "noise" — WireGuard is not a finished service, it's a low-level tool, unfortunately. The complaints are valid, but people miss the fact that WG is intentionally limited in functionality by it's creators because they wanted small and auditable code base. That's fair, problem i...
by gdanov
Fri Jan 28, 2022 10:41 am
Forum: General
Topic: WireGuard Peer not functioning after a router restart
Replies: 52
Views: 13007

Re: WireGuard Peer not functioning after a router restart

gdanov, I think netwatch will work without a schedule IF you check off the box that says "Dont Require Permissions" ?? I'm not scripting expert. Originally tried with netwatch, nothing happened then reading the forum I saw other people do it with schedule because "netwatch has not en...
by gdanov
Thu Jan 27, 2022 3:59 pm
Forum: General
Topic: WireGuard Peer not functioning after a router restart
Replies: 52
Views: 13007

Re: WireGuard Peer not functioning after a router restart

@anav well, you've understood it well. the two ip variables are the internal and the endpoint addresses. when I can't ping the internal one, I disable/enable the peer record finding it by the external IP. the script is executed via a schedule, as a function, like that: :global myFunc [:parse [/syste...
by gdanov
Wed Jan 26, 2022 11:46 pm
Forum: General
Topic: WireGuard Peer not functioning after a router restart
Replies: 52
Views: 13007

Re: WireGuard Peer not functioning after a router restart

Time delay ?? I use 60 secs between disable/enable peer. Also below is my script. Such script is mandatory on at least one of the tunnel sides because WG does DNS resolution only once at start. While advertised to support "roaming" — IP change — I've found the tunnel goes stale every now ...
by gdanov
Wed Jan 26, 2022 2:54 pm
Forum: General
Topic: hairpin nat when router is NATed [SOLVED]
Replies: 5
Views: 1546

Re: hairpin nat when router is NATed [SOLVED]

thanks! technically I don't have src-nat problem and don't need hairpin nat :) but anyhow...
by gdanov
Wed Jan 26, 2022 2:09 pm
Forum: General
Topic: hairpin nat when router is NATed [SOLVED]
Replies: 5
Views: 1546

Re: hairpin nat when router is NATed [SOLVED]

wow, wasn't aware I can put DNS names in address list. re-resolving is based on the DNS record TTL, right?
by gdanov
Wed Jan 26, 2022 12:46 pm
Forum: General
Topic: hairpin nat when router is NATed [SOLVED]
Replies: 5
Views: 1546

hairpin nat when router is NATed [SOLVED]

I use ZTE LTE modem for WAN. Unfortunately it's bridge mode is buggy (or MT is buggy) and freezes frequently, so the modem is in router mode and my MT firewall "sees" 192.168.254.x/24 IP as it's external IP. I need to implement hairpin nat, but on the MT. Rule like this does the job: pseud...
by gdanov
Tue Jan 04, 2022 12:56 pm
Forum: General
Topic: configure DHCP server to ignore clients without host name?
Replies: 0
Views: 2531

configure DHCP server to ignore clients without host name?

Some devices (Kindles, apple devices with privacy on) don't provide host name. This makes tracking them extremely challenging when I want to track down who and why the hell opened 100 SMTP connections from single device. I'm very close to switching to MAC address whitelisting, but if I could make DH...
by gdanov
Sat Dec 25, 2021 12:45 pm
Forum: General
Topic: denied winbox/dude connect from <my wan IP here>
Replies: 11
Views: 5808

Re: denied winbox/dude connect from <my wan IP here>

Do you run Dude on your router?
not on that one. I run Dude on another router in the LAN. Interesting clue, that may be it...
by gdanov
Fri Dec 24, 2021 7:34 pm
Forum: General
Topic: denied winbox/dude connect from <my wan IP here>
Replies: 11
Views: 5808

Re: denied winbox/dude connect from <my wan IP here>

yes, I'm bad with iptables.
WANIP or WANIP Gateway are the only things that come to mind.
YOu may have WANIPs in firewall address lists to remove.
I don't get that. I capture my WAN IP in an address list which I don't use for any purposes currently AFAIK.
by gdanov
Fri Dec 24, 2021 7:30 pm
Forum: General
Topic: denied winbox/dude connect from <my wan IP here>
Replies: 11
Views: 5808

Re: denied winbox/dude connect from <my wan IP here>

As said earlier, a drop rule won't give you such a message in the Log even if you have log=yes... that's clear to me What i can assume is, that in /ip service you have explicitly allowed specific subnets only ( address spaces ) to access either winbox, or telnet or ssh etc ... The connections that ...
by gdanov
Fri Dec 24, 2021 6:34 pm
Forum: General
Topic: denied winbox/dude connect from <my wan IP here>
Replies: 11
Views: 5808

Re: denied winbox/dude connect from <my wan IP here>

You won't get that kind of message if you try to access your router but there is a drop rule for example... There are similar posts if you search in the forum https://forum.mikrotik.com/viewtopic.php?t=128535 What is your ROS version ? Version is 7.1. Thanks for the link, I read it already and fran...
by gdanov
Fri Dec 24, 2021 6:33 pm
Forum: General
Topic: denied winbox/dude connect from <my wan IP here>
Replies: 11
Views: 5808

Re: denied winbox/dude connect from <my wan IP here>

post your config, the fact that such things are denied means all is working... But to be on the safe side, best to see what is setup. /export hide-sensitive file=anynameyouwish sorry, even with "hide-sensitive" there's enough config I don't feel comfortable posting publicly. here are my f...
by gdanov
Fri Dec 24, 2021 4:23 pm
Forum: General
Topic: denied winbox/dude connect from <my wan IP here>
Replies: 11
Views: 5808

denied winbox/dude connect from <my wan IP here>

I get the message above every now & then. Is this reason to worry about having something misconfigured?
My firewall has rule to drop all input packets that are not established or related.
by gdanov
Mon Dec 20, 2021 12:47 pm
Forum: General
Topic: simple queues to control in-router forwarding
Replies: 3
Views: 975

Re: simple queues to control in-router forwarding

fasttrack is disabled
by gdanov
Mon Dec 20, 2021 11:37 am
Forum: General
Topic: simple queues to control in-router forwarding
Replies: 3
Views: 975

simple queues to control in-router forwarding

I have router with WAN, wireguard and other tunnels to other locations configured on it. There's simple queue configured to make the set-up more responsive. The different tunnel IPs are in the target list too. When looking at the traffic, it seems the tunnel traffic does not pass via the simple queu...
by gdanov
Wed Dec 08, 2021 4:11 pm
Forum: Wireless Networking
Topic: lowering transmit power of RBM33G with R11e-5HacT [SOLVED]
Replies: 5
Views: 3385

Re: lowering transmit power of RBM33G with R11e-5HacT [SOLVED]

I think it was "dangerous" to try setting higher tx-power than the calibrated one for certain old routers
It seems not to be dangerous (for most cards) because they would never go above the limit. Anyhow, it's the advised and only one method working for my card.
by gdanov
Wed Dec 08, 2021 1:58 pm
Forum: General
Topic: isolating a bridge from pinging IPs assigned to other bridges or interfaces on the same router [SOLVED]
Replies: 8
Views: 1700

Re: isolating a bridge from pinging IPs assigned to other bridges or interfaces on the same router [SOLVED]

Thanks for the help, it's clear now. The only risk I see (in my set-up) is leaving DNS accessible, but that's OK for me and I know how to plug it if I wanted to.

I wish the CPU+internal IPs was treated as separate port, that would make it easier to manage and reason about.
by gdanov
Wed Dec 08, 2021 1:52 pm
Forum: Wireless Networking
Topic: lowering transmit power of RBM33G with R11e-5HacT [SOLVED]
Replies: 5
Views: 3385

Re: lowering transmit power of RBM33G with R11e-5HacT [SOLVED]

Try
/interface/wireless/set 0 tx-power-mode=all-rates-fixed tx-power=0
thanks, this works, but I was always under the impression this is very dangerous to use.
by gdanov
Wed Dec 08, 2021 1:51 pm
Forum: Wireless Networking
Topic: lowering transmit power of RBM33G with R11e-5HacT [SOLVED]
Replies: 5
Views: 3385

Re: lowering transmit power of RBM33G with R11e-5HacT [SOLVED]

After re-reading the manual https://wiki.mikrotik.com/wiki/Manual:Wireless_FAQ#What_TX-power_values_can_I_use.3F and realizing I'm with Atheros 9000+ chipset it's clear why I can use only all-rates-fixed mode. After reading this thread https://forum.mikrotik.com/viewtopic.php?t=170014#p834666 I also...
by gdanov
Wed Dec 08, 2021 1:16 am
Forum: General
Topic: isolating a bridge from pinging IPs assigned to other bridges or interfaces on the same router [SOLVED]
Replies: 8
Views: 1700

Re: isolating a bridge from pinging IPs assigned to other bridges or interfaces on the same router [SOLVED]

Standard linux behaviour - all traffic to local addresses on the Mikrotik are handled by the input chain not forward , see https://wiki.mikrotik.com/wiki/Manual:Packet_Flow#Routing_Diagram . Note this applies even if the source and destination addresses are not in the same subnet . so they traverse...
by gdanov
Wed Dec 08, 2021 12:32 am
Forum: General
Topic: isolating a bridge from pinging IPs assigned to other bridges or interfaces on the same router [SOLVED]
Replies: 8
Views: 1700

isolating a bridge from pinging IPs assigned to other bridges or interfaces on the same router [SOLVED]

I have a router with several bridges and IP tunnel. Let's say bridge main with assigned ip 192.168.1.2/24 bridge bridge-580 with assigned ip 192.168.8.1/24, few (but not all) ports connected to it ipip tunnel , ip irrelevant I want bridge bridge-580 to be routed only via the ip tunnel and fully isol...
by gdanov
Tue Dec 07, 2021 3:38 pm
Forum: Wireless Networking
Topic: lowering transmit power of RBM33G with R11e-5HacT [SOLVED]
Replies: 5
Views: 3385

lowering transmit power of RBM33G with R11e-5HacT [SOLVED]

I have the board + wifi card mentioned above and I'm trying to lower it's transmit power because the AP is 1m away from my devices and I don't need it blasting full power.

Altering the antenna gain changes nothing, I can't figure out how to use the other transmit power options
by gdanov
Thu Nov 25, 2021 9:51 pm
Forum: RouterOS beta
Topic: Possible to route a specific device through Wireguard Tunnel
Replies: 5
Views: 3274

Re: Possible to route a specific device through Wireguard Tunnel

yes. Use route marks and separate routing table.
by gdanov
Fri Nov 19, 2021 10:28 am
Forum: RouterOS beta
Topic: MikroTik LHG LTE6
Replies: 1
Views: 1455

Re: MikroTik LHG LTE6

no. You'll need to script this
by gdanov
Fri Nov 19, 2021 10:24 am
Forum: RouterOS beta
Topic: Using WifiWave2 to bridge two Audience wirelessly, thoughts? == 4-address mode
Replies: 56
Views: 23256

Re: Using WifiWave2 to bridge two Audience wirelessly, thoughts?

They need to add "four address frame support" into wifiwave2 before it will support bridging.
oh, obvious reason.
by gdanov
Tue Nov 16, 2021 3:29 pm
Forum: RouterOS beta
Topic: Using WifiWave2 to bridge two Audience wirelessly, thoughts? == 4-address mode
Replies: 56
Views: 23256

Re: Using WifiWave2 to bridge two Audience wirelessly, thoughts?

I don't have wifiwave2 device so I can't check if there's really no station-bridge mode. You should avoid station-pseudobridge. For 2 nodes using mesh is overkill. Best improvization I can think of is EoIP tunnel over the wifi connection using the IPs you have assigned to the interfaces. Just be min...
by gdanov
Mon Nov 08, 2021 9:24 pm
Forum: General
Topic: vlan set-up when clients already tag their packets
Replies: 4
Views: 778

Re: vlan set-up when clients already tag their packets

Thank you for your help. I ended up using VLAN interface. It acts as reverse access point and fits best for my needs. Hybrid port would've been second option as you suggest. I did not explain well originally what I have. My LAN is connected to a wireless switch and the clients may be wired or wirele...
by gdanov
Mon Nov 08, 2021 10:03 am
Forum: General
Topic: vlan set-up when clients already tag their packets
Replies: 4
Views: 778

Re: vlan set-up when clients already tag their packets

From gateway's point of view the client is not "roaming" the ports, it's always on the LAN port. But the rest of the traffic is on that port too.
by gdanov
Sun Nov 07, 2021 3:34 pm
Forum: General
Topic: vlan set-up when clients already tag their packets
Replies: 4
Views: 778

vlan set-up when clients already tag their packets

I need to route all egress traffic of a client via iptunnel (or eoip) to another site. The client does not connect via fixed port so I decided to configure it to tag it's packets (see below for example). This means the packets reach the MT interfaces & bridge already tagged, unlike the examples ...
by gdanov
Thu Nov 04, 2021 6:21 pm
Forum: General
Topic: "safe" EoIP tunnel
Replies: 2
Views: 598

Re: "safe" EoIP tunnel

MTU of what?
The EoIP tunnel handles only casts from what I see when I torch it.
by gdanov
Thu Nov 04, 2021 4:33 pm
Forum: General
Topic: "safe" EoIP tunnel
Replies: 2
Views: 598

"safe" EoIP tunnel

Hi, I have several locations with mikrotik routers. They are connected via Wireguard in a full graph. I'd like to run EoIP for some weird services that rely on broad/multicasts, etc. Setting up the link is easy, the problem is that after minute or so the client in the network I'm working in loses WA...
by gdanov
Fri Oct 29, 2021 2:57 pm
Forum: General
Topic: routing mark, secondary routing table not used by MT device itself
Replies: 1
Views: 402

Re: routing mark, secondary routing table not used by MT device itself

adding similar mangle rule for the output chain solved it
by gdanov
Fri Oct 29, 2021 2:46 pm
Forum: General
Topic: routing mark, secondary routing table not used by MT device itself
Replies: 1
Views: 402

routing mark, secondary routing table not used by MT device itself

I want to make two devices in the same city, same ISP talk to each other, and partially succeed. Details: My ISP have a bit weird set-up: their DHCP server gives me IP with mask 23. This subnet covers the IPs they assign to the segment in my neighborhood/city but they isolate their clients from talk...
by gdanov
Sat Sep 04, 2021 9:07 pm
Forum: General
Topic: LTE modem with voice capability
Replies: 5
Views: 2275

Re: LTE modem with voice capability

yes, they are annoying on so many levels...but I've got no real choice as all employ the same tactics. on some of the modems you might be able to use "AT" commands to enable "phone support". That's hint in the right direction. Wiring the respective pins is not needed of course, I...
by gdanov
Sat Sep 04, 2021 6:45 pm
Forum: General
Topic: LTE modem with voice capability
Replies: 5
Views: 2275

Re: LTE modem with voice capability

Thanks. I'm in Eastern Europe btw. My sim isn't locked to any phone. I can use it in the modem for data without problems. I have official sim "clone" (service by the telco) which I want to use for voice only, but when the master sim isn't in voice device some features (like ringing) are di...
by gdanov
Sat Sep 04, 2021 2:53 pm
Forum: General
Topic: LTE modem with voice capability
Replies: 5
Views: 2275

LTE modem with voice capability

Hi, I'm looking for LTE modem that has voice capability e.g. to the telecom it appears as if the sim card is plugged into a phone. Why? Because my telco has all sorts of crazy limitations for extra-sim and tethering. I can share my mobile data by using the mobile's hotspot, but the coverage is poor ...
by gdanov
Tue Jul 20, 2021 10:02 pm
Forum: General
Topic: different gateways for voip and http/other
Replies: 1
Views: 483

different gateways for voip and http/other

I have connection to local ISP that's good enough for browsing and I pay flat rate. I also have LTE modem that I pay per the GB. All routed by microtiks. The ISP is no good for video or voip calls (jitter, latency) while the LTE does it without problems. At the moment when I need to do video call I'...
by gdanov
Sat Jun 26, 2021 4:21 pm
Forum: RouterOS beta
Topic: R11e-LTE6 not working in 7.1beta6
Replies: 8
Views: 2601

Re: R11e-LTE6 not working in 7.1beta6

This is USER forum, I'm a USER of this forum, you do not notice it? Ah no, you were too busy complaining. @gdanov, from the top of your experience teach us, how many router software have you ever made? MikroTik is not "the others" and neither of you produces software for Routers, so all j...
by gdanov
Fri Jun 25, 2021 8:22 pm
Forum: RouterOS beta
Topic: R11e-LTE6 not working in 7.1beta6
Replies: 8
Views: 2601

Re: R11e-LTE6 not working in 7.1beta6

...great example of how poorly this beta is being managed... No one force the use of beta (Chateau apart), and as beta are perfectly normal to ask to try the latest only. while you are right (noone forces me), your argument does nothing to rebuke my observation. It's orthogonal. I'd suggest your te...
by gdanov
Fri Jun 25, 2021 5:42 pm
Forum: RouterOS beta
Topic: R11e-LTE6 not working in 7.1beta6
Replies: 8
Views: 2601

Re: R11e-LTE6 not working in 7.1beta6

This is a common issue with beta6, go back to beta5. how? I don't have beta5 packages downloaded for mips.. that's yet another great example of how poorly this beta is being managed. You have to guess the url, but it's easy. Just substitute 6 (in 2 places) for the revision you want to revert to in ...
by gdanov
Fri Jun 25, 2021 10:59 am
Forum: RouterOS beta
Topic: Any release date for 7.x expectation?
Replies: 18
Views: 6239

Re: Any release date for 7.x expectation?

What is "release" in your opinion? There is v7 on the download page. Apparently it was released somehow. yes, and apparently is crappy as elephant with diarrhea, as you might've noticed. Well' be on the 6.x LTS branch for years to come, judging from the attitude and the results so far.
by gdanov
Sun Jun 06, 2021 1:07 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 242146

Re: v7.1beta6 [development] is released!

Is there any known issue with Traffic Flow in beta6? It looks like I can't get any netflow info into logstash (and I have checked everything in terms of config, FW, etc.) If no one has an idea, I will open a support case to check if it really is an issue in MT or not. Cheers, anthonws. Replying to ...
by gdanov
Fri May 28, 2021 4:28 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 242146

Re: v7.1beta6 [development] is released!

Although I don't know what their priorities are, one issue that i might see with where you place #1 is that to finish porting everything that is in v6 (meaning the various kernel modifications), they would lock themselves down to a particular kernel version. They might have to redo the modification...
by gdanov
Mon May 24, 2021 3:45 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 242146

Re: v7.1beta6 [development] is released!

After update my RBM11G w/ R11e-LTE6 from beta5 to beta6 the LTE modem can't connect to BS. I'm downgrade to beta5 now.
someone at MT could add "known problems" and reflect this in the changelog. Basic respect for your users.
by gdanov
Thu May 20, 2021 7:21 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 242146

Re: v7.1beta6 [development] is released!

BETA does not equal "throw a tag at the wall and see if it sticks". There's euphemism for what MT is doing is "outsourcing testing to our clients", and while this isn't bad practice alone, MT are doing it very sloppy. you can comment my ego and personality as much as you want. If...
by gdanov
Thu May 20, 2021 7:17 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 242146

Re: v7.1beta6 [development] is released!

yeah, I guess they belong here in the forum, right? because...why put them on the download/archives page. and my (actually 3 decades, 1 for fun, 2 for living) helped me find it anyway. but thank you. and because you seem to approve of the beta rollout process probably can help me find the beta5 bina...
by gdanov
Thu May 20, 2021 4:56 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 242146

Re: v7.1beta6 [development] is released!

This "beta" thing has been absolute shitshow
Do you know what BETA is ?
and because you seem to approve of the beta rollout process probably can help me find the beta5 binaries so that I can downgrade from the latest UNTESTED beta
by gdanov
Thu May 20, 2021 4:35 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 242146

Re: v7.1beta6 [development] is released!

Yes, I do. I've been doing software for 2 decades for a living. I'd be ashamed to deliver such consistently untested software
This "beta" thing has been absolute shitshow
Do you know what BETA is ?
by gdanov
Thu May 20, 2021 4:09 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 242146

Re: v7.1beta6 [development] is released!

This "beta" thing has been absolute shitshow. I'm bleep furious. Running mikrotik modem on mikrotik board does not work. Whoever is responsible for ros7 must be fired. This is absolute disgrace and disappointment. my LTE stopped working after upgrading (from beta3). This is simply ridiculo...
by gdanov
Thu May 20, 2021 2:11 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 242146

Re: v7.1beta6 [development] is released!

my LTE stopped working after upgrading (from beta3). This is simply ridiculous. board: rbm33g modem: R11e-LTE6 firmware: R11e-LTE6_V026 after upgrading the board it booted with "A newer version of modem firmware is available!" sign at the top of the modem page. pin status is ok but "t...
by gdanov
Wed Feb 17, 2021 11:36 am
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56406

Re: v7.1beta4 [development] is released!

What if someone sells devices running development software. Mind blown. That is not winning prizes... But the big boys do the same. They even don't call it beta or development.. First Cisco Nexus switches: Total crap. First Juniper SRX: the same. Checkpoint modular firewalls: after all these years ...
by gdanov
Wed Feb 17, 2021 11:34 am
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56406

Re: v7.1beta4 [development] is released!

Although I agree that the Mikrotik's betas are alphas, they are labelled "development". Both at the web page and at the system upgrade on the routers. It isn't even marked "testing". So, we could argue that the v7 should be 7.1alpha4, instead of 7.1beta4 - and it would be a reas...
by gdanov
Tue Feb 16, 2021 2:29 pm
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56406

Re: v7.1beta4 [development] is released!

I can uderstand everybody who decide not to install beta version, it's their gear, their time, their life. But why bitching about quality of betas (or lack of it)? Either accept the lack of quality of betas and proceed to test (reporting issues etc.) or stop testing and shut up about it. Because MT...
by gdanov
Fri Jan 08, 2021 1:46 pm
Forum: General
Topic: mangle rules DB?
Replies: 4
Views: 871

Re: mangle rules DB?

I want to mark services, not clients.
by gdanov
Fri Jan 08, 2021 1:38 pm
Forum: General
Topic: mangle rules DB?
Replies: 4
Views: 871

Re: mangle rules DB?

I don't want to filter. I need to mark the connections for monitoring and QoS purposes.
by gdanov
Fri Jan 08, 2021 1:11 pm
Forum: General
Topic: mangle rules DB?
Replies: 4
Views: 871

mangle rules DB?

due to the work & study from home situation I'd like to set-up mangle rules to discriminate the different services for my kids and wife. One of the services of course is Zoom. Their firewall manual page https://support.zoom.us/hc/en-us/articles/201362683-Network-firewall-or-proxy-server-settings...
by gdanov
Mon Jan 04, 2021 6:35 pm
Forum: Wireless Networking
Topic: Improving inhouse speed
Replies: 9
Views: 2960

Re: Improving inhouse speed

thanks again! my antennas are 3x dipole omni. On one box I have them in line, mounted on the back of mikrotik box, several cm apart. On the other they are in triangle pattern, 10cm apart. I keep them vertical ATM. Setting gain between 3 to 7 gives me the same performance. downgraded, run quick test ...
by gdanov
Mon Jan 04, 2021 4:49 pm
Forum: Wireless Networking
Topic: Improving inhouse speed
Replies: 9
Views: 2960

Re: Improving inhouse speed

yes, reduced on both sides, then set to nominal. currently rssi is 50db.

if you read my last post you'll see that it's currently very stable regardless if I use hap ac2 or rbm33g + R11e-5HacT as AP. Station is always rbm33g + R11e-5HacT
by gdanov
Mon Jan 04, 2021 3:08 pm
Forum: Wireless Networking
Topic: Improving inhouse speed
Replies: 9
Views: 2960

Re: Improving inhouse speed

I rebuilt my station router to use the steel box I have for this routerboard and stability increased. Then I put together second identical set-up (minus the nice box) to act as AP and right now stability is very good, ping jitter is minimal, but top speed is 400MBps which is still not what I expecte...
by gdanov
Sun Jan 03, 2021 7:12 pm
Forum: Wireless Networking
Topic: Improving inhouse speed
Replies: 9
Views: 2960

Re: Improving inhouse speed

Thanks for the reply. I know it's hard problem. Some details on your feedback: * lowering the channel width helps a bit with the stability (no disconnects, less speed fluctuation) but still disappointing, only 100mbps and CCQ is same as the wide channel * RX CCQ fluctuates between 40 and 70% — prett...
by gdanov
Sun Jan 03, 2021 5:01 pm
Forum: Wireless Networking
Topic: Improving inhouse speed
Replies: 9
Views: 2960

Improving inhouse speed

TL;DR: I'm trying to connect two rooms in my apartment wirelessly and so far the best I get is ~250Mbps in the 5ghz band. Where I live the walls & floors are very thin and the 2.4 spectrum is absolutely packed. The 5ghz is not that crowded yet and still I get extremely disappointing speed when c...
by gdanov
Mon Dec 28, 2020 1:11 pm
Forum: General
Topic: wireless access list vlan mode & id function?
Replies: 12
Views: 2245

Re: wireless access list vlan mode & id function?

Thanks once again. The different explanation methods were very helpful.
by gdanov
Sun Dec 27, 2020 5:35 pm
Forum: General
Topic: wireless access list vlan mode & id function?
Replies: 12
Views: 2245

Re: wireless access list vlan mode & id function?

Thanks, your explanation makes it both clearer and more confusing for me. The confusing part is that you start talking about drivers tagging packets, while my impression is that ports tag/untag packets... Adding to the confusion is the dual nature of the bridge, but I got aware of this aspect in the...
by gdanov
Sun Dec 27, 2020 4:03 pm
Forum: General
Topic: wireless access list vlan mode & id function?
Replies: 12
Views: 2245

Re: wireless access list vlan mode & id function?

The set-up where everything is tagged the same is experiment to see what happens with matching tags and enabled/disabled access list entry. My logic was it won't have effect, but obviously my mental model is wrong. Imagine the wireless interface being a standalone wireless AP with an Ethernet port, ...
by gdanov
Sun Dec 27, 2020 3:55 pm
Forum: General
Topic: wireless access list vlan mode & id function?
Replies: 12
Views: 2245

Re: wireless access list vlan mode & id function?

This is the best guide for vlans using port and bridge vlan settings. What is germane to your questions is that the guide AVOIDS using vlan tags in wireless settings. This approach is clean and works. https://forum.mikrotik.com/viewtopic.php?t=143620 Thank you, but I went through this guide and it'...
by gdanov
Sun Dec 27, 2020 3:10 pm
Forum: General
Topic: wireless access list vlan mode & id function?
Replies: 12
Views: 2245

Re: wireless access list vlan mode & id function?

my whole config is pretty big and there are tons of unrelated things there so I'd rather not post it. Unfortunately I don't have clean box on which to test. let me clarify: * I don't tag the wireless interface (because it's access and it must be untagged, right?) * the wireless interface is set to n...
by gdanov
Sat Dec 26, 2020 10:59 pm
Forum: General
Topic: wireless access list vlan mode & id function?
Replies: 12
Views: 2245

wireless access list vlan mode & id function?

I'm setting up vlans. With working vlan segment including wireless AP when I set-up client in the access list with vlan mode=use tag and the default vlanid of the AP interface the client loses connectivity. What is the function of these two vlan fields in the access list? Could not find it in the do...
by gdanov
Fri Dec 25, 2020 4:58 pm
Forum: General
Topic: /wireless interface vlan-id vs. /bridge port vlan pvid — difference?
Replies: 2
Views: 743

/wireless interface vlan-id vs. /bridge port vlan pvid — difference?

Hi,
What's the difference between the two vlan id settings? Reading the manual it looks to me like both are used to set vlan id on untagged traffic?
by gdanov
Mon Dec 07, 2020 3:10 pm
Forum: RouterOS beta
Topic: v7.1beta3 [development] is released!
Replies: 261
Views: 79137

Re: v7.1beta3 [development] is released!

upgraded to this beta my RBM33G with LTE6 and 5Ghz wifi card and I'm very satisfied. The LTE card went missing and weird PPP interface showed up but after couple of restarts & lte firmware upgrade everything was back to normal. I upgraded mostly because of wireguard and I'm writing to share how ...
by gdanov
Wed Dec 02, 2020 11:43 am
Forum: General
Topic: SNMP LTE signal strength
Replies: 16
Views: 12789

Re: SNMP LTE signal strength

I know this is old thread, but posting for ppl that will google like me the lte modem is described in the mikrotik's mib file (the wiki has link to it). you have to download it locally in the right folder. this page describes it pretty well http://net-snmp.sourceforge.net/wiki/index.php/TUT:Using_an...
by gdanov
Fri Nov 27, 2020 10:20 pm
Forum: Wireless Networking
Topic: double Tx/Rx Hw. frame stats
Replies: 0
Views: 537

double Tx/Rx Hw. frame stats

Hi, I'm testing my 5GHz interface by generating traffic between laptop connected via wifi and PC connected via Gbit ethernet on the same routerboard. Noticed the hardware frames and bytes are approx. double the count of transmitted frames & bytes. Is this normal and if not — what could be the pr...
by gdanov
Sat Nov 21, 2020 3:16 pm
Forum: RouterBOARD hardware
Topic: how to mount pigtail antenna end on routerboard enclosure?
Replies: 8
Views: 1688

Re: how to mount pigtail antenna end on routerboard enclosure?

Just drill small hole for SMA there somewhere.
I don't want to ruin the otherwise nice enclosure. I'd drilled holes in the top already otherwise. It's the best option to give some space to the 4 antennas I need to mount
by gdanov
Sat Nov 21, 2020 3:14 pm
Forum: RouterBOARD hardware
Topic: how to mount pigtail antenna end on routerboard enclosure?
Replies: 8
Views: 1688

Re: how to mount pigtail antenna end on routerboard enclosure?

Thanks everyone. I have already RSMA pigtails so not motivated to buy new set of pigtails + adapters. I'll go with the makeshift plate I manufactured. Cheers Some people would 3D print an adapter for this. that's great idea, too bad I decided against buying 3D printer long time ago... wish someone ...
by gdanov
Sat Nov 21, 2020 12:08 am
Forum: RouterBOARD hardware
Topic: how to mount pigtail antenna end on routerboard enclosure?
Replies: 8
Views: 1688

Re: how to mount pigtail antenna end on routerboard enclosure?

Thanks everyone. I have already RSMA pigtails so not motivated to buy new set of pigtails + adapters. I'll go with the makeshift plate I manufactured.

Cheers
by gdanov
Fri Nov 20, 2020 3:44 pm
Forum: RouterBOARD hardware
Topic: how to mount pigtail antenna end on routerboard enclosure?
Replies: 8
Views: 1688

how to mount pigtail antenna end on routerboard enclosure?

hi, Got the original enclosure for RBM33G and the rear holes for the pigtail antenna connectors are too big. Obviously I'm missing a part or a plate that has properly sized holes. Is there some sort of mounting adapter and how's the name? The enclosure comes with 4 plastic thingies that fit perfectl...
by gdanov
Tue Jul 30, 2019 1:23 pm
Forum: General
Topic: Bandwidth prioritization with simple queues problem
Replies: 0
Views: 714

Bandwidth prioritization with simple queues problem

Hi, I have line with 10M up/downlink bandwidth and want to set-up guaranteed minimal bandwidth for my business devices (to protect vs. kids' netflix). I set 2 simple queues ("default" and "hipri") with the same max-limits but 30-70% limit-at values. "hipri" is ordered b...
by gdanov
Thu Jan 17, 2019 1:31 pm
Forum: General
Topic: How to fail over using 2 WANs on two different stations
Replies: 0
Views: 640

How to fail over using 2 WANs on two different stations

Hi, I have 2 routers. They are connected only via WiFi and share the same net. Here are the details: * R1 is in mode station bridge and is connected to DSL on ETH1. All works well when clients use it as gateway * R2 is in mode ap bridge and has LTE stick in the USB. Again everything works well when ...