Community discussions

Search found 44 matches

by msport
Wed Sep 27, 2017 3:27 pm
Forum: General
Topic: Masquerade traffic in forward chain
Replies: 3
Views: 609

Re: Masquerade traffic in forward chain

That would not be so easy, i would have to remove a lot of config and change up ip-addresses etc to anonymize.

Is the above explanation not enough to say if masq can be done or not?
by msport
Wed Sep 27, 2017 2:13 pm
Forum: General
Topic: Masquerade traffic in forward chain
Replies: 3
Views: 609

Masquerade traffic in forward chain

Hi, I have a router, router1, with some traffic passing trough it, via EOIP. The EOIP interface on router1 has ip (example) 1.1.1.2/24 and the other end is router2, which holds the 1.1.1.0/24 network. Router2 has this route: Dst: 3.3.3.0/24 Gw:1.1.1.2 Router1 also has a interface1, with ip 2.2.2.1/2...
by msport
Tue Nov 24, 2015 12:43 am
Forum: General
Topic: Feature request/poll -> /ip/hotspot/active
Replies: 5
Views: 839

Re: Feature request/poll -> /ip/hotspot/active

I am happy to inform that #1 is implemented, and will be available in v6.34rc8 which will be available in short time :) With some scripting, #2 and #3 is fully available :D Syntax will be: /ip hotspot active login user=test password=test mac-address=E8:50:8B:1C:95:7D ip=172.16.20.19 For device to ge...
by msport
Sat Nov 21, 2015 10:41 pm
Forum: General
Topic: Feature request/poll -> /ip/hotspot/active
Replies: 5
Views: 839

Re: Feature request/poll -> /ip/hotspot/active

... Those who don't use or don't want changes, won't vote. So, the results, if any, will still reflect on how many wants it. I dont think these features would require big resources and energy, everything is already in place, it is just a matter of allowing to edit the underlying user database manua...
by msport
Sat Nov 21, 2015 8:50 pm
Forum: General
Topic: Feature request/poll -> /ip/hotspot/active
Replies: 5
Views: 839

Re: Feature request/poll -> /ip/hotspot/active

What about options like "I don't use hostpot" and "Leave it as it is" to also see how relevant the request globally is? Remember, his would require diverting development sources on this topic and would be detrimental to other issues and features. Those who don't use or don't want changes, won't vot...
by msport
Sat Nov 21, 2015 11:23 am
Forum: General
Topic: Feature request/poll -> /ip/hotspot/active
Replies: 5
Views: 839

Feature request/poll -> /ip/hotspot/active

Hi We have recently deployed a big MT hotspot solution. The customers are coming from DSL, optical and radio. They are behind their own NAT-router. I will issue a poll here, to see if i have community support that my feature request is valid, and useful. Vote in the poll, if you agree with one, or a...
by msport
Sat Nov 07, 2015 12:01 am
Forum: Announcements
Topic: 6.33 version released!
Replies: 140
Views: 34193

Re: 6.33 version released!

I found out, Add login-timeout is the timeout a device stays in hosts tab list . After that time it is deleted.
Thanks!

Really dont see the benefit, but then again, not used to the hotspot yet, but getting there.

--
M
by msport
Fri Nov 06, 2015 8:39 pm
Forum: Announcements
Topic: 6.33 version released!
Replies: 140
Views: 34193

Re: 6.33 version released!

hotspot - add login-timeout setting to force login for unauth hosts

and what is this doing exactly...
I would want to know that as well! Probably it is not what i need but still it would be interesting to have new features explained. Manual is not updated with info as far as i can see.

--

M
by msport
Mon Oct 26, 2015 9:34 pm
Forum: General
Topic: Add active user to hotspot - How to use the add function present in CLI?
Replies: 3
Views: 395

Re: Add active user to hotspot - How to use the add function present in CLI?

I see...

Thank you! Really appreciate the answer.

Very strange that mikrotik does not support something as essensial as this...should be fairly easy to implement also.


--

Kim
by msport
Thu Oct 22, 2015 3:13 pm
Forum: General
Topic: Add active user to hotspot - How to use the add function present in CLI?
Replies: 3
Views: 395

Add active user to hotspot - How to use the add function present in CLI?

Hei In /ip/hotspot/active there are a possibilty to "add" When i do this, i get add copy-from= What does it expect me to give after "copy-from=" ? File of users? Tried different things but to no use. We are trying to figure out how to put back all active sessions after a router-reboot or such. This ...
by msport
Wed Oct 21, 2015 9:05 am
Forum: General
Topic: Top level simple queues
Replies: 4
Views: 1143

Re: Top level simple queues

Bump
by msport
Tue Oct 20, 2015 11:17 am
Forum: General
Topic: Top level simple queues
Replies: 4
Views: 1143

Re: Top level simple queues

Just to make sure: If i go with default hotspot settings, and remove all static queues, and keep only hotspots dynamic queue, and clients are put in their own dynamic queue as "normal", are all these dynamic client queues then top level queues? Will these (approx 1200) queues distribute over multipl...
by msport
Mon Oct 19, 2015 11:28 pm
Forum: General
Topic: Top level simple queues
Replies: 4
Views: 1143

Re: Top level simple queues

Spreading the customers among multiple top level queues doesn't mean making each customer it's own separate top level queue. You still need to have top queues, and put customers as child queues to those. Each top queue must match a particular set of users, and have 1/N-th of your total rate as its ...
by msport
Mon Oct 19, 2015 10:38 pm
Forum: General
Topic: Top level simple queues
Replies: 4
Views: 1143

Top level simple queues

Hi I am making a hotspot with simple queues. Mikrotik says i should spread the customers out on multiple top-level queues, to utilize all cores in the CPU. So, i do this: (example) 1 Queue1 2 Queue2 3 Queue3 D 4 Dynamic Hotspot-queue Then, i log on a user, wich uses a user profile with parent queue ...
by msport
Wed Oct 07, 2015 2:07 pm
Forum: General
Topic: Hotspot - dynamic PCQ queues
Replies: 4
Views: 1058

Re: Hotspot - dynamic PCQ queues

I have made some progress, but i don't know if it is usable: AAA sends a mikrotik-group. (For example "5mbit" and this is the user profile) Added static mangle rules to jump to the hotspot chain. (pre and postrouting) 5mbit user profile creates dynamic mangle rules with packet mark 5mbit, (based on ...
by msport
Tue Oct 06, 2015 7:58 pm
Forum: General
Topic: Hotspot - dynamic PCQ queues
Replies: 4
Views: 1058

Re: Hotspot - dynamic PCQ queues

Thanks.

Since you already are looking, is what i am asking possible?

I am seeing something is being done with adress lists, but our customers have different speed profiles spread over multiple subnets, so they are not possible to be identified via adress-lists.

Regards
--

M-sport
by msport
Tue Oct 06, 2015 12:43 pm
Forum: General
Topic: Hotspot - dynamic PCQ queues
Replies: 4
Views: 1058

Re: Hotspot - dynamic PCQ queues

How can i claim the 30 days support that comes with the level 6?

Regards

M-sport
by msport
Mon Oct 05, 2015 3:30 pm
Forum: General
Topic: Hotspot - dynamic PCQ queues
Replies: 4
Views: 1058

Hotspot - dynamic PCQ queues

Hi I notice "everyone" including Mikrotik themselves says one need to use PCQ queues and queue-tree in a big hotspot setup. However, it is not much info about how this works. I have found some guides, but these are shaping all customers equally. We have a userbase of 1200, each with their own speed....
by msport
Mon Oct 05, 2015 9:23 am
Forum: General
Topic: DHCP - Relay broken in 6.32.2?
Replies: 0
Views: 791

DHCP - Relay broken in 6.32.2?

Hi We are going to build a captive portal for 1200 users. I would be a layer 3 portal, and no NAT. I dont even know if it supposed to work, but because of the L3, we do not know the client MAC. I was hoping that if using the relay, it would/could record the mac-address, and be able to use it in the ...
by msport
Thu Jan 29, 2015 9:36 pm
Forum: General
Topic: CAPsMAN v2 ready for testing
Replies: 201
Views: 101999

Re: CAPsMAN v2 ready for testing

Hi Have been testing capsman, and it has some almost good enough features that we like, but is lacking in others: We have a "big" network of 5Ghz AP's, all with their own ssid. Many stations use static ssid and as centralized CPE management is not possible, it is difficult to fix. What I tought we w...
by msport
Tue Sep 30, 2014 5:09 pm
Forum: General
Topic: Block LAN ip trough bridge
Replies: 1
Views: 908

Re: Block LAN ip trough bridge

Think i got it:

/interface bridge filter
add action=drop chain=forward disabled=no dst-address=1.1.1.0/24 in-inter
wlan mac-protocol=ip src-address=1.1.1.0/24

add action=drop chain=input disabled=no dst-address=1.1.1.0/24 in-interfa
wlan mac-protocol=ip src-address=1.1.1.0/24
by msport
Tue Sep 30, 2014 2:35 pm
Forum: General
Topic: Block LAN ip trough bridge
Replies: 1
Views: 908

Block LAN ip trough bridge

Hi I had a good idea, which all of a sudden is not that cool... I have made scripts to change router config if the scheduler can ping a specified IP 5 times. This is a CPE setup, where customers can change between router/bridge mode/ISP defaults/factory resets, depending on what ip the router gets 5...
by msport
Tue Jul 15, 2014 5:40 pm
Forum: RouterBOARD hardware
Topic: QRT 5 questions
Replies: 4
Views: 1453

QRT 5 questions

Hi TRied searching, but either i use wrong search terms or my questions have not been asked yet. I am testing a QRT-5, and i notice it only has one led strip, but is a dual chain unit. The sextant, which is still untested, have apparantly one for hor. and one for vert. How is the LEDs logic on wirel...
by msport
Wed Oct 24, 2012 12:42 pm
Forum: General
Topic: Block traffic between vlans in bridge
Replies: 2
Views: 717

Re: Block traffic between vlans in bridge

Thanks, i will look into that!
by msport
Tue Oct 23, 2012 12:42 am
Forum: General
Topic: Block traffic between vlans in bridge
Replies: 2
Views: 717

Block traffic between vlans in bridge

Hi

I have 4 bridge ports in a bridge:
l2tp (Dynamic)
Vlan1
Vlan2
ether1

I do not want broadcast or any traffic that comes from vlan2 to enter into vlan1, and also no vlan1 traffic visible in vlan2. Is this possible to do and still pass both vlans over the L2TP?

Regards

_
Kim
by msport
Sun Feb 28, 2010 1:53 am
Forum: Beginner Basics
Topic: "Route" port from internal computer to Wan2
Replies: 7
Views: 1020

Re: "Route" port from internal computer to Wan2

I can test this a little later, but i think i dont need to much optimizing. This is a Alix (Wrap board) with 3 eth and 1 wlan. I am the only user. I have an office in the basement, where i have access to my work network trough a wireless link. For private use i have a 20mbit cable, wich both are con...
by msport
Sun Feb 28, 2010 1:28 am
Forum: Beginner Basics
Topic: "Route" port from internal computer to Wan2
Replies: 7
Views: 1020

Re: "Route" port from internal computer to Wan2

Got it!

Thanks a lot! I troughput 30mbit+ over this particular service now, utilizing both wans :)



:)
by msport
Sun Feb 28, 2010 1:08 am
Forum: Beginner Basics
Topic: "Route" port from internal computer to Wan2
Replies: 7
Views: 1020

Re: "Route" port from internal computer to Wan2

Thanks for the tip, but could you be more specific?

I do not understand what action to choose and chain type.
by msport
Sat Feb 27, 2010 11:43 pm
Forum: Beginner Basics
Topic: "Route" port from internal computer to Wan2
Replies: 7
Views: 1020

"Route" port from internal computer to Wan2

Hi Just wanting to test a setup, where i can use an application, and have it connect to a server, with two accounts. Since the server for both accounts is on the same IP , and by default all the traffic goes trough WAN1, i would want it to do this: Account1 - pass trough WAN1 port 1 Account2 - pass ...
by msport
Sat Feb 27, 2010 11:38 pm
Forum: Beginner Basics
Topic: Dual WAN setup, _without_ load balancing and failover
Replies: 1
Views: 2382

Re: Dual WAN setup, _without_ load balancing and failover

I solved the issue in the other post.


M-sport
by msport
Sat Feb 27, 2010 11:37 pm
Forum: General
Topic: Cannot NAT incoming ports - Kindof Dual Wan setup
Replies: 15
Views: 4337

Re: Cannot NAT incoming ports - Kindof Dual Wan setup [SOLVED]

I solved this, here is the working code: It does not show here i think, but i put port "22" under "any port" in the "General" tab in winbox. Port in dst or src would never work... The Hairpin and local-local rules are so that internal machines can reach my web server trough it's domain name "over th...
by msport
Fri Feb 26, 2010 10:04 pm
Forum: Beginner Basics
Topic: Dual WAN setup, _without_ load balancing and failover
Replies: 1
Views: 2382

Dual WAN setup, _without_ load balancing and failover

Hi I have a thread going: http://forum.mikrotik.com/viewtopic.php?f=2&t=39553&p=195557#p195557 However, i am not able to port forward from internet and to a internal SSH server. Since my setup could be wrong somewhere, and causing this to not work, i will try to ask for a setup wich will work as exc...
by msport
Fri Feb 26, 2010 7:29 pm
Forum: General
Topic: Cannot NAT incoming ports - Kindof Dual Wan setup
Replies: 15
Views: 4337

Re: Cannot NAT incoming ports - Kindof Dual Wan setup

I can use a static ip on WAN2, since "i am" the ISP on that network. I dont think i can do a static at the other ISP, since i am only a customer there. I am maintaining Wimax and Mikrotik WISP systems, but the Mikrotik i have not gotten much training in, our Mikrotik BST's are very simple set up. On...
by msport
Fri Feb 26, 2010 5:40 pm
Forum: General
Topic: Cannot NAT incoming ports - Kindof Dual Wan setup
Replies: 15
Views: 4337

Re: Cannot NAT incoming ports - Kindof Dual Wan setup

The route is dynamic, and i told the dhcp client that the distance to use was 1, so now it is 1.

Still no NAT into the network.
by msport
Fri Feb 26, 2010 3:31 pm
Forum: General
Topic: Cannot NAT incoming ports - Kindof Dual Wan setup
Replies: 15
Views: 4337

Re: Cannot NAT incoming ports - Kindof Dual Wan setup

I see no default route for WAN2. Should have the same 0.0.0.0/0 route to the WAN2 gateway ip. ADD: AND...the distance on the WAN1 default route seems wrong. Normally, it will show a distance of 1. Yours shows 0. That usually indicates it is an address on this router. It should be the gateway addres...
by msport
Fri Feb 26, 2010 2:47 pm
Forum: General
Topic: Cannot NAT incoming ports - Kindof Dual Wan setup
Replies: 15
Views: 4337

Re: Cannot NAT incoming ports - Kindof Dual Wan setup

Do you have port 22 open on the destination localnet machine? It is blocked by the firewall by default in most operating systems.
Yes, it is a Linux box, and it has been working fine when i was using simple broadband routers.

Else, see my edit on my last post.
by msport
Fri Feb 26, 2010 2:40 pm
Forum: General
Topic: Cannot NAT incoming ports - Kindof Dual Wan setup
Replies: 15
Views: 4337

Re: Cannot NAT incoming ports - Kindof Dual Wan setup

Ok,sorry about that. 95.* is Wan 1 yes. This is how it looks, still not working. Seeing bytes increasing on the DST rule when i try to connect, but not on the SRC rule. 0 chain=dstnat action=dst-nat to-addresses=10.0.0.53 to-ports=22 protocol=tcp dst-address=95.**.**.** dst-port=22 1 chain=srcnat ac...
by msport
Fri Feb 26, 2010 2:27 pm
Forum: General
Topic: Cannot NAT incoming ports - Kindof Dual Wan setup
Replies: 15
Views: 4337

Re: Cannot NAT incoming ports - Kindof Dual Wan setup

Thanks for the reply! I use Winbox' terminal. place-before = 0 did not work, so i removed the masq rules,added your suggestion, and replaced the masq rules. Unfortunately, no success This is how it looks now: 0 chain=dstnat action=dst-nat to-addresses=95.**.**.** to-ports=22 protocol=tcp dst-address...
by msport
Fri Feb 26, 2010 12:54 pm
Forum: General
Topic: Cannot NAT incoming ports - Kindof Dual Wan setup
Replies: 15
Views: 4337

Re: Cannot NAT incoming ports - Kindof Dual Wan setup

I have nothing on filters

Nat:

chain=srcnat action=masquerade out-interface=ETH-NNMGMNT (Wan2)

chain=srcnat action=masquerade out-interface=ETH-BBNett (Wan1)
by msport
Fri Feb 26, 2010 1:17 am
Forum: General
Topic: Cannot NAT incoming ports - Kindof Dual Wan setup
Replies: 15
Views: 4337

Cannot NAT incoming ports - Kindof Dual Wan setup

Hi I am pretty new to Mikrotik, so be warned ;) I have set up a working solution, where i have : 3 eth 1 wlan The wlan is not important at the moment. Eth1 is WAN1 Eth2 is LAN Eth3 is Wan2 I have set this up like this: Route all traffic trough Wan1 Routed some networks trough Wan2 (Work related, onl...
by msport
Thu Jun 11, 2009 12:01 am
Forum: General
Topic: Bridges looping? Same traffic on several bridges
Replies: 0
Views: 336

Bridges looping? Same traffic on several bridges

Hi Trying this forum, since we are running out of options... We have a 3 AP Bridge setup,and most of the clients are routed Stations. We have a problem with all of our transparent bridges, if one initiates traffic, all the other follow,and then slowing the connected ap's and the client itself. We ha...
by msport
Sun Jan 04, 2009 10:20 pm
Forum: General
Topic: (simple?) Vlan Question
Replies: 3
Views: 580

Re: (simple?) Vlan Question

can you tell us more concretly what you wannt..
Sorry, i tought that was what i did...

I want all traffic going out of the bridged antenna to be tagged with vlan 2910.
by msport
Sun Jan 04, 2009 8:56 pm
Forum: General
Topic: (simple?) Vlan Question
Replies: 3
Views: 580

(simple?) Vlan Question

Hi I dont know if this is possible, or how to do it. Whatever i try, i somehow manage to bring down our AP :P What i try to do: I have a bridged client side unit, mode is station. The goal is to have the mikrotik client router transparent. What is the main problem, is that i need everything that goe...