Community discussions

MikroTik App

Search found 98 matches

by loloski
Sat Sep 18, 2021 3:28 pm
Forum: Beginner Basics
Topic: Very slow internet speed when using CRS326
Replies: 4
Views: 327

Re: Very slow internet speed when using CRS326

Hi,

CRS-326 is basically a switch with very limited router functionality
by loloski
Fri Sep 17, 2021 6:42 am
Forum: Announcements
Topic: Mēris botnet information
Replies: 54
Views: 20471

Re: Mēris botnet information

To further reduce the likehood of this, I hope mikrotik will also consider to. Bind winbox. On specific interface to the liking of sysadmin, so that winbox will not exposed on the Wan side interface, no firewall rules needed for some novice user, just my 0.2
by loloski
Wed Sep 08, 2021 5:10 pm
Forum: RouterOS v7 BETA
Topic: v7.1rc3 adds Docker (TM) compatible container support
Replies: 170
Views: 17874

Re: v7.1rc3 adds Docker (TM) compatible container support

wow! ^_^ but the question is where is the link for container.npk? hehhehe care to share It's under "Extra packages", available here (just choose the right architecture for Your device) Thanks a ton, this is my excuse to buy RB5009 to my wife :) and put haproxy in the container endless pos...
by loloski
Wed Sep 08, 2021 4:28 pm
Forum: RouterOS v7 BETA
Topic: v7.1rc3 adds Docker (TM) compatible container support
Replies: 170
Views: 17874

Re: v7.1rc3 adds Docker (TM) compatible container support

wow! ^_^ but the question is where is the link for container.npk? hehhehe care to share
by loloski
Sun Sep 05, 2021 2:47 pm
Forum: RouterOS v7 BETA
Topic: ZeroTier added to RouterOS v7.1rc2
Replies: 147
Views: 23209

Re: ZeroTier added to RouterOS v7.1rc2

hi, since the support ticketing system of mikrotik still under maintenance at this point, can someone share the rc3 early build i'm also interested and need the fix for the route insertion fix in the controller because route don't propagate in mikrotik but in normal client it's working properly, tha...
by loloski
Sun Sep 05, 2021 2:31 pm
Forum: Beginner Basics
Topic: Is it able to use route function when RouterOS is running as switch?
Replies: 5
Views: 451

Re: Is it able to use route function when RouterOS is running as switch?

I could only hope he don't use CRS as a router, but we don't know for sure at this point and as @mkx pointed out it will be an issue if he use CRS as his/her main gateway
by loloski
Sun Sep 05, 2021 2:15 pm
Forum: General
Topic: VPN speed issue (How to change the router MAC address) [SOLVED]
Replies: 51
Views: 2249

Re: VPN speed issue (How to change the router MAC address) [SOLVED]

hi, what @rextended trying to say most ISP capped your connection if they determined you put a router in between by observing the TTL and decremented by 1 and triggered them to reduced your bandwidth, since you try to reset the TTL to 65 the ISP shouldn't notice you put a router and in theory should...
by loloski
Sun Sep 05, 2021 9:30 am
Forum: Beginner Basics
Topic: Is it able to use route function when RouterOS is running as switch?
Replies: 5
Views: 451

Re: Is it able to use route function when RouterOS is running as switch?

hi, since you don't put any configuration here, let me try to interpret your network and i might or someone might be able to help you along the way, you have two network 192.168.1.0/24 in main office i believed and you have branch office on 192.168.0.0/24 network. from the branch network you have CR...
by loloski
Fri Sep 03, 2021 3:41 pm
Forum: RouterOS v7 BETA
Topic: v7.1rc2 [development] is released!
Replies: 194
Views: 16954

Re: v7.1rc2 [development] is released!

On hAP ac^2 if I set "strong-crypto=yes" in IP/SSH/ and try to export config of entire device, it takes a very long time and finally in file is error about SSH and this section is not exported: ...... set api disabled=yes set winbox port=8291 set api-ssl disabled=yes #error exporting /ip/...
by loloski
Fri Sep 03, 2021 10:03 am
Forum: RouterOS v7 BETA
Topic: v7.1rc2 [development] is released!
Replies: 194
Views: 16954

Re: v7.1rc2 [development] is released!

Thank you very much for your reports, they help us a lot to proceed further. Currently our very big concern is random configuration lost on some occasions. It would be great anybody experience configuration lost provide us with information, - routerboard model used; - configuration used on the devi...
by loloski
Fri Sep 03, 2021 8:54 am
Forum: RouterOS v7 BETA
Topic: v7.1rc2 [development] is released!
Replies: 194
Views: 16954

Re: v7.1rc2 [development] is released!

hi,

on v7.1rc2 restoring configuration from backup is not working if the backup file is password protected, same issue with restoring config files from cloud backup
by loloski
Thu Sep 02, 2021 5:51 pm
Forum: General
Topic: LHG LTE6 is not providing promising speed (Help me please!!)
Replies: 4
Views: 472

Re: LHG LTE6 is not providing promising speed (Help me please!!)

hi,

try to upgrade your device to recent ROS v6.48.4 and upgrade the lte firmware, try that first and report back

[admin@MikroTik] > interface lte firmware-upgrade lte1 upgrade=yes
by loloski
Thu Sep 02, 2021 5:21 pm
Forum: Wireless Networking
Topic: PTP SXTsq-5-ac excelent status but terrible throughput
Replies: 8
Views: 1324

Re: PTP SXTsq-5-ac excelent status but terrible throughput

hi, looking on the numbers, i think the problem is elsewhere. On the client PC are you using sata OR ssd? this could be a disk bottleneck issue, since you have already a linux server in-place, can you put an iperf3 server there and on the other end put an iperf client and re-test please post the res...
by loloski
Thu Sep 02, 2021 11:59 am
Forum: General
Topic: RB951G-2HnD reset problem
Replies: 2
Views: 233

Re: RB951G-2HnD reset problem

hi,

sometimes if i having a problem on resetting the device to its factory default config i use netinstall to reinstall the os.
by loloski
Wed Sep 01, 2021 4:23 pm
Forum: RouterOS v7 BETA
Topic: ZeroTier added to RouterOS v7.1rc2
Replies: 147
Views: 23209

Re: ZeroTier added to RouterOS v7rc2

First of all I can't find ZT package in allpkg zip file: $ unzip -l all_packages-arm-7.1rc2.zip Archive: all_packages-arm-7.1rc2.zip Length Date Time Name --------- ---------- ----- ---- 14053521 2021-08-31 11:30 wifiwave2-7.1rc2-arm.npk 20625 2021-08-31 11:30 calea-7.1rc2-arm.npk 24721 2021-08-31 ...
by loloski
Wed Sep 01, 2021 3:43 pm
Forum: RouterOS v7 BETA
Topic: ZeroTier added to RouterOS v7.1rc2
Replies: 147
Views: 23209

Re: ZeroTier added to RouterOS v7rc2

hi, I just reboot my router to my surprise my config was gone i track down the issue with zerotier, if i remove the zerotier part whenever i reboot the router the config stay. restoring also from backup with zerotier config present in the configuration won't work. ---edit found the issue, there were...
by loloski
Wed Sep 01, 2021 9:25 am
Forum: RouterOS v7 BETA
Topic: ZeroTier added to RouterOS v7.1rc2
Replies: 147
Views: 23209

Re: ZeroTier added to RouterOS v7rc2

hi,

also align winbox to accommodate this change whilst it's working in CLI it is pretty much welcome for not so technically savvy on CLI to make this available also in winbox 3.30 perhap? hehehe
by loloski
Wed Sep 01, 2021 7:12 am
Forum: Beginner Basics
Topic: Best budget Mikrotik router for 30-50 sub routers
Replies: 4
Views: 714

Re: Best budget Mikrotik router for 30-50 sub routers

hi,

best you should trust your consultant if you can't do it by yourself, we have multi gigs of internet terminated on CCR1036 (main router), our bras (pppoe-server) is separate from our main router doing nat, CCR is a great platform but still can fail if your network design is not sound.
by loloski
Tue Aug 31, 2021 2:55 pm
Forum: RouterOS v7 BETA
Topic: v7.1rc2 [development] is released!
Replies: 194
Views: 16954

Re: v7.1rc2 [development] is released!

hi, on hapAC2 (arm32) basic functionality is fine bridging/nat/filtering/fasttrack/eoip/wireguard/openvpn/queue/dhcp/dhcp snooping and wifi not tested igmp-proxy/ospf/bgp/capsman/cake/codel/fq_codel/pppoe and hotspot not working cloud backup you can't upload if you do have previous upload from 6.48....
by loloski
Mon Aug 30, 2021 6:39 pm
Forum: Beginner Basics
Topic: Inter-VLAN traffic established & related (both on same switch) | Stays the router in between?
Replies: 7
Views: 910

Re: Inter-VLAN traffic established & related (both on same switch) | Stays the router in between?

Hi, imho at this point is not worth a risk to go to ros v7, i think you should consider getting a decent L3 switch from other vendor specially if performance is a solid requirement from your environment, in some ISP setting you can get away with this but not in a busy enterprise environment. if you ...
by loloski
Sun Aug 29, 2021 10:03 am
Forum: General
Topic: CPU Usage and unknown device
Replies: 13
Views: 1107

Re: CPU Usage and unknown device

hi,

please post your config here and obfuscate / hide sensitive information so that others can see it and might help you in the process
by loloski
Sun Aug 29, 2021 3:17 am
Forum: General
Topic: Hardware acceleration crs305
Replies: 2
Views: 320

Re: Hardware acceleration crs305

hi, since you are using CRS 3xx series, please use this guide https://wiki.mikrotik.com/wiki/Manual:CRS3xx_series_switches and https://wiki.mikrotik.com/wiki/Manual:Basic_VLAN_switching#CRS3xx_series_switches or watch this youtube video if you are much into video than reading https://www.youtube.com...
by loloski
Fri Aug 27, 2021 4:15 pm
Forum: RouterOS v7 BETA
Topic: v7.1rc1 [development] is released!
Replies: 345
Views: 30992

Re: v7.1rc1 [development] is released!

Please post it here so that everyone can test the said fix, thanks!
by loloski
Wed Aug 25, 2021 2:22 pm
Forum: RouterOS v7 BETA
Topic: v7.1rc1 [development] is released!
Replies: 345
Views: 30992

Re: v7.1rc1 [development] is released!

/system/backup/cloud/upload-file action=create-and-upload password=mikrotik results in kernel panic `system,error,critical router was rebooted without proper shutdown, probably kernel failure` Using winbox GUI not in the terminal were able to backup and upload the config, but can't delete though
by loloski
Tue Aug 24, 2021 3:16 pm
Forum: RouterOS v7 BETA
Topic: v7.1rc1 [development] is released!
Replies: 345
Views: 30992

Re: v7.1rc1 [development] is released!

openvpn didn’t work and it doesn’t work
It's working as ovpn client, I was able to establish connection to my CCR1036 in production, I haven't test though as a server
by loloski
Mon Aug 23, 2021 4:50 pm
Forum: Beginner Basics
Topic: Why I have no internet with static WAN option
Replies: 3
Views: 499

Re: Why I have no internet with static WAN option

Hi,

Without seeing the config, i can only guess that natting/masquerade rules is not present when you don't use the quickset function, can you ping outside your network in the mikrotik terminal if you don't do configure your router using quickset feature?
by loloski
Wed Jul 14, 2021 4:52 pm
Forum: Virtualization
Topic: Supermicro Setup recommendations
Replies: 2
Views: 900

Re: Supermicro Setup recommendations

Hi, we have 1.2k active customers on CCR-1036 with 10 to 12% cpu usage, the trick is disable your connection tracking on your actual pppoe-server and do the network address translation on another dedicated router, don't go with CHR route unnecessarily. I'm sorry if i'm jumping on a conclusion that y...
by loloski
Mon Jul 12, 2021 1:48 am
Forum: RouterBOARD hardware
Topic: LHGG LTE6 reply timeout from modem
Replies: 6
Views: 2684

Re: LHGG LTE6 reply timeout from modem

to check for new version

/interface lte firmware-upgrade lte1

to download new firmware

interface lte firmware-upgrade lte1 upgrade=yes
by loloski
Fri Jul 09, 2021 12:34 am
Forum: General
Topic: Avoid Double NAT - need "wormhole" for default route of my PBX
Replies: 6
Views: 598

Re: Avoid Double NAT - need "wormhole" for default route of my PBX

Hi, Since you don't have a choice of equipment like what you have mentioned, you are left with a couple of options with varying degrees of annoyance, #1 you could ask both provider to route additional public ip at least /30 on your existing connection for the pbx and put a firewall upfront #2, estab...
by loloski
Mon Jun 28, 2021 7:36 pm
Forum: General
Topic: Can't drag and drop firewall filter rules with winbox 3.28
Replies: 9
Views: 490

Re: Can't drag and drop firewall filter rules with winbox 3.28

Apology is not needed :), I know you are just trying to help if only MT is just like with juniper where you have to issue commit for the rule set to take effect this is no biggy!, thanks anyway for trying to help
by loloski
Mon Jun 28, 2021 6:56 pm
Forum: General
Topic: Can't drag and drop firewall filter rules with winbox 3.28
Replies: 9
Views: 490

Re: Can't drag and drop firewall filter rules with winbox 3.28

@rextended when the bug manifest you can't highlight with any of the rules for you to drag, i try to press that "#" thing for so many times the drag and drop don't work, what you are describing is if winbox is properly working the behavior you are describing is correct, just my 0.2$ i also...
by loloski
Mon Jun 28, 2021 6:40 pm
Forum: General
Topic: Can't drag and drop firewall filter rules with winbox 3.28
Replies: 9
Views: 490

Re: Can't drag and drop firewall filter rules with winbox 3.28

Have you test: On what order you have the rule listed inside winbox? First press # for sort on numerical ascending order, instad do not work Yeah i try that first and can't really drag and drop the rule, what works for me is to moved any rule with /ip firewall filter move numbers=0 destination=1 th...
by loloski
Mon Jun 28, 2021 6:21 pm
Forum: General
Topic: Can't drag and drop firewall filter rules with winbox 3.28
Replies: 9
Views: 490

Re: Can't drag and drop firewall filter rules with winbox 3.28

@rextended

Because i'm not sure if this is really a winbox problem after all, because when i do the workaround i mentioned to move the rules with the CLI the drag and drop started to work and also the topic i saw this originally was closed

I saw this issue on ROS 6.48.3 with winbox 3.28
by loloski
Mon Jun 28, 2021 5:47 pm
Forum: General
Topic: Can't drag and drop firewall filter rules with winbox 3.28
Replies: 9
Views: 490

Can't drag and drop firewall filter rules with winbox 3.28

Hey,

I'm trying to setup a new RB4011 and i was surprise, that i can't drag and drop rules i believed it was raised a few times and was supposed to be fixed in 3.28?, workaround exist from CLI using move command but it's annoying
by loloski
Thu Jun 24, 2021 11:27 am
Forum: General
Topic: to many winbox/dude sessions
Replies: 13
Views: 3608

Re: to many winbox/dude sessions

What license level do you have? Depending on it, you can only have so many sessions at one time. level6 because this is CCR-1072 this is getting serious, even after we stop "the dude" and reboot the router still not accepting connection via IP https://mikrotik.com/client/support/SUP-53175
by loloski
Thu Jun 24, 2021 2:50 am
Forum: General
Topic: to many winbox/dude sessions
Replies: 13
Views: 3608

Re: to many winbox/dude sessions

What license level do you have? Depending on it, you can only have so many sessions at one time.
level6 because this is CCR-1072
by loloski
Wed Jun 23, 2021 6:25 pm
Forum: General
Topic: to many winbox/dude sessions
Replies: 13
Views: 3608

Re: to many winbox/dude sessions

This is the users forum and if anyone wants to contact MikroTik they should write to support@mikrotik.com instead to write here on the hope someone of MikroTik staff read this. That said, it is not a RouterOS error, but it is b...t that users do because they do not think that doing the same thing a...
by loloski
Wed Jun 23, 2021 4:57 pm
Forum: General
Topic: to many winbox/dude sessions
Replies: 13
Views: 3608

Re: to many winbox/dude sessions

after few years.... bump anyone from MT can answer or fix this? i hope the answer is not reboot the router itself
by loloski
Thu Jun 17, 2021 10:18 am
Forum: Scripting
Topic: API get tx-rate/rx-rate of hotspot hosts in response using Pear2/RouterOS
Replies: 4
Views: 1603

Re: API get tx-rate/rx-rate of hotspot hosts in response using Pear2/RouterOS

tx-rate and rx-rate parameters does not exist in that menu. List of available parameters: https://wiki.mikrotik.com/wiki/Manual:IP/Hotspot#ip_hotspot_host Why in the winbox GUI it was there i'm fairly confused if the intention was not to include this tx-rate/rx-rate in the API why it was available ...
by loloski
Thu Jun 17, 2021 9:52 am
Forum: Scripting
Topic: API get tx-rate/rx-rate of hotspot hosts in response using Pear2/RouterOS
Replies: 4
Views: 1603

Re: API get tx-rate/rx-rate of hotspot hosts in response using Pear2/RouterOS

Hey,

did you manage to find a workaround to extract this information? I also need this particular info for one of my pet project I can concur that i saw the same thing on ROS 6.48.3
by loloski
Tue Jun 15, 2021 1:58 am
Forum: The Dude
Topic: Dude causing massive packet loss/disruption of service
Replies: 8
Views: 2038

Re: Dude causing massive packet loss/disruption of service

Hello, Had some issues with a lot of routerboards causing internet service disruption/massive packet loss. Randomly, the router would not be accessible for 10-30 seconds. No interface flopping logged. Even weirder, a subnet behind the router will also lose connectivity when this happens. A netwatch...
by loloski
Wed Jun 09, 2021 2:06 pm
Forum: SwOS
Topic: CRS354-48P-4S+2Q+ ethernet interface issue
Replies: 3
Views: 1437

Re: CRS354-48P-4S+2Q+ ethernet interface issue

Hi

please try to update to a latest version 6.48.3 and see if that will fix your issue, i believe there was a similar situation like yours and the fix was on 6.48.2 at least
by loloski
Wed Jun 09, 2021 2:31 am
Forum: General
Topic: Cloudflare allow ip in mikrotik
Replies: 4
Views: 565

Re: Cloudflare allow ip in mikrotik

Go to subnet settings (dhcp server-network) and for dns servers put in cloudfare IPs............. it`s not work. i mean how mikrotik will now about real ip over cloudflare proxy. i know nginx can with module cloudflare, but how mikrotik? any idea? mikrotik is not a proxy where it could inspect x-fo...
by loloski
Wed Jun 09, 2021 2:15 am
Forum: General
Topic: OVPN site-to-site return route ?
Replies: 6
Views: 576

Re: OVPN site-to-site return route ?

Hi,
Normally it's done using push-route x.x.x.x/x in order to push route to the client Routing Table, but openvpn implementation of MT doesn't support this
by loloski
Fri Jun 04, 2021 1:58 pm
Forum: General
Topic: VLAN Routing is slow on hex S
Replies: 10
Views: 791

Re: VLAN Routing is slow on hex S

Hi, There's no hardware offload feature on hex so all vlan operation is done in the cpu not on a switch chip and that could potentially explain your situation, don't use the router to do what the switch is supposed to do as workaround configure your css switch and make an untagged/access port towar...
by loloski
Fri Jun 04, 2021 1:39 pm
Forum: General
Topic: VLAN Routing is slow on hex S
Replies: 10
Views: 791

Re: VLAN Routing is slow on hex S

Hi, There's no hardware offload feature on hex so all vlan operation is done in the cpu not on a switch chip and that could potentially explain your situation, don't use the router to do what the switch is supposed to do as workaround configure your css switch and make an untagged/access port toward...
by loloski
Tue Jun 01, 2021 10:38 am
Forum: Beginner Basics
Topic: Hardware-Offload [SOLVED]
Replies: 8
Views: 804

Re: Hardware-Offload [SOLVED]

Hi,

That was expected there's no hardware offload for the AP
by loloski
Sun May 23, 2021 8:42 am
Forum: Beginner Basics
Topic: Accessing LHGG on WAN
Replies: 2
Views: 431

Re: Accessing LHGG on WAN

Hi,

This really depends on the setup, if your LHGG in passthrough mode you can activate ROMON on hex and LHGG then connect to LHGG via romon, if your hex next-hop/gateway/default-route is your LHGG and LHGG is reachable via IP then you can connect it using winbox directly
by loloski
Fri May 21, 2021 4:39 pm
Forum: The Dude
Topic: problems accessing hAP lite
Replies: 6
Views: 2079

Re: problems accessing hAP lite

Hi,

if you are using hap lite this is it https://download.mikrotik.com/routeros/ ... 6.48.2.npk
by loloski
Thu May 20, 2021 4:38 pm
Forum: The Dude
Topic: problems accessing hAP lite
Replies: 6
Views: 2079

Re: problems accessing hAP lite

Hi,

try netinstall to update a device i suspect it's brick due to previous attempt to update firmware, just disable all network interface in your computer except the LAN Ethernet before running netinstall the wiki is very clear on this try that and netinstall will work for you!
by loloski
Thu May 20, 2021 3:37 pm
Forum: General
Topic: MT as a StrongSwan client
Replies: 1
Views: 519

Re: MT as a StrongSwan client

Hi,

Yes I implement the same requirement as your, please see this post

viewtopic.php?f=13&t=174086&p=851422&hi ... an#p851422
by loloski
Tue May 18, 2021 10:25 am
Forum: RouterOS v7 BETA
Topic: OLT/ONT Solution
Replies: 3
Views: 1322

Re: OLT/ONT Solution

Hi,

I'm no connected in anyway, but you can try this https://www.hsgq.com they have OLT solution
by loloski
Tue May 18, 2021 3:00 am
Forum: General
Topic: how many hotspot users are supported
Replies: 4
Views: 571

Re: how many hotspot users are supported

Hi, This all really depends on lot of things honestly specially on your network topology, but If it's a one machine do everything setup you can at least try to buy RB4011 or at least CCR1009, just to be on the safe side territory :), Please put your network topology here, so that others can help you...
by loloski
Tue May 18, 2021 2:33 am
Forum: General
Topic: CCR2004 Max PPPOE Users
Replies: 1
Views: 312

Re: CCR2004 Max PPPOE Users

Hi, Honestly, I don't have a magic number for you on my 6 months experience with MT on a similar scenario from you we were able to push at least 1K user and counting from two CCR1036 one is dedicated as PPPoE server and the other is doing plain NAT. On the PPPoE server we disable connection tracking...
by loloski
Mon May 03, 2021 3:35 pm
Forum: Beginner Basics
Topic: Simple queue does not work...
Replies: 11
Views: 903

Re: Simple queue does not work...

For some reason I can't get the queues to work. I have set up a simple lab system - RB750G, firmware 6.45.3 ether 1, 2 and 3 are bridged as WAN, ether 4 and 5 bridged as LAN (Not used). ether1 connects to internet, ether 2 and 3 to two Dell PowerEdge systems. allow-fast-path is set to no. No firewa...
by loloski
Sat May 01, 2021 4:34 am
Forum: Announcements
Topic: v6.49beta [testing] is released!
Replies: 180
Views: 54108

Re: v6.49beta [testing] is released!

Both 6.49beta36 and 6.49beta38 are causing kernel failure on my hAP ac^3 RBD53iG-5HacD2HnD.

Ticket: SUP-47971
Same on hAP ac^2 RBD52G-5HacD2HnD.

Kernels failures & reboots were so frequent that I had to downgrade to 6.49beta27.
Yes confirm random kernel panic on 6.49beta38
by loloski
Tue Apr 27, 2021 1:27 am
Forum: General
Topic: 100% CPU usage at random times
Replies: 10
Views: 3846

Re: 100% CPU usage every Peak hours

Hi almost same our Mikrotik CCR 1072-1G-8SFP+, we experience also 100% CPU but on peak hours, we have 1Gbps Bandwidth and use PPPoE server with have 600 clients I have 5 x 1G connection on CCR 1036 we mitigate this issue by separating the PPPoE service and disable connection tracking and we have an...
by loloski
Sun Apr 25, 2021 1:14 pm
Forum: General
Topic: Static WAN IP not working - mask issue?
Replies: 11
Views: 738

Re: Static WAN IP not working - mask issue?

I'm trying to set a static IP address on my WAN (ether1). I turn off DHCP Client I add an address x.x.235.129/22 which picks up network x.x.232.0 I add a route to Gateway x.x.232.1 I've made sure my nat is pointing at the correct interface. Then nothing happens. No internet access, no ping or trace...
by loloski
Sat Apr 10, 2021 11:19 am
Forum: Beginner Basics
Topic: Route only internal traffic (OpenVPN)
Replies: 2
Views: 401

Re: Route only internal traffic (OpenVPN)

I'm using mikrotik on which there's RouterOS v6.43.2. This was set up in a way where when you're connected to the VPN all the traffic goes through it (YouTube, Spotify, etc..) which significantly slows down the speed of the VPN itself. My question here is if it's possible to pass only the traffic t...
by loloski
Thu Apr 08, 2021 9:18 pm
Forum: Beginner Basics
Topic: PCC load balancing Inquiry
Replies: 0
Views: 386

PCC load balancing Inquiry

Hey, Good day guys is it possible to implement PCC connection where the actual PPPoE clients are from different server apart from the router which will perform the NAT Network Topology Customers ->. ACCESS SWITCH -> PPPoE Server -> NAT Router -> 5 WAN LINKS We try to implement this topology with mix...
by loloski
Wed Apr 07, 2021 2:59 am
Forum: Beginner Basics
Topic: How to add new routing table on ROS v6
Replies: 4
Views: 689

Re: How to add new routing table on ROS v6

Hey plisken

Thanks for the reply, I think i have to rethink how i deal with mikrotik it's just a bad habit to break it's too easy to create as many tables as you want in plain linux, they really sanbox it to the extent you can't customize it the way you want it to
by loloski
Wed Apr 07, 2021 2:47 am
Forum: Beginner Basics
Topic: OPENVPN SERVER - HOW TO PUSH ROUTE TO CLIENTS
Replies: 15
Views: 25704

Re: OPENVPN SERVER - HOW TO PUSH ROUTE TO CLIENTS

Just simply Wow, mikrotik can do a lot of things i can't really believed pushing routes is a basic feature I don't want to pop up a server/vm just for this, why the hesitation to implement this feature?
by loloski
Sun Apr 04, 2021 6:17 pm
Forum: Beginner Basics
Topic: How to add new routing table on ROS v6
Replies: 4
Views: 689

How to add new routing table on ROS v6

Hey, Good day guys, I'm trying to create a new routing table apart from the main table for PBR, but it appears ROS 6 doesn't recognize the command or I really miss something obvious according to the docs here https://help.mikrotik.com/docs/pages/viewpage.action?pageId=59965508 it's pretty straight f...
by loloski
Sun Apr 04, 2021 8:32 am
Forum: Scripting
Topic: Read ROS Values with an ESP8266 [SOLVED]
Replies: 8
Views: 1760

Re: Read ROS Values with an ESP8266 [SOLVED]

Hey,

This doesn't directly answer your question, in order to reduce complexity of your solution you might try to consider this product
https://mikrotik.com/product/ltap_mini_lte_kit_us

This may simplify things even further
by loloski
Sat Apr 03, 2021 5:03 am
Forum: General
Topic: CCR1072 Router on Stick
Replies: 2
Views: 568

Re: CCR1072 Router on Stick

We have decided to split the architecture instead of buying CCR 1072 I ditch it and buy 3 CCR1036 instead and partner it with CRS317-1G-16S+RM
by loloski
Sat Apr 03, 2021 3:46 am
Forum: General
Topic: Reverse proxy in Mikrotik only works in LAN?
Replies: 2
Views: 443

Re: Reverse proxy in Mikrotik only works in LAN?

Hi all, Since I want to host 2 web servers under 1 public IP, I'd like to see if my RB450Gx4 can be used as a reverse proxy. Says there are: abc.com@192.168.88.5 xyz.com@192.168.88.7 I have followed the below steps to setup: /ip proxy set enabled=yes src-address=0.0.0.0 /ip dns static add address=1...
by loloski
Sat Apr 03, 2021 3:21 am
Forum: General
Topic: How to make a really stable L2TP connection ?
Replies: 2
Views: 528

Re: How to make a really stable L2TP connection ?

Since nobody has ideas, is there a way to do the equivalent of this on routeros:

linux:

net.core.rmem_max=26214400
net.core.rmem_default=26214400

How can we enlarge the net buffers on routeros?
I don't think you can do this level of tunable in ROS
by loloski
Sat Apr 03, 2021 3:07 am
Forum: General
Topic: PPPoE Server over multpile Switches
Replies: 2
Views: 392

Re: PPPoE Server over multpile Switches

Hey,

simple create a tagged/trunk port between switch 1 and switch 2 pass whatever VLAN tag you want to flow/pass, create an access port in 2nd switch with the VLAN ID where your PPPoE server bind, presto it should work
by loloski
Fri Apr 02, 2021 8:51 pm
Forum: General
Topic: Help: NordVPN OVPN setup with Mikrotik
Replies: 1
Views: 379

Re: Help: NordVPN OVPN setup with Mikrotik

Hey,

I don't know if this is applicable to you, if you could move nordVPN server from its default port to 443/tcp then that's your workaround i doubt your ISP will block your egress traffic port 443, because that's intended for https, just my 0.2$
by loloski
Fri Apr 02, 2021 8:33 pm
Forum: General
Topic: Set IP public to server behind mikrotik rb4011 wihtout nat [SOLVED]
Replies: 6
Views: 967

Re: Set IP public to server behind mikrotik rb4011 wihtout nat [SOLVED]

Hey, If your switch L3 capable you can create a point to point /30 private IP between RB4011 and your switch then route the additional ip block given to you by the ISP ( A.B.73.91 to A.B.73.95) on this private IP in this way you will not waste public IP and no NAT will be involved, then your switch ...
by loloski
Fri Apr 02, 2021 7:01 am
Forum: Beginner Basics
Topic: Strongswan RoadWarrior VPN (PSK) Setup
Replies: 0
Views: 954

Strongswan RoadWarrior VPN (PSK) Setup

Hey, After struggling for a few days, I just want to share a successful roadwarrior setup between strongswan and mikrotik / windows 10 as a vpn client! Assumption StrongSwan (Public Static IP) -> Mikrotik 6.48.1 (Behind a NAT router) VPN Server (Strongswan) ipsec.conf config setup cachecrls=yes uniq...
by loloski
Thu Apr 01, 2021 8:34 am
Forum: General
Topic: hAP - TR069 with STUN support
Replies: 7
Views: 1331

Re: hAP - TR069 with STUN support

Hey, Yeah, i couldn't agree more it's just that my requirement doesn't need a constant communication with the device, They are going to communicate only with the provisioning server if they had been reset and once they home on the server and second push of another config will be push as a final conf...
by loloski
Mon Mar 29, 2021 6:33 pm
Forum: Beginner Basics
Topic: Prevent Created Hotspot Users from using trial
Replies: 4
Views: 664

Re: Prevent Created Hotspot Users from using trial

You can't rely on mac address because in your phone there is a feature that randomize your phone mac address and even windows 10 can do that with just a single click, if you want you can setup a radius server with DB backend then have the trial or voucher code sent to their phone mobile number, if t...
by loloski
Mon Mar 29, 2021 6:03 pm
Forum: Beginner Basics
Topic: OpenVpn Server - Connection Restarting - Problem with my microtik - 6.40
Replies: 1
Views: 789

Re: OpenVpn Server - Connection Restarting - Problem with my microtik - 6.40

First on your client configuration ensure the protocol is set to TCP, if you verified that it's TCP then check your input chain in your router if you allow port 1194 TCP then report your progress here and also disable tls-client I think mikrotik does not support it. Try this i just modify your confi...
by loloski
Mon Mar 29, 2021 5:39 pm
Forum: Beginner Basics
Topic: PPPoE client for ether2
Replies: 1
Views: 363

Re: PPPoE client for ether2

Hey, hmm... interesting since PPPoE connection is out of the question on ether2 and ether3 how about bind this two ports on a dhcp server somewhere in your network authenticate them via the radius located in your cloud, Please check if mikrotik support dhcp + radius I'm done this in the other known ...
by loloski
Mon Mar 29, 2021 5:23 pm
Forum: Beginner Basics
Topic: Help forwarding UDP
Replies: 7
Views: 837

Re: Help forwarding UDP

Try this

add action=dst-nat chain=dstnat dst-address=your_public_ip dst-port=1194 \
protocol=udp to-addresses=192.168.88.2 to-ports=1194
by loloski
Mon Mar 29, 2021 5:13 pm
Forum: Beginner Basics
Topic: Trigger script on new entries in wireless registration-table
Replies: 6
Views: 813

Re: Trigger script on new entries in wireless registration-table

Hey,

I can feel you, i believed there is no similar functionality in the wireless registration table, only on the DHCP lease section that you can make a script. You can file a feature request on mikrotik but that' a long shot :)
by loloski
Mon Mar 29, 2021 4:18 pm
Forum: General
Topic: hAP - TR069 with STUN support
Replies: 7
Views: 1331

Re: hAP - TR069 with STUN support

Hey, Same here I'm interested on how to achieved this, I hate to admit that I haven't really try hard because a workaround exist in my case, what I did I setup an openvpn server along side with my genieacs, then setup a VPN client on the device i want to manage then presto I have bi-directional comm...
by loloski
Mon Mar 29, 2021 3:30 pm
Forum: Forwarding Protocols
Topic: Fastnetmon Advertise /24 Subnet
Replies: 4
Views: 1946

Re: Fastnetmon Advertise /24 Subnet

Oh i see that was unfortunate :), care to share if ever you succeed what would be the ball park figure of cost let say 100 mb of clean traffic going back to your GRE tunnel, i assume that's how your mitigation provider return the clean traffic to your infrastructure
by loloski
Sun Mar 28, 2021 7:14 am
Forum: Forwarding Protocols
Topic: Fastnetmon Advertise /24 Subnet
Replies: 4
Views: 1946

Re: Fastnetmon Advertise /24 Subnet

Hey,

Good day, did you manage to solve this?
by loloski
Sat Mar 27, 2021 3:07 pm
Forum: Wireless Networking
Topic: LTE MAC can't be changed
Replies: 13
Views: 1517

Re: LTE MAC can't be changed

Hey,

I believed if you search the forum there's a lot of people asking if you can change the mac address of the LTE modem and I believed the short answer is no, I also try it on my LHGG-LTE gear and unfortunately it doesn't work
by loloski
Sat Mar 27, 2021 3:03 pm
Forum: Beginner Basics
Topic: Help forwarding UDP
Replies: 7
Views: 837

Re: Help forwarding UDP

Hey,

It was very clear in the manual that OpenVPN implementation in Mikrotik supports only in TCP mode, I think this is also the case for the latest stable 6.48.1

https://wiki.mikrotik.com/wiki/OpenVPN
by loloski
Sat Mar 27, 2021 2:55 pm
Forum: Beginner Basics
Topic: Help with LHG R setup please
Replies: 8
Views: 932

Re: Help with LHG R setup please

Hey,

If the modem was really detected, go to IP-> DHCLIENT and add lte1 device, so that it would obtain an IP from the provider and also make it sure that the APN profile match with what your ISP expect

https://wiki.mikrotik.com/wiki/Manual:Interface/LTE
by loloski
Sat Mar 27, 2021 2:49 pm
Forum: Beginner Basics
Topic: Right MTU and L2 MTU for SFP+ 10GB Ports [SOLVED]
Replies: 4
Views: 886

Re: Right MTU and L2 MTU for SFP+ 10GB Ports [SOLVED]

Hey, Check your gear first if it has a support for jumbo frames like what you have mentioned and see to it that it was also supported on the client side. On a normal situation you should not touch the default 1500 MTU, unless otherwise you have a special needs like you are enabling jumbo frames for ...
by loloski
Sat Mar 27, 2021 2:43 pm
Forum: Beginner Basics
Topic: Trigger script on new entries in wireless registration-table
Replies: 6
Views: 813

Re: Trigger script on new entries in wireless registration-table

Hey, I know this is not directly answer your question but this will achieved what you want but you have to do more.https://wiki.mikrotik.com/wiki/Log_Parser_-_Event_Trigger_Script The idea is you have to capture wirless logging and parse it, you can have a script run periodically as a polling mechan...
by loloski
Sat Mar 27, 2021 8:34 am
Forum: General
Topic: CCR1072 Router on Stick
Replies: 2
Views: 568

Re: CCR1072 Router on Stick

Hi All, I know that this would work, I just have to find out in absence of the switch chip on CCR 1072 is this doable terminating a single multi-mode fiber going to the switch is sufficient enough for at least 5G of real throughput including Simple Queue, NAT and HotSpot. I don't ask for the config ...
by loloski
Thu Mar 25, 2021 5:15 pm
Forum: General
Topic: CCR1072 Router on Stick
Replies: 2
Views: 568

CCR1072 Router on Stick

Hi Guys, Sorry if this scenario or question has been asked for numerous times here, I just want to validate if what I'm trying to do is the right approach on this setup, normally in cisco and juniper gear I always do inter-vlan routng in the switch but since mikrotik doesn't have a full L3 capabilit...
by loloski
Sat Mar 20, 2021 11:57 am
Forum: General
Topic: Mikrotik Switch Recommendation for newbie
Replies: 22
Views: 1638

Re: Mikrotik Switch Recommendation for newbie

Firewall rules. Access Control Lists. Multiple SSIDs hitting different DHCP pools in the same subnet. Per device passwords. SSIDs that can shut off when a primary ISP goes down. Scheduling The ability to use mangle on wifi. Etc Etc I was loving caps-man. Until I started trying to put it under the l...
by loloski
Sat Mar 20, 2021 2:11 am
Forum: General
Topic: Mikrotik Switch Recommendation for newbie
Replies: 22
Views: 1638

Re: Mikrotik Switch Recommendation for newbie

Well, what I like about the MikroTik wifi equipment is that it actually can do routing. When setting up a simple wireless network e.g. our AMPRnet (HAMnet) this is convenient, as the same device can be both link AP and router for the subnet. Of course it would be even better when at the same time i...
by loloski
Fri Mar 19, 2021 7:58 pm
Forum: General
Topic: Mikrotik Switch Recommendation for newbie
Replies: 22
Views: 1638

Re: Mikrotik Switch Recommendation for newbie

I will use a Mikrotik router for just about anything. But the switches and wireless... I get better results from other vendors. Hey, thanks for the heads up I think I need to open my spider sense :) I'm scared I just bought my LHGG LTE kit last week I hope no issues will crap up on this shiny new g...
by loloski
Fri Mar 19, 2021 7:43 pm
Forum: General
Topic: Mikrotik Switch Recommendation for newbie
Replies: 22
Views: 1638

Re: Mikrotik Switch Recommendation for newbie

Concur, the switch you linked in the first post has no routing stats (L3) and is your basic smart L2 device. That worries me since you state on one hand L3 and then choose a totally opposite switch to discuss. You really need to nail down your requirements FIRST.. Size of network, number of users, ...
by loloski
Fri Mar 19, 2021 7:28 pm
Forum: General
Topic: Mikrotik Switch Recommendation for newbie
Replies: 22
Views: 1638

Re: Mikrotik Switch Recommendation for newbie

You should read up on the features available in the different ranges: https://help.mikrotik.com/docs/display/ROS/Switch+Chip+Features https://wiki.mikrotik.com/wiki/Manual:CRS1xx/2xx_series_switches#Summary https://wiki.mikrotik.com/wiki/Manual:CRS3xx_series_switches#Features https://wiki.mikrotik....
by loloski
Fri Mar 19, 2021 1:42 pm
Forum: General
Topic: Mikrotik Switch Recommendation for newbie
Replies: 22
Views: 1638

Mikrotik Switch Recommendation for newbie

Hi All, Good day, i'm fairly new in mikrotik gear but not really new in networking in general so to speak, I'd like to seek some advice on what MT cheapo switch gear is capable of doing an inter-vlan routing I can easily do this using router on stick approach but that's not the case here. My goal is...
by loloski
Fri Mar 19, 2021 1:37 am
Forum: General
Topic: Trunking + Bridging Question
Replies: 4
Views: 538

Re: Trunking + Bridging Question

You started to mix in bridge vlan-filtering ... which should not be used together with switch-chip vlan setup. First decide which way you want to do and then we'll help you. BTW, my post #2 above was based on switch-chip vlans (since you had that in your original post). It does not apply (directly)...
by loloski
Thu Mar 18, 2021 6:25 am
Forum: General
Topic: Trunking + Bridging Question
Replies: 4
Views: 538

Re: Trunking + Bridging Question

From the explanation I fail to see what exactly is the problem wiith wlan1 and wlan2. It seems you'd like to have wlan1 and wlan2 set as access ports to VLAN 20? You can achieve that by setting vlan-mode=use-tag vlan-id=20 on wlan1 and wlan2 interfaces while adding those as ports of bridge VLAN-BR....
by loloski
Wed Mar 17, 2021 2:29 pm
Forum: General
Topic: Trunking + Bridging Question
Replies: 4
Views: 538

Trunking + Bridging Question

Hi everyone I have LHGG LTE US kit trunk to an hAP ac2 router it works great and i can concur that the switch chip is happily working on the hAP ac2 side, but i'm having difficulty on wrapping my head to add wlan1 and wlan2 interface on the VLAN-BR on hAP ac2, I tried that but it doesn't work as i e...
by loloski
Mon Mar 15, 2021 9:17 pm
Forum: General
Topic: TR069 with GenieACS v1.2.3 (Step-by-Step)
Replies: 12
Views: 5710

Re: TR069 with GenieACS v1.2.3 (Step-by-Step)

It's working mostly but pushing X MIKROTIK Configuration File does not work for some reason. i can confirm that i was able to send the factory.rsc file to device by seeing this verbose log starting session, events: [7 TRANSFER COMPLETE, M Download (178374c9fe80000), ] but when i reset my device it d...