Community discussions

Search found 503 matches

  • 1
  • 2
by NAB
Wed May 18, 2016 11:37 am
Forum: General
Topic: IPv6 Routing Mark in Firewall > Mangle Rules
Replies: 49
Views: 10762

Re: IPv6 Routing Mark in Firewall > Mangle Rules

One year ago I requested: I'd be grateful if MT could provide the merest hint of a timescale. and still no sight or sound of what is fast becoming a deal-breaker for MT kit. We're now in the process of quoting for a rollout which must include IPv6 and are going to have to heavily caveat our proposal...
by NAB
Tue May 17, 2016 1:28 pm
Forum: Wireless Networking
Topic: CAP on a 751G-2HnD
Replies: 4
Views: 672

Re: CAP on a 751G-2HnD

Done a bit more testing. The problem seems to be with 751G-2HnD units as a 751U-2HnD provisions perfectly.
by NAB
Tue May 17, 2016 12:06 pm
Forum: Wireless Networking
Topic: CAP on a 751G-2HnD
Replies: 4
Views: 672

Re: CAP on a 751G-2HnD

I have just swapped out the 751G-2HnD with a 951Ui-2HnD and copied the configuration exactly.

The 951 works.

The 751 does not work.

I'll e-mail support.

Nicholas.
by NAB
Wed May 11, 2016 8:26 am
Forum: Wireless Networking
Topic: CAP on a 751G-2HnD
Replies: 4
Views: 672

Re: CAP on a 751G-2HnD

Hi, CAPsMan /caps-man configuration add channel.band=2ghz-b/g/n channel.frequency=2412 channel.width=20 name=cfg1 \ security.authentication-types=wpa2-psk security.encryption=aes-ccm \ security.passphrase=12345678 ssid=testing123 /caps-man interface add disabled=no l2mtu=1600 mac-address=D4:CA:6D:21...
by NAB
Tue May 10, 2016 12:07 am
Forum: Wireless Networking
Topic: CAP on a 751G-2HnD
Replies: 4
Views: 672

CAP on a 751G-2HnD

I've just spent two hours trying to get my head around CAP/CAPsMAN - I set up the configuration exactly as per the wiki page, but it simply refused to work: capsman.PNG Given I'd set up the SSID as "Testing" and the channel as "2412", it was clear that the RB simply wasn't being provisioned properly...
by NAB
Fri Jun 26, 2015 11:57 am
Forum: Announcements
Topic: Comments about RouterOS release schedule
Replies: 35
Views: 11085

Re: Comments about RouterOS release schedule

Back when I first started using ROS, MikroTik's attitude was "Our software is bug free and you should always be using the latest cutting edge version". The problem is that most people know that all software has bugs and MT's attitude made them a laughing stock in many circles. Over the years there h...
by NAB
Thu Jun 11, 2015 1:00 am
Forum: General
Topic: Winbox 3 RC
Replies: 639
Views: 123867

Re: Winbox 3 RC

Just move your session folder to existing location and all will be fixed. No session folder anywhere in sight. Winbox 3.0rc9 continues to work correctly in this regard. Atm you probably somehow deleted in in windows user files, and winbox doesn't have permisions to create anything there. Nope. Not ...
by NAB
Wed Jun 10, 2015 12:35 pm
Forum: General
Topic: Winbox 3 RC
Replies: 639
Views: 123867

Re: Winbox 3 RC

"Unable to create the folder 'sessions\'. The system cannot find the path specified."
Try the new "clear cache" button. Also, do you use Windows and a standard path?
Still get the same error and yes, standard Windows paths.
by NAB
Fri Jun 05, 2015 4:10 pm
Forum: General
Topic: Winbox 3 RC
Replies: 639
Views: 123867

Re: Winbox 3 RC

Ran 3.0rc12 for the first time, opened a session. Clicked 'X' to close session window and got the error message:

"Unable to create the folder 'sessions\'. The system cannot find the path specified."
by NAB
Sun Apr 26, 2015 1:51 pm
Forum: General
Topic: IPv6 Routing Mark in Firewall > Mangle Rules
Replies: 49
Views: 10762

Re: IPv6 Routing Mark in Firewall > Mangle Rules

Just to add a 'me too', we've managed to avoid needing this for a while, but now we do. I'd be grateful if MT could provide the merest hint of a timescale. Please? Pretty please? Pretty please with sugar on?
by NAB
Thu Apr 16, 2015 7:49 pm
Forum: General
Topic: v6.28 will be released this week!
Replies: 72
Views: 19014

Re: v6.28 will be released this week!

Moved router to 6.20 and everything works correctly. Move to 6.21 and later, problem comes back! I tried with both SIP ALG enabled and disabled on 6.21 and later, no differences. SIP and NAT do not work well together. We learned a long time ago never, ever, to run SIP over a NATted connection. When...
by NAB
Wed Feb 18, 2015 9:26 pm
Forum: General
Topic: No IPv6 link local (and no routing) on L2TP interface
Replies: 4
Views: 951

Re: No IPv6 link local (and no routing) on L2TP interface

Please make sure ipv6 package is enabled
Yes.
and than tunnel is up.
Yes.
Otherwise IPv6 link local should be generated properly.
Definitely isn't.
Contact support with support output file, if it does not work.
Will do.

Many thanks,
by NAB
Tue Feb 17, 2015 12:48 pm
Forum: General
Topic: No IPv6 link local (and no routing) on L2TP interface
Replies: 4
Views: 951

No IPv6 link local (and no routing) on L2TP interface

Hi all, Just a quick sanity check before I open a ticket with support. I have a mAP2n running ROS 6.27 which opens an L2TP tunnel to an LNS. The LNS pushes IPv6 down the tunnel. The mAP2n doesn't give the L2TP interface a link local address and adding any IPv6 routes just shows as the interface is u...
by NAB
Thu Feb 12, 2015 4:54 pm
Forum: General
Topic: Torrent
Replies: 43
Views: 9978

Re: Torrent

By the way, torrent did not include those non-standard packages anyway
Then I don't know what I've been downloading because the torrents I've got for 6.22, 6.23, 6.24 and 6.25 all include cm2 (as well as the netinstall-tile which doesn't appear to be on the download page).
by NAB
Thu Feb 12, 2015 2:24 pm
Forum: General
Topic: Torrent
Replies: 43
Views: 9978

Re: RouterOS v6.27 released

OK, but why do you need to download all the files every time by yourself? Why not make a script do it, and you will no longer need to come to the website to check for any new versions. Because I need to be absolutely sure that I have got everything so the output of a script would have to be double-...
by NAB
Thu Feb 12, 2015 1:55 pm
Forum: General
Topic: Torrent
Replies: 43
Views: 9978

Re: RouterOS v6.27 released

So now you have four clicks instead of one. I disagree. Previously it was : click all, click link, click download, click 'save' in torrent app. Click to drag and drop to archive. Now it is : Click 'mipsbe', click download combined package link, click download all package link, click download capsma...
by NAB
Thu Feb 12, 2015 1:24 pm
Forum: General
Topic: Torrent
Replies: 43
Views: 9978

Re: RouterOS v6.27 released

How is torrent related to what you asked for?
Because the ALL package was only available by torrent.
by NAB
Thu Feb 12, 2015 1:14 pm
Forum: General
Topic: Torrent
Replies: 43
Views: 9978

Re: RouterOS v6.27 released

But why has Mikrotik removed the all file torrent link? Because Mikrotik aren't end-users and have no idea why end-users may want this feature. I, for one, want a complete archive of every single version, including the Netinstall which is known to work with every single version. If I don't have the...
by NAB
Mon Jan 26, 2015 1:29 pm
Forum: General
Topic: Antivirus defs not updating on mikrotik 750
Replies: 7
Views: 1406

Re: Antivirus defs not updating on mikrotik 750

I believe it has to do with forwarding specific port on router
Why? Nothing you have said would indicate this as a cause of the problem.
by NAB
Wed Jan 14, 2015 3:38 pm
Forum: General
Topic: IPv6 RAs leaking out of VLANs - IPv6 unusable.
Replies: 5
Views: 1614

Re: IPv6 RAs leaking out of VLANs - IPv6 unusable.

Do any of your Ethernet ports have master-port set (aka, are they running in switch mode)? Ports ether18 to ether 24 all have ether17 as the master, but apart from that, no. There's no output from the "/interface ethernet switch ingress-vlan-translation export compact" command. If I remove ether18-...
by NAB
Wed Jan 14, 2015 12:04 pm
Forum: General
Topic: Antivirus defs not updating on mikrotik 750
Replies: 7
Views: 1406

Re: Antivirus defs not updating on mikrotik 750

Hello,

This is not a Mikrotik/RouterOS problem. I suggest you call a local IT consultant.
by NAB
Wed Jan 14, 2015 11:57 am
Forum: General
Topic: IPv6 RAs leaking out of VLANs - IPv6 unusable.
Replies: 5
Views: 1614

IPv6 RAs leaking out of VLANs - IPv6 unusable.

RouterOS: 6.24 Hardware: CRS125-24G-1S Firmware: 3.19 I have a problem with IPv6 RAs leaking out of VLANs. Consider the following configuration: /interface bridge add disabled=no name=bridge9 /interface vlan add disabled=no interface=ether17 name=vlan9 vlan-id=9 /interface bridge port add bridge=bri...
by NAB
Thu Jan 08, 2015 5:33 pm
Forum: General
Topic: openVPN p2pVPN between Tik and Pfsense
Replies: 3
Views: 1520

Re: openVPN p2pVPN between Tik and Pfsense

Hi,

What is your budget for this project?
by NAB
Thu Nov 13, 2014 10:50 pm
Forum: General
Topic: New forum look & feel
Replies: 64
Views: 8430

Re: New forum look & feel

The spacing's all wrong. The horizontal line shows the break between posts where everything's all crammed together and the arrowed area shows white space I didn't create which creates a false break between posts.

The whole thing's horribly clunky.
Capture.PNG
by NAB
Thu Nov 13, 2014 10:45 pm
Forum: General
Topic: New forum look & feel
Replies: 64
Views: 8430

Re: New forum look & feel

Not nice. Not at all nice.

My main bugbear is that posts take up too much space and it's difficult to see where one post ends and the next reply starts.
by NAB
Tue Sep 23, 2014 10:50 am
Forum: General
Topic: running VPN within VPN
Replies: 5
Views: 1409

Re: running VPN within VPN

Select it for what? You just make traffic to the SSTP end point route over the PPTP interface and then make all the other traffic route over the SSTP interface.
by NAB
Mon Sep 22, 2014 5:22 pm
Forum: General
Topic: port forward on a pppoe client
Replies: 1
Views: 811

Re: port forward on a pppoe client

Depending on what you mean and what you want to achieve, there are several ways of doing it.

Please provide (much) more information.
by NAB
Mon Sep 22, 2014 5:21 pm
Forum: Scripting
Topic: Tips
Replies: 1
Views: 550

Re: Tips

Do you have a question?
by NAB
Mon Sep 22, 2014 5:20 pm
Forum: General
Topic: running VPN within VPN
Replies: 5
Views: 1409

Re: running VPN within VPN

Yes it's possible - Just route your SSTP tunnel down the PPTP interface.
Not sure I'd recommend it though!
by NAB
Wed Sep 17, 2014 4:39 pm
Forum: Beginner Basics
Topic: l2tp Client not reachable
Replies: 3
Views: 868

Re: l2tp Client not reachable

You need to ensure that you are routing the correct networks up and down the L2TP link. Do a packet trace or watch the network to see where your packets are going. You will probably find they're not going where you want!
by NAB
Wed Sep 17, 2014 4:37 pm
Forum: General
Topic: Firefox, Chrome - can't start https google services
Replies: 2
Views: 959

Re: Firefox, Chrome - can't start https google services

1) See which firewall rules are being hit.
2) Look at a packet trace
3) Remember that you can only proxy HTTP, not HTTPS.
by NAB
Wed Sep 17, 2014 11:20 am
Forum: Forwarding Protocols
Topic: Suggestions for hub/spoke routing
Replies: 4
Views: 1292

Re: Suggestions for hub/spoke routing

When you say 'connecting back to A', how is this done? Physical cable/VPN/ISP?
by NAB
Wed Sep 17, 2014 11:18 am
Forum: General
Topic: reset all counters
Replies: 1
Views: 691

Re: reset all counters

You can't undo resetting counters. Not possible.
by NAB
Wed Sep 17, 2014 11:16 am
Forum: General
Topic: certificate problem 5.26
Replies: 2
Views: 721

Re: certificate problem 5.26

This is not an error. The browsers are simply stating that they cannot verify that the site is who it says it is. Just click through the warnings - the traffic will still be encrypted. If you really don't want to see this message, you will need to purchase a certificate from a trusted vendor (Google...
by NAB
Wed Sep 17, 2014 11:13 am
Forum: General
Topic: suspicious activity is seen in Torch after DOS attacks
Replies: 1
Views: 487

Re: suspicious activity is seen in Torch after DOS attacks

You're seeing link-local traffic. Nothing to worry about.
by NAB
Wed Sep 17, 2014 11:11 am
Forum: Beginner Basics
Topic: Redirect to website
Replies: 3
Views: 794

Re: Redirect to website

we hosted our own website and now we moved it to clouds No. You moved it to somebody else's computer. 'The clouds' don't exist. Somebody else's computer under somebody else's control. So when you go to the domain on our network you are redirected to our old server, all I have right now is a winbox ...
by NAB
Wed Sep 17, 2014 10:46 am
Forum: RouterBOARD hardware
Topic: On the right is the SB6120 modem
Replies: 1
Views: 806

Re: On the right is the SB6120 modem

I am sorry, but that makes no sense.
by NAB
Wed Sep 17, 2014 10:45 am
Forum: General
Topic: How to backup Mikrotik router board 1000
Replies: 1
Views: 546

Re: How to backup Mikrotik router board 1000

To fully recover, you need two things: 1) The ROS software from http://www.mikrotik.com/download for the version running on the RB. 2) A backup image taken with '/system backup save name=BACKUPFILENAME' Optionally, I'd also go for: 3) An export taken with '/export verbose file=EXPORTFILENAME' Then i...
by NAB
Wed Sep 17, 2014 12:15 am
Forum: General
Topic: IP-Scan Not Running
Replies: 1
Views: 843

Re: IP-Scan Not Running

I suggest you contact MikroTik support and send a supout file.
by NAB
Wed Sep 17, 2014 12:14 am
Forum: General
Topic: Possible "Stall" Bug
Replies: 3
Views: 930

Re: Possible "Stall" Bug

Does it start working again if you disable and then enable the interface?
by NAB
Wed Sep 17, 2014 12:13 am
Forum: General
Topic: Routing between client pptp
Replies: 8
Views: 1471

Re: Routing between client pptp

Do you have a question?
by NAB
Wed Sep 17, 2014 12:12 am
Forum: General
Topic: Loop Ip
Replies: 2
Views: 685

Re: Loop Ip

I am not sure I understand you. Please explain exactly what you mean.
by NAB
Wed Sep 17, 2014 12:12 am
Forum: General
Topic: Config Review
Replies: 2
Views: 577

Re: Config Review

There are a number of consultants here who would be more than happy to review your configuration. I suggest you state how much you are willing to offer and see who's interested.
by NAB
Tue Sep 16, 2014 4:13 pm
Forum: RouterBOARD hardware
Topic: Map2n + Branding Maker
Replies: 2
Views: 1184

Re: Map2n + Branding Maker

This could be related to the 'incorrect path' problem I found here - http://forum.mikrotik.com/viewtopic.php?f=2&t=88983
by NAB
Tue Sep 16, 2014 4:11 pm
Forum: RouterBOARD hardware
Topic: On the right is the SB6120 modem
Replies: 1
Views: 806

Re: On the right is the SB6120 modem

Do you have a question?
by NAB
Tue Sep 16, 2014 4:10 pm
Forum: Beginner Basics
Topic: Change the way Mac Idriss ethers Almaekerotk 1100
Replies: 1
Views: 537

Re: Change the way Mac Idriss ethers Almaekerotk 1100

/interface ethernet set [find default-name=ether1] mac-address=01:02:03:04:05:06
by NAB
Thu Sep 11, 2014 5:55 pm
Forum: Wireless Networking
Topic: How to unlock Telstra WiFi 4G (Netgear 782s)
Replies: 0
Views: 870

Re: How to unlock Telstra WiFi 4G (Netgear 782s)

This is a board for Mikrotik products.
by NAB
Thu Sep 11, 2014 5:38 pm
Forum: Scripting
Topic: Import files into /system script
Replies: 1
Views: 757

Re: Import files into /system script

There are a couple of ways of doing it (wrap them in a script which adds them, or do a HTTP GET to pull them down and then store them). Neither are easy/convenient and both will require yet more scripting!
by NAB
Thu Sep 11, 2014 12:57 pm
Forum: Beginner Basics
Topic: DHCP server always red,Please Help --- solved
Replies: 3
Views: 17751

Re: DHCP server always red,Please Help

wlan2 doesn't have an IP address.
by NAB
Thu Sep 11, 2014 7:40 am
Forum: General
Topic: Routing +Economics Question
Replies: 1
Views: 427

Re: Routing +Economics Question

We have a few cell/data-only modems with the local telco which are servicing some small remote networks. Are these modems in the telco's premesis, at a customer's site or somewhere else? a) place an appliance with each modem, cost: price of hardware + annual license fee Licence fee? Who would this ...
by NAB
Thu Sep 11, 2014 7:36 am
Forum: Beginner Basics
Topic: Help !! assign public ip range for single Interface
Replies: 1
Views: 506

Re: Help !! assign public ip range for single Interface

Please could you give an example of how you would want to set this up. Please use RFC5737 address space so we can see exactly what IPs you want from which networks where.
by NAB
Thu Sep 11, 2014 7:32 am
Forum: Scripting
Topic: external ip address block
Replies: 2
Views: 861

Re: external ip address block

Short answer: No. You cannot stop any site from seeing your external IP address and, possibly, showing it to the user. You can block 'whatismyip.com' in several ways: * Add a static DNS entry which points nowhere * Add firewall rules if you know its IP addresses Both methods have disadvantages and/o...
by NAB
Thu Sep 11, 2014 7:25 am
Forum: General
Topic: User time window
Replies: 2
Views: 662

Re: User time window

Permit the traffic between 1700-2000 and then block all traffic from that IP outside of these times. /ip firewall filter add \ chain=forward \ out-interface=WAN \ src-address=192.0.2.0/24 \ time=17h-20h,sun,mon,tue,wed,thu,fri,sat \ action=accept add \ chain=forward \ out-interface=WAN \ src-address...
by NAB
Thu Sep 11, 2014 7:13 am
Forum: General
Topic: Blocking internal traffic between 2 DHCP networks
Replies: 3
Views: 815

Re: Blocking internal traffic between 2 DHCP networks

If the firewall rule isn't working, the chances are it's because either you specified the rule incorrectly or the traffic is not being routed through the RB. Please can you post output of the following commands:

/ip address print
/ip route print
/ip dhcp-server print
/ip dhcp-server network print
by NAB
Thu Sep 11, 2014 7:08 am
Forum: General
Topic: DHCP Server - Block Access
Replies: 1
Views: 2985

Re: DHCP Server - Block Access

DHCP is not an ongoing process - it happens only when an IP is required or must be renewed. Therefore any actions such as block will only take place at the time the DHCP request is received.
To block a client, you must add a firewall rule to block either its IP or MAC.
by NAB
Thu Sep 11, 2014 7:05 am
Forum: General
Topic: SSTP tunnel does not detect connection failure
Replies: 6
Views: 1215

Re: SSTP tunnel does not detect connection failure

We're running straight L2TP where encryption isn't required and L2TP/IPSec where it is. Works flawlessly.
by NAB
Wed Sep 10, 2014 3:29 pm
Forum: General
Topic: Firewall rule filtered on vpn connected clients
Replies: 1
Views: 563

Re: Firewall rule filtered on vpn connected clients

In the PPP profile, add the names of input and output filters you want to use. Then in Firewall/filter, add rules to these chains.
by NAB
Wed Sep 10, 2014 3:23 pm
Forum: General
Topic: SSTP tunnel does not detect connection failure
Replies: 6
Views: 1215

Re: SSTP tunnel does not detect connection failure

I have had some very bad experiences using SSTP (tunnels staying up when they shouldn't be and massive packet loss).

I would strongly recommend that you avoid SSTP like the plague if at all possible.
by NAB
Wed Sep 10, 2014 2:28 pm
Forum: General
Topic: mAP2n - WebFig saving skins to wrong directory.
Replies: 1
Views: 900

mAP2n - WebFig saving skins to wrong directory.

Hi, Interesting problem... I have some mAP2n's here I'm wanting to use for a project. This involves implementing a WebFig skin. 1) Taking a mAP2n with no configuration, clicking 'save' under WebFig skin designer does nothing. The skin is not saved. 2) If I FTP into the mAP2n and create a directory '...
by NAB
Fri Aug 15, 2014 3:02 pm
Forum: General
Topic: IP telephony
Replies: 6
Views: 2321

Re: IP telephony

As somebody whose business uses ROS extensively in its VoIP network infrastructure, may I ask exactly what feature(s) you are looking for?
by NAB
Tue Jun 24, 2014 11:14 pm
Forum: RouterBOARD hardware
Topic: RB750 hardware failure
Replies: 5
Views: 2663

Re: RB750 hardware failure

After a couple tries i noticed a very very thin line of smoke.
Once the components have released their magic smoke, there is no option but to return the board to your supplier (assuming it's under warranty) or throw it away.
by NAB
Sun Apr 06, 2014 11:40 am
Forum: General
Topic: Remote Access to 3G with Internal IP Address
Replies: 4
Views: 1438

Re: Remote Access to 3G with Internal IP Address

There is no such thing as an 'external' or 'internal' IP address. An IP address is an IP address. Whether or not it is publically routable is a different matter. I am assuming that you mean the ISP is supplying an IP address which is not routable (probably in RFC1918 address space) and you need to b...
by NAB
Sat Apr 05, 2014 11:18 pm
Forum: General
Topic: pleaaaaaaas help
Replies: 1
Views: 530

Re: pleaaaaaaas help

If the counters have been reset, they've been reset - they cannot be restored. This wouldn't remove any users though, so perhaps you have done something else?
by NAB
Sat Apr 05, 2014 11:16 pm
Forum: General
Topic: Remote Access to 3G with Internal IP Address
Replies: 4
Views: 1438

Re: Remote Access to 3G with Internal IP Address

I am afraid that I do not understand a) what you are trying to achieve, and b) what your problem is. Perhaps you could post a network diagram?
by NAB
Sat Apr 05, 2014 11:15 pm
Forum: General
Topic: VLAN tagging and forwarding - Help needed!
Replies: 8
Views: 1295

Re: VLAN tagging and forwarding - Help needed!

Plug the Linksys into ether1 and the modem into ether2, then run the following commands: /interface bridge add l2mtu=1600 name=bridge1 /interface vlan add interface=ether2 l2mtu=2286 name=vlan2_100 vlan-id=100 /interface bridge port add bridge=bridge1 interface=ether1 add bridge=bridge1 interface=vl...
by NAB
Sat Apr 05, 2014 11:03 pm
Forum: General
Topic: RB912UAG-2HPnD and Sierra Wireless MC8780
Replies: 5
Views: 1652

Re: RB912UAG-2HPnD and Sierra Wireless MC8780

OK. I have definitely confirmed that despite the compatibility page on the wiki ( http://wiki.mikrotik.com/wiki/Supported_Hardware ) stating that the card works, the MC8780 DOES NOT WORK on RB912 boards as follows: ROS 5.x - Works if wireless is disabled. ROS 6.x - Won't work at all. I requested tha...
by NAB
Sat Apr 05, 2014 10:59 pm
Forum: General
Topic: Dell 5600 WWAN - Gobi1000 - Drivers
Replies: 1
Views: 1700

Dell 5600 WWAN - Gobi1000 - Drivers

Hi all, I have a large project to roll out and am having a problem finding a reliable supply of miniPCIexpress GSM cards which work on RB912s. I have been given a sample of Dell 5600 Gobi1000 cards, which RouterOS detects as: [admin@Test] > /system resource usb print # DEVICE VENDOR NAME SPEED 0 1:1...
by NAB
Wed Mar 12, 2014 12:46 pm
Forum: General
Topic: Adding certain DNS answers to an address list, switch mode!
Replies: 4
Views: 1121

Re: Adding certain DNS answers to an address list, switch mo

Any ideas on that part? :)
I guess I'd have to ask what it is you're trying to achieve.
by NAB
Wed Mar 12, 2014 11:19 am
Forum: General
Topic: RB912UAG-2HPnD and Sierra Wireless MC8780
Replies: 5
Views: 1652

Re: RB912UAG-2HPnD and Sierra Wireless MC8780

I shipped 12 units out to my customer yesterday running 5.26 and with wireless disabled. This will do for the moment - I can stall the customer on the promise of a firmware update, but I do need to get this fixed - the end user requires 50 units a month for the next two years (if everything goes to ...
by NAB
Wed Mar 12, 2014 11:14 am
Forum: Beginner Basics
Topic: Routerboard 1100 Webfig
Replies: 1
Views: 445

Re: Routerboard 1100 Webfig

Now when i go to the web interface I see the old Interface pre-Webfig era but with broken images. Is there any way I can make the new Web interface the default web interface. 1 - Don't use webfig. It will break things in strange ways. 2 - If you must use webfig, try: /system routerboard upgrade /fi...
by NAB
Wed Mar 12, 2014 11:09 am
Forum: Beginner Basics
Topic: Winbox behind firewall
Replies: 3
Views: 1138

Re: Winbox behind firewall

Here the topology (pFsense <> squid3) > my computer (where i use winbox to connect to remote 750gl routerbord) Sorry. That makes no sense. Do you mean: 750GL <--> Internet <--> pfsense <--> Squid3 <--> Computer If your only access to the Internet is through a squid proxy, then you won't be able to ...
by NAB
Wed Mar 12, 2014 11:06 am
Forum: General
Topic: need help, how to make schedule queue?
Replies: 1
Views: 446

Re: need help, how to make schedule queue?

I want to make bandwidth unlimited from 05:01 o'clock to 07:00 o'clock...
Use the time parameter in the mangle rule to ensure that the packets are appropriately marked at the correct time of day. Then queue based on packet marks.
by NAB
Wed Mar 12, 2014 11:04 am
Forum: Scripting
Topic: tool fetch timeout
Replies: 2
Views: 2950

Re: tool fetch timeout

is it possible to add timeout option to fetch tool.
This is something I would find useful. Ideally there should be three timeouts available: DNS lookup, connection and completion.
by NAB
Tue Mar 11, 2014 9:27 pm
Forum: General
Topic: RB912UAG-2HPnD and Sierra Wireless MC8780
Replies: 5
Views: 1652

Re: RB912UAG-2HPnD and Sierra Wireless MC8780

Right. Having done some testing.... MC8780 with ROS 6.10 - Doesn't work at all. Attempting to create a supout file while the port is marked as invalid fails and the board reboots. MC8780 with ROS 5.26 - Occasionally works with WiFi enabled, but when it stops working, it never starts again, even afte...
by NAB
Tue Mar 11, 2014 4:56 pm
Forum: General
Topic: RB912UAG-2HPnD and Sierra Wireless MC8780
Replies: 5
Views: 1652

Re: RB912UAG-2HPnD and Sierra Wireless MC8780

are you sure that this modem works ok also in v5.26 with wireless card enabled?
I have one board it runs fine on, but another doesn't. Disabling wireless does seem to cure the problem though. Is this a known error? Can I not run the MC8780 and WiFi at the same time?
by NAB
Tue Mar 11, 2014 3:53 pm
Forum: General
Topic: RB912UAG-2HPnD and Sierra Wireless MC8780
Replies: 5
Views: 1652

RB912UAG-2HPnD and Sierra Wireless MC8780

Hi, Got a problem with the RB912UAG-2HPnD boards, Sierra Wireless MC8780 cards and ROS 6.x. Under ROS 6.10, every now and again, I can bring up a ppp-client interface on the MC8780, but most of the time all I get is: ppp-out1: resetting link... - could not acquire serial port The port itself is show...
by NAB
Mon Mar 10, 2014 2:46 pm
Forum: General
Topic: issues with ping , routing marks
Replies: 3
Views: 1040

Re: issues with ping , routing marks

Can any one help me with this ?
Please post the relevant portion of your configuration.
by NAB
Mon Mar 10, 2014 2:45 pm
Forum: General
Topic: Adding certain DNS answers to an address list, switch mode!
Replies: 4
Views: 1121

Re: Adding certain DNS answers to an address list, switch mo

it has to be done as a "switch" This is not possible. Any traffic travelling from port to port where those ports are set to switch will not travel through the CPU and so therefore cannot be subject to any rules. There is a way of doing what you require by using a bridge. Create a bridge. Put the tw...
by NAB
Sat Mar 08, 2014 2:18 am
Forum: Beginner Basics
Topic: PPPoE - firewall rules - help
Replies: 4
Views: 1783

Re: PPPoE - firewall rules - help

in-interface=unknown and this is bad solution..
Yes - sorry, my mind was elsewhere and you are correct - for you this is not a good solution. Instead, create a new PPP profile for each connection and use the 'incoming filter' to do the check/drop.
by NAB
Sat Mar 08, 2014 2:14 am
Forum: Scripting
Topic: IP Addressing Script
Replies: 7
Views: 1115

Re: IP Addressing Script

Yeee-ouch. That's nasty and I'm surprised it works at all.
by NAB
Sat Mar 08, 2014 2:11 am
Forum: General
Topic: vlan translation
Replies: 7
Views: 1444

Re: vlan translation

my vision Unless I'm really misunderstanding you, I can't see why you need to complicate things by using some sort of translation. Just create the appropriate VLAN interfaces on each of the physical ethernet interfaces and use them - ROS will then tag/de-tag according to which interface the traffic...
by NAB
Sat Mar 08, 2014 2:08 am
Forum: General
Topic: Netwatch script
Replies: 13
Views: 2254

Re: Netwatch script

Can you point me in the right direction on the variables for the name in the comments section? I can't find any info on that at all. Try: [admin@MikroTik] > /tool netwatch add host=10.0.1.20 comment="Printer" interval=1m down-script=printerdown [admin@MikroTik] > :put [/tool netwatch get value-name...
by NAB
Sat Mar 08, 2014 1:59 am
Forum: General
Topic: Mikrotik not allowing me to use a new internet connection
Replies: 5
Views: 712

Re: Mikrotik not allowing me to use a new internet connectio

Hi, when I changed the address to 203.153.240.26/30, the network below changes to 203.153.240.24, this IP does not exist, but in the route list it shows up as reachable. You said that the subnetmask was 255.255.255.252. This equates to 30 bits. This means that your network address is 203.153.240.24...
by NAB
Fri Mar 07, 2014 12:18 pm
Forum: Beginner Basics
Topic: Need help with first 951G Install
Replies: 5
Views: 1204

Re: Need help with first 951G Install

Just received my new RouterBOARD 951G-2HnD. Am very confused. From reading your post, I too am very confused. I think the thing you need to get clear in your head is what, exactly do you expect/want the RouterBoard to do? From your description, it seems that you just want to use it as a switch - if...
by NAB
Thu Mar 06, 2014 5:14 pm
Forum: General
Topic: VPN
Replies: 3
Views: 811

Re: VPN

Please advice
What do you want to know?
by NAB
Thu Mar 06, 2014 4:58 pm
Forum: General
Topic: Netwatch script
Replies: 13
Views: 2254

Re: Netwatch script

Ok, can you show me a similar script so I can learn from it and try to reverse engineer it? In a word, no - I'd pretty much have to write it for you. However, the wiki pages on scripting should give you enough information to be able to write it yourself. If you can't grok it from them, then I am af...
by NAB
Thu Mar 06, 2014 12:28 pm
Forum: Beginner Basics
Topic: PPPoE - firewall rules - help
Replies: 4
Views: 1783

Re: PPPoE - firewall rules - help

0 ;;; access-list eth1 chain=forward action=accept src-address=x.y.z.160/27 in-interface=ether1 1 chain=forward action=accept out-interface=ether1 chain=forward action=drop in-interface=ether1 You won't see the data on etherX - you need to be using the PPPoE interface not the physical Ethernet inte...
by NAB
Thu Mar 06, 2014 12:07 pm
Forum: Beginner Basics
Topic: cannot ping management interface via trunk port
Replies: 1
Views: 1343

Re: cannot ping management interface via trunk port

ETH2 is in a bridge. Why? I connect a ubiquiti toughswitch to the ETH2 physical interface on the mikrotik and the UBNT cannot ping the Mikrotik and the Mikrotik cannot ping the UBNT toughswitch. Toughswitch has the management interface configured and tagged with the proper vlan. Which VLAN? What IP...
by NAB
Thu Mar 06, 2014 11:57 am
Forum: General
Topic: Help please
Replies: 3
Views: 475

Re: Help please

i have 2 ppoe accounts, i succeed to make a ppoe server from the first account, but now i need to make 2 ppoe servers, so each server provide internet from diffrent accounts.
I am afraid I have no idea what you mean. Maybe it would help if you could draw a network diagram.
by NAB
Thu Mar 06, 2014 11:54 am
Forum: General
Topic: PPPoE multilink
Replies: 4
Views: 637

Re: PPPoE multilink

Can anyone help me
It is very unlikely that anybody will be able to guess what your configuration is. I don't think you will get any sensible answers until you provide sample configurations, debug/log messages and possibly a network diagram.
by NAB
Thu Mar 06, 2014 11:52 am
Forum: Beginner Basics
Topic: RB2011 Setup Help
Replies: 2
Views: 701

Re: RB2011 Setup Help

my setup is
Sorry. That's way too confusing. I am afraid that I have no idea what you are trying to achieve. Perhaps you could provide a network diagram?
by NAB
Thu Mar 06, 2014 11:48 am
Forum: Scripting
Topic: IP Addressing Script
Replies: 7
Views: 1115

Re: IP Addressing Script

Hi, I am trying to come up with a script that will get whatever the IP address is on Port 1 (dynamically assigned by my ISP) and then assign this same address to the device I have on Port 5. You can't have the same address on two different devices (at least, this is a very very very wrong way of do...
by NAB
Thu Mar 06, 2014 11:47 am
Forum: General
Topic: multi WAN NAT for different LANs
Replies: 5
Views: 1854

Re: multi WAN NAT for different LANs

What should I do to make the setup work.
Mangle rules, mark connections and routes. Then route according to the routing marks. This should all be covered in an MTCNA course.
by NAB
Thu Mar 06, 2014 11:44 am
Forum: General
Topic: User details database can be use with static ip
Replies: 1
Views: 533

Re: User details database can be use with static ip

User details database and postpaid billing can be use with static ip ??
I am afraid you haven't given enough information for us to answer your question. I suggest detailing exactly what you want to achieve (preferably with some network diagrams) and somebody may be able to help.
by NAB
Thu Mar 06, 2014 11:42 am
Forum: Scripting
Topic: Ping results to log
Replies: 2
Views: 2705

Re: Ping results to log

Is that correct? Because I got different result with "flood-ping" and "ping" from terminal.
The code looks fine to me. I am pretty sure that avg-rtt is only available from flood-ping and I would certainly use flood-ping.
by NAB
Thu Mar 06, 2014 11:35 am
Forum: General
Topic: vlan translation
Replies: 7
Views: 1444

Re: vlan translation

My ISP gives me vlan 372, but I have a vlan with same vlan id. Cisco has a vlan translation technology. Does Mikrotik has same technology? Not sure what you're trying to achieve here - are you saying that you want to run your own VLAN tags to your ISP or just that you run your own VLAN tags on the ...
by NAB
Thu Mar 06, 2014 11:32 am
Forum: General
Topic: Netwatch script
Replies: 13
Views: 2254

Re: Netwatch script

Is this something that can be done within the Mikrotik OS?
Yes. Have each netwatch run a unique script on up/down which sets some variables (name, up/down, date/time etc. etc.), then each of these scripts calls one script which does the e-mailing. Easy-peasy.
by NAB
Thu Mar 06, 2014 11:30 am
Forum: General
Topic: Mikrotik not allowing me to use a new internet connection
Replies: 5
Views: 712

Re: Mikrotik not allowing me to use a new internet connectio

IP Address: 203.153.240.26
Subnet Mask: 255.255.255.252
In my address list I have added a new address:
address: 203.153.240.26/24
Shouldn't this be
address: 203.153.240.26/30
Also, are you NATting (src-nat) traffic egressing on ether1?
by NAB
Thu Mar 06, 2014 11:19 am
Forum: General
Topic: RADIUS and service types...
Replies: 0
Views: 417

RADIUS and service types...

I have a problem. We have a RB which acts as a concentrator/LNS and uses RADIUS. We have some people connecting who should only use L2TP, some who may use SSTP or L2TP and some who may use PPTP Using RADIUS, is there a way of limiting the service type permitted for a specific user? I've done a load ...
by NAB
Thu Feb 20, 2014 11:32 pm
Forum: General
Topic: MUM Europe 2014 - Italy, Venice, February 20-21
Replies: 146
Views: 59167

Re: MUM Europe 2014 - Italy, Venice, February 20-21

Schedule is only for order of events, the time changes all the time, because people don't stick to assigned length of presentations. And this is something which, in my humble opinion, needs addressing. Today, for instance, a number of the presenters were very disrespectful of both the audience's ti...
by NAB
Fri Nov 15, 2013 7:20 pm
Forum: General
Topic: MUM Italy - The British contingent...
Replies: 3
Views: 799

Re: MUM Italy - The British contingent...

I'm sorry to hear that. I would have imagined that Venice is a popular tourist destination. It is and there are direct flights (although not, sadly, from my local airport). I think, perhaps, that the school holidays have pushed the prices up well beyond what we have paid for flights into Eastern Eu...
by NAB
Wed Nov 13, 2013 3:46 pm
Forum: General
Topic: MUM Italy - The British contingent...
Replies: 3
Views: 799

MUM Italy - The British contingent...

OK, so flights and hotel booked - the flights are at nasty times, are expensive and involve changing in Paris - Venice is surprisingly difficult to get to from the UK. It also doesn't help that next year's MUM takes place during the UK school holidays :-(

Anyway, who else is going from the UK?
by NAB
Wed Nov 13, 2013 2:50 pm
Forum: General
Topic: MUM Italy ticket prices - USD30 or USD50?
Replies: 1
Views: 377

MUM Italy ticket prices - USD30 or USD50?

Hi,

The page http://mum.mikrotik.com/2014/IT/info says "If you wish to also receive a free RouterOS license, and free lunch - Entry price is $30 (US)", however on booking, it asks for "50 USD".

Which is correct?

Cheers.
by NAB
Tue Nov 12, 2013 12:17 am
Forum: General
Topic: CRS default configuration
Replies: 4
Views: 1133

CRS default configuration

Just received a CRS125-24G-1S.

When 'remove configuration' is selected from the pop-up window that appears in Winbox, the default configuration is not removed.

When '/system reset-configuration no-defaults=yes' is run, the box returns without the default configuration as one would expect.
by NAB
Wed Sep 04, 2013 3:18 pm
Forum: General
Topic: 6.3 Released
Replies: 95
Views: 20272

Re: 6.3 Released

I seem to have a problem with Netinstall 6.3 on Windows 8. When I select either the configuration script or the package source directory, neither the "browse for folder" and "select script" dialog windows show mapped network drives - that is, I can see drive C: (boot/OS drive) and E: (Blu-Ray), but ...
by NAB
Mon Dec 10, 2012 12:42 pm
Forum: General
Topic: How do I push the DNS section into DHCPv6
Replies: 4
Views: 810

Re: How do I push the DNS section into DHCPv6

I try to find a textbox which can fill with IPv6 DNS What, exactly, do you want to achieve? If you want to tell ROS about IPv6 DNS servers then this is done as follows: /ip dns set allow-remote-requests=yes cache-max-ttl=1w cache-size=2048KiB \ max-udp-packet-size=512 servers=\ 8.8.4.4,8.8.8.8,2001...
by NAB
Tue Nov 20, 2012 1:19 pm
Forum: General
Topic: [solved] L2TP/IPSec client to site configuration
Replies: 6
Views: 1152

Re: [ask] L2TP/IPSec client to site configuration

is it necessary? because i don't have any privilege to do that. :(
4.3 is incredibly old. Assuming that you have read the wiki section on IPSec and have set your configuration correctly, then this would be my first course of action.
by NAB
Tue Nov 20, 2012 1:16 pm
Forum: General
Topic: Panasonic behind Mikrotik... SIP
Replies: 7
Views: 4137

Re: Panasonic behind Mikrotik... SIP

In packets i see internal IP of Panasonic, i need to change it to external ip The PBX/server they are registering to may be able to flag registrations as from a NATted source. Asterisk, for example, lets you state "nat=yes" in sip.conf in which case the address within the SIP packets is ignored in ...
by NAB
Mon Nov 19, 2012 12:01 pm
Forum: General
Topic: Panasonic behind Mikrotik... SIP
Replies: 7
Views: 4137

Re: Panasonic behind Mikrotik... SIP

sip is such a terrible service when mixed with NAT As a VoIP telco, I have to agree. Don't expect it to work. Expect niggles, glitches and strange things. Personally, I am sick to the back teeth of telecoms companies installing systems without having the first clue how the Internet works... That ha...
by NAB
Sat Nov 17, 2012 12:20 pm
Forum: General
Topic: route 80 traffic
Replies: 1
Views: 501

Re: route 80 traffic

Do you any examples how to mark port 80 (http) to 2nd ISP.
The Wiki is your friend. Start with http://wiki.mikrotik.com/wiki/Manual:IP ... ng_packets and then have a look at routing.
by NAB
Sat Nov 17, 2012 12:16 pm
Forum: General
Topic: Use Mikrotik RouterOS to block sites.
Replies: 2
Views: 785

Re: Use Mikrotik RouterOS to block sites.

Is there a way we can use mikrotik router OS as a solution to this as they are already using it as a router? Maybe block the sites based on IP addresses of the LAN users as they all use static IPs.
Yes. That's exactly what I'd do. Address lists are your friend.
by NAB
Fri Nov 16, 2012 5:35 pm
Forum: General
Topic: MUM 2013 - The British Contingent
Replies: 15
Views: 3502

Re: MUM 2013 - The British Contingent

Easyjet
Travelled Easyjet every other weekend for three years when I worked in Zurich. Swore I'd never fly with them again!
by NAB
Fri Nov 16, 2012 3:47 pm
Forum: Beginner Basics
Topic: PPPOE
Replies: 7
Views: 1326

Re: PPPOE

I am sorry - I completely misread your initial post. For some strange reason I got it into my head that you wanted to run two PPPoE sessions on on interface. Doh! Now that I've read it properly, what you want to do is a piece of cake - in fact it's what we I do at home right now. You just plug your ...
by NAB
Fri Nov 16, 2012 3:24 pm
Forum: General
Topic: European MUM 2013: Croatia!
Replies: 51
Views: 17895

Re: European MUM 2013: Croatia!

If any Brits are planning on going, see this forum topic.
by NAB
Fri Nov 16, 2012 2:57 pm
Forum: General
Topic: MUM 2013 - The British Contingent
Replies: 15
Views: 3502

Re: MUM 2013 - The British Contingent

OK. I'm all booked up now.

Flying with Croatian Airlines from Heathrow. Out on the 13th at 1050 (OU491) and back on the 16th at 1435 (OU492).

I'll be driving from Warwick to Heathrow following this route, so if anybody wants a lift, just shout.
by NAB
Fri Nov 16, 2012 1:58 pm
Forum: General
Topic: MUM 2013 - The British Contingent
Replies: 15
Views: 3502

Re: MUM 2013 - The British Contingent

Announced now.

The first MUM in Croatia (Zagreb), March 14-15, 2013.

Hotel is the Sheraton in the centre.

http://www.tripadvisor.co.uk/Hotel_Revi ... agreb.html
by NAB
Fri Nov 16, 2012 1:38 pm
Forum: The Dude
Topic: Pay for DUDE ?
Replies: 19
Views: 5437

Re: Pay for DUDE ?

I think they should charge for The Dude. Why? At the moment, The Dude is a loss-leader for other MT products since it is so tightly integrated/bound. If you've got a The Dude installation, then surely you're more likely to buy MT products rather than a competitor's? If there was a licence charge, w...
by NAB
Fri Nov 16, 2012 12:17 pm
Forum: General
Topic: You cannot make another post so soon after your last.
Replies: 4
Views: 895

Re: You cannot make another post so soon after your last.

Many thanks for the speedy response.
by NAB
Fri Nov 16, 2012 11:54 am
Forum: Wireless Networking
Topic: Access Point Monitoring
Replies: 1
Views: 679

Re: Access Point Monitoring

Have a look at The Dude (MT's own monitoring tool) or, if you want something bigger and better (and significantly more difficult to configure), Nagios.
by NAB
Fri Nov 16, 2012 11:51 am
Forum: General
Topic: You cannot make another post so soon after your last.
Replies: 4
Views: 895

Re: You cannot make another post so soon after your last.

This was done to prevent spamming bots?
Indeed. Hence the request to lower (or remove) this limit once somebody has passed the Turing test!
by NAB
Fri Nov 16, 2012 11:49 am
Forum: Forwarding Protocols
Topic: Problem in forwarding port80 when mangle rule is enabled
Replies: 1
Views: 999

Re: Problem in forwarding port80 when mangle rule is enabled

my port80 forwarding(hair pin code)
You forgot to attach your code. I don't think anybody here is psychic, so you're probably not going to get any help unless you can post details of your configuration!
by NAB
Fri Nov 16, 2012 11:47 am
Forum: General
Topic: Same network on different interfaces
Replies: 2
Views: 795

Re: Same network on different interfaces

Somebody could spend a while going through all this with you, but there are better ways of doing things - what you are trying is definitely non-standard!

Do you mind if I ask why you want to use the same address space over all the interfaces and why you can't do it any other way?
by NAB
Fri Nov 16, 2012 11:44 am
Forum: General
Topic: You cannot make another post so soon after your last.
Replies: 4
Views: 895

You cannot make another post so soon after your last.

Having a few free moments, I thought I'd have a look at some of the unanswered posts. Unfortunately, I keep getting stymied by the "You cannot make another post so soon after your last." limit on postings. Is there any way this limit can be lowered for, say, people who've posted more than n times, o...
by NAB
Fri Nov 16, 2012 11:40 am
Forum: Beginner Basics
Topic: PPPOE
Replies: 7
Views: 1326

Re: PPPOE

I suspect that you're not going to be able to do that. If one PPPoE connection is to your ISP (DSL), where is the second one connected?
by NAB
Fri Nov 16, 2012 11:38 am
Forum: Forwarding Protocols
Topic: How to route Vlans
Replies: 1
Views: 909

Re: How to route Vlans

How can I route all those vlans on my mikrotik router? VLAN interfaces are (to all intents and purposes) treated exactly the same as physical interfaces. This means you have to set things up exactly as though you had a cabled connection, so 1) IP addresses/networks defined on the VLAN interfaces. 2...
by NAB
Fri Nov 16, 2012 11:34 am
Forum: General
Topic: NTP
Replies: 2
Views: 483

Re: NTP

After upgrading to 5.21 lost NTP server
What does this mean? Can you show the output of:
/system package print
/system ntp export
/system ntp client print
/system clock print
by NAB
Fri Nov 16, 2012 11:28 am
Forum: General
Topic: How can be excluded a site from Web proxy Redirect Rule ?
Replies: 6
Views: 2701

Re: How can be excluded a site from Web proxy Redirect Rule

Something like the following should do the trick: /ip firewall address-list add address=203.0.113.0/24 disabled=no list=donotproxy add address=198.51.100.0/24 disabled=no list=donotproxy /ip firewall nat add action=redirect chain=dstnat disabled=no dst-address-list=!donotproxy \ dst-port=80 protocol...
by NAB
Fri Nov 16, 2012 11:11 am
Forum: General
Topic: [solved] L2TP/IPSec client to site configuration
Replies: 6
Views: 1152

Re: [ask] L2TP/IPSec client to site configuration

i use RouterOS v4.3 ... what should i do next?
Upgrade to ROS 5.x.
by NAB
Fri Nov 16, 2012 11:05 am
Forum: General
Topic: Facebook Limit
Replies: 2
Views: 1011

Re: Facebook Limit

Something like this should do it, but you will need to check the address lists are correct. /ip firewall address-list add list=facebook address=173.252.64.0/18 /ipv6 firewall address-list add address=2a03:2880:2040:1f01:face:b00c::/128 disabled=no list=facebook /ip firewall filter add action=drop ch...
by NAB
Fri Nov 16, 2012 10:54 am
Forum: General
Topic: How to reboot the routerOS without rebooting the computer?
Replies: 3
Views: 605

Re: How to reboot the routerOS without rebooting the compute

There wouldnt be any problem if the ROS wouldnt freeze in such a way I have described.
What I am saying is that I suspect your ROS is freezing because the USB or USB disk is failing. Seriously, put an IDE/SATA drive inside the box and don't use USB.
by NAB
Thu Nov 15, 2012 1:49 pm
Forum: General
Topic: How to reboot the routerOS without rebooting the computer?
Replies: 3
Views: 605

Re: How to reboot the routerOS without rebooting the compute

Is there any possibility to reboot running routerOS without rebooting the whole computer? If ROS is running on the bare metal, then no. but my computer(core i5 2400) sometimes doesnt see USB disk after reboot so it cant load the routeros software from it and stays stuck. My guess is that your probl...
by NAB
Thu Nov 15, 2012 1:45 pm
Forum: General
Topic: IPv6 Ping does not work with domain names
Replies: 42
Views: 23755

Re: IPv6 Ping does not work with domain names

So the change is coming.
It's been over eleven months now, is this change any closer?
by NAB
Thu Nov 15, 2012 1:36 pm
Forum: The Dude
Topic: IPv6 support in Dude
Replies: 15
Views: 5808

Re: IPv6 support in Dude

Year passed and still no response.
Another 11 months and still no response.

We've just started using The Dude, but how do we monitor our IPv6 hosts?
by NAB
Thu Nov 15, 2012 1:34 am
Forum: Scripting
Topic: hotspot reseller
Replies: 1
Views: 702

Re: hotspot reseller

i want to know if it is possible.
Yes. RADIUS is your friend.
by NAB
Thu Nov 15, 2012 1:32 am
Forum: General
Topic: Help .. Routerboard generating own traffic on internet side
Replies: 2
Views: 692

Re: Help .. Routerboard generating own traffic on internet s

I'd suggest you see if you have "/ip proxy" enabled - if you do, firewall it so only your interal IPs can get to it.
Likewise, check you don't have an open DNS resolver (may be being used for an amplification attack).
by NAB
Wed Nov 14, 2012 9:29 pm
Forum: RouterBOARD hardware
Topic: Poor gigabit on RB/493G
Replies: 7
Views: 2142

Re: Poor gigabit on RB/493G

But the troughput is just at 50-60 MBs.
From what to what? Wireless to Ethernet? Ethernet to Ethernet (which interfaces) or wireless to wireless?
by NAB
Wed Nov 14, 2012 9:14 pm
Forum: General
Topic: Private IP address usage statistics
Replies: 13
Views: 85633

Re: Private IP address usage statistics

1 Class C network equals a /24 prefix CIDR One 'old' class C network is now a /24 CIDR. Correct. I never said otherwise. and is still a commonly used (and valid) terminology. It may be commonly used (although I haven't heard any network professionals use the term for many years), but in the context...
by NAB
Wed Nov 14, 2012 7:48 pm
Forum: Beginner Basics
Topic: sample configuration
Replies: 1
Views: 986

Re: sample configuration

Running "/system reset-configuration" gives the same result - the router is inaccessible.
Silly question, but is your Ethernet cable plugged into ether1? If so, try again in one of ether2 to ether5.
by NAB
Wed Nov 14, 2012 7:00 pm
Forum: General
Topic: Private IP address usage statistics
Replies: 13
Views: 85633

Re: Private IP address usage statistics

I'm looking for private ip address usage statistics, preferably divided in class C networks. I need it for selecting address ranges, so it only needs to be approximate numbers. There are over 2 million class C networks (24 bit networks in the 192.0.0.0 to 223.255.255.255 range). This includes some ...
by NAB
Wed Nov 14, 2012 6:45 pm
Forum: Scripting
Topic: script that send mail whwm Ip cahnge
Replies: 7
Views: 2861

Re: script that send mail whwm Ip cahnge

my problem is how to save the old ip \where to put him
Easiest place is in a comment field. In my experience, the best place is on the interface the DHCP server is running on (/interface etherX set comment="1.2.3.4") - that way it survives reboots and power cuts.
by NAB
Wed Nov 14, 2012 6:40 pm
Forum: General
Topic: DHCP Server per each port and independent WAN IPs
Replies: 2
Views: 879

Re: DHCP Server per each port and independent WAN IPs

...the second part is to configure 4 DHCP Clients (with one IP to be masquerade for each LAN port) on the WAN port.
Can't be done. You can only have one DHCP client on each interface. You need to do this with static IPs on the WAN interface.
by NAB
Wed Nov 14, 2012 6:37 pm
Forum: General
Topic: Need Advice on Network
Replies: 12
Views: 1846

Re: Need Advice on Network

The ether3 I want to give : 192.168.2.1 (gateway ) and DHCP range: 192.168.2.2 - 192.168.2.254 1 - Remove ether3 from the bridge 2 - Add the address 192.168.2.254/24 (or whatever you want) to ether3 3 - Set up a DHCP server on ether3 (click on the button and follow the prompts) 4 - Ensure your VoIP...
by NAB
Wed Nov 14, 2012 3:53 pm
Forum: General
Topic: New MT download pages
Replies: 28
Views: 2848

Re: New MT download pages

based on statistics, this is in fact a garage item :)
My Routerboard at home is in the garage - is this what you meant? :lol:
by NAB
Wed Nov 14, 2012 2:29 pm
Forum: General
Topic: MUM 2013 - The British Contingent
Replies: 15
Views: 3502

MUM 2013 - The British Contingent

Firstly, the dates and location for MUM haven't been officially released and as they're subject to change, I won't leak anything here. For the purposes of planning dates, however, I believe MT now prefer the week after CeBIT. Anyway, I've been to MUM for the past four years or so and the number of B...
by NAB
Wed Nov 07, 2012 12:35 pm
Forum: General
Topic: New MT download pages
Replies: 28
Views: 2848

Re: New MT download pages

Do you really use that many MIPS-LE devices? Since we bought a whole jobload of miniRouters on eBay, yes we do! Usually 90% of network consists of similar architecture. Sounds about right. Ours is about 80% mipsbe, 10% ppc, 5% mipsle and 5% x86. However, just because something is rarely used doesn'...
by NAB
Wed Nov 07, 2012 11:49 am
Forum: General
Topic: New MT download pages
Replies: 28
Views: 2848

Re: New MT download pages

We will include it, sorry about that, but why do you need it? Because it's a damn-sight easier to download one file with everything you could possibly need in it than click through several links on a web page to get the files, then put them all in one folder hierarchy. We now host files in the amaz...
by NAB
Tue Nov 06, 2012 5:05 pm
Forum: General
Topic: L2TP keep alive - where is it?
Replies: 20
Views: 9034

Re: L2TP keep alive - where is it?

are you saying it's idle timeout is actually set to something and you can't change it? No. Ive got tunnels that have been up for months with barely any traffic traversing them. The problem is NAT traversal and connection timeouts. Sometimes traffic has to flow just to keep the NAT state tables up t...
by NAB
Tue Nov 06, 2012 4:34 pm
Forum: General
Topic: New MT download pages
Replies: 28
Views: 2848

Re: New MT download pages

Found it: http://www.mikrotik.com/download/routeros-ALL-5.21.torrent So, looks like http://www.mikrotik.com/download --> download.mikrotik.com Except that the files haven't been copied over and the 'ALL' torrent has been discontinued. Presumably any new versions (5.22 onwards) will only be on downlo...
by NAB
Tue Nov 06, 2012 4:26 pm
Forum: General
Topic: New MT download pages
Replies: 28
Views: 2848

New MT download pages

Hi all, It seems that the download pages have been changed since I last had a look. There no longer appears to be a link for a .torrent of all the versions - it is now split into the various architectures. Unfortunately, the following links: http://download.mikrotik.com/routeros-mipsbe-5.21.torrent ...
by NAB
Fri Oct 12, 2012 11:38 pm
Forum: General
Topic: IPv6 Ping does not work with domain names
Replies: 42
Views: 23755

Re: IPv6 Ping does not work with domain names

So the change is coming.
It's been almost ten months now, is this change any closer?
by NAB
Fri Apr 20, 2012 9:58 pm
Forum: General
Topic: v5.15 released!
Replies: 150
Views: 29467

Re: v5.15 released!

*) added support for usb forwarding over tcp;
Tell me more...
by NAB
Thu Mar 22, 2012 12:01 pm
Forum: General
Topic: MUM Europe 2012 in Poland
Replies: 88
Views: 16791

Re: MUM Europe 2012 in Poland

To come back to the Mazurkas Hotel is what i call a really good adventure... I printed out your instructions and I'm really glad I did - It seems that the timetables in Warsaw don't show the stations the train stops at, just their final destinations. This means you have to have intimate knowledge o...
by NAB
Thu Mar 22, 2012 11:39 am
Forum: General
Topic: Dynamic firewall rules question
Replies: 2
Views: 559

Re: Dynamic firewall rules question

/ip firewall filter add chain=smtp src-address-list=LIST1 dst-address-list=LIST1 protocol=tcp dst-port=25 action=accept works for me - what part of this didn't work for you? Wouldn't it be easier to set up your own SMTP relay/spam filter/whatever internally and only permit your hosts to talk to that?
by NAB
Mon Mar 19, 2012 1:42 pm
Forum: General
Topic: How to check the SECOND next hop to see if a route is up?
Replies: 7
Views: 6755

Re: How to check the SECOND next hop to see if a route is up

Is there something similar in Mikrotik? Yes... It takes a bit of thinking to get your head around though. Essentially, you create a route to the target gateway that's two hops away and set the gateway for that route to be the device one hop away. You also set the scope for that route to be '10'. Th...
by NAB
Sun Mar 18, 2012 10:44 pm
Forum: General
Topic: MUM Europe 2012 in Poland
Replies: 88
Views: 16791

Re: MUM Europe 2012 in Poland

I'm back home safe and sound after a great few days away. I would like to thank Mikrotik for putting together a great conference with some interesting and informative presentations. I would also like to thank Mikrotik for the two free routers. I had a great time, met some nice people, renewed acquai...
by NAB
Sun Mar 11, 2012 9:21 am
Forum: General
Topic: MUM Europe 2012 in Poland
Replies: 88
Views: 16791

Re: MUM Europe 2012 in Poland

I've now arrived and can report some potentially useful info...
But what we all really want to know is... What is the water park like? :D

See you late Wednesday.
by NAB
Mon Mar 05, 2012 12:17 pm
Forum: General
Topic: IPv6 Neighbour solicitations not sent to PPP interfaces
Replies: 0
Views: 416

IPv6 Neighbour solicitations not sent to PPP interfaces

I've got a problem with IPv6... I have been allocated a /48. For the sake of argument, let's assume it's 2001:0DB8:FFFF::/48. The gateway is 2001:0DB8:FFFF::1. I have allocated the RouterBoard (ROS v5.14) 2001:0DB8:FFFF::/64 and it can quite happily communicate with anything in the outside world. Li...
by NAB
Tue Feb 21, 2012 10:38 pm
Forum: General
Topic: Magazines and publications
Replies: 32
Views: 3532

Re: Magazines and publications

What kinds of magazines do you read? Routers/servers/networking/webhosting/internet? 'Wired' is the only techy magazine I read now. Do you still read printed media? Very rarely. If yes - what do you read. If no - what do you read instead? I don't tend to read an awful lot of publications. Having a ...
by NAB
Fri Feb 10, 2012 7:13 pm
Forum: General
Topic: MUM entry tickets for most helpful forum users!
Replies: 9
Views: 4569

Re: MUM entry tickets for most helpful forum users!

All sorted.

For anybody else doing this, send your Mikrotik login as well - apparently it's needed.
by NAB
Thu Feb 09, 2012 8:13 pm
Forum: General
Topic: MUM entry tickets for most helpful forum users!
Replies: 9
Views: 4569

Re: MUM entry tickets for most helpful forum users!

I've received email answer with vouchers within 15 min.
E-mail must have been lost in the post then!! I've resent.

Thank you.
by NAB
Thu Feb 09, 2012 5:29 pm
Forum: General
Topic: MUM entry tickets for most helpful forum users!
Replies: 9
Views: 4569

Re: MUM entry tickets for most helpful forum users!

simply email training@mikrotik.com Just to stop me worrying about not receiving a reply (I sent an e-mail shortly after you posted this announcement), should I expect a reply/confirmation/voucher by e-mail or should I just trust that my mail's been received and pick something up when I get to the r...
by NAB
Mon Jan 30, 2012 12:23 pm
Forum: General
Topic: Multiple L2TP links to the same IP via different routes...
Replies: 3
Views: 527

Re: Multiple L2TP links to the same IP via different routes.

Yup, that's the dirty solution. I was hoping to do it on one physical and virtual box.
by NAB
Fri Jan 27, 2012 12:24 pm
Forum: General
Topic: Multiple L2TP links to the same IP via different routes...
Replies: 3
Views: 527

Multiple L2TP links to the same IP via different routes...

Hi all, Got an interesting problem. I have a solution, but it's horribly clunky, so I wonder if anybody knows a better way of doing it. I have a RouterBoard with two IP addresses and two gateways, let's call the IPs 1.1.1.1 and 2.2.2.1 and the gateways 1.1.1.2 and 2.2.2.2 Everything beyond the RB is...
by NAB
Mon Jan 16, 2012 12:25 pm
Forum: General
Topic: MUM Europe 2012 in Poland
Replies: 88
Views: 16791

Re: MUM Europe 2012 in Poland

We have published an extensive travel guide on the MUM site now Excellent. Thank you. Just out of interest, what does enter at your own risk mean in the sentence: There are also couple of bars nearby (enter at your own risk). 1 - We haven't checked them, 2 - This area is known for violence/prostitu...
by NAB
Fri Jan 13, 2012 1:05 pm
Forum: General
Topic: MUM Europe 2012 in Poland
Replies: 88
Views: 16791

Re: MUM Europe 2012 in Poland

Couple of things... 1 - I land Warsaw at 1910 on the 14th. Is there anybody landing about then who wants to share a taxi? 2 - I'm going to spend the Saturday having a looksee around Warsaw (specifically the Gestapo HQ museum and probably then a wander around the shops), but if somebody wants to meet...
by NAB
Fri Dec 16, 2011 6:03 pm
Forum: General
Topic: MUM Europe 2012 in Poland
Replies: 88
Views: 16791

Re: MUM Europe 2012 in Poland

Welcome cocktail will be held the evening before MUM (March 14, from 6.00PM)
Damn. Flight doesn't land until 1900 so it'll be at least 2030 by the time I get to the hotel.

:-(
by NAB
Tue Nov 08, 2011 10:28 am
Forum: General
Topic: Interface marked as invalid - RB1200, ROS5.7
Replies: 2
Views: 513

Re: Interface marked as invalid - RB1200, ROS5.7

In ROS v5.7 there is a know issue, where bridge could crash and appear as "unknown" interface. This bug is fixed in ROS v5.8.
Thank you, but unfortunately in this case it wasn't a bridge...
by NAB
Thu Nov 03, 2011 7:08 pm
Forum: General
Topic: Interface marked as invalid - RB1200, ROS5.7
Replies: 2
Views: 513

Interface marked as invalid - RB1200, ROS5.7

Got an interesting problem with a RB1200. Twice it has stopped responding to TCP/UDP traffic - to all intents and purposes it has just hung. It happened again today, but luckily I got to it before somebody simply pulled the plug. I found I could mac-telnet into it, but all IP routing was up the spou...
by NAB
Tue Oct 11, 2011 12:27 pm
Forum: General
Topic: 750G won't upgrade
Replies: 1
Views: 715

750G won't upgrade

Hi all,

Got a problem with a 750G I've not seen before.

It's currently running 4.13 and needs upgrading. Drag and drop 5.7 firmware (mipsbe!) and reboot.

Nothing in the logs and it doesn't upgrade.

Any ideas before I drive to the customer's site and nuke the box?
by NAB
Sat Sep 24, 2011 8:09 pm
Forum: General
Topic: Erase Default Configuration Script
Replies: 6
Views: 2425

Re: Erase Default Configuration Script

At a guess that script is baked in as part of the OS image and can't be changed other than as part of it.
Nope. You can provision your own default script if you use NetInstall. This then becomes the script that survives a reset.
by NAB
Sat Sep 24, 2011 6:46 pm
Forum: General
Topic: New Ethernet port flap issue enquiery, PLS JOIN!
Replies: 247
Views: 85692

Re: New Ethernet port flap issue enquiery, PLS JOIN!

The bug is also present if ... I think I have another case which would explain what happened this morning... I was messing about with VLANs on the home router (RB750). Added, removed and tried various things. In the course of this, a DHCP server was set up on a VLAN interface which was disabled. Ev...
by NAB
Fri Sep 23, 2011 6:02 pm
Forum: General
Topic: CITY FOR NEXT EUROPEAN MUM 2012
Replies: 49
Views: 6999

Re: CITY FOR NEXT EUROPEAN MUM 2012

isn't the exchange rate to euro the same in all "eurozone" countries :D ? what's the difference, euro is the same in all of them.
That's exactly why I don't want to go to any country that uses the Euro. I only mentioned Germany specifically after your suggestion.
by NAB
Fri Sep 23, 2011 1:29 pm
Forum: General
Topic: CITY FOR NEXT EUROPEAN MUM 2012
Replies: 49
Views: 6999

Re: CITY FOR NEXT EUROPEAN MUM 2012

What about somewhere in southern Germany?
As nice as Germany is, for purely selfish reasons (i.e. the GBP:EUR exchange rate), I'd rather not do anywhere in the EuroZone.
by NAB
Fri Sep 23, 2011 1:27 pm
Forum: General
Topic: CITY FOR NEXT EUROPEAN MUM 2012
Replies: 49
Views: 6999

Re: CITY FOR NEXT EUROPEAN MUM 2012

can you confirm the most likely dates
I'll second that - we're about to book next year's ski holiday and another clash with MUM would be annoying (unless, of course, you don't want me there...!).
by NAB
Tue Sep 13, 2011 11:01 am
Forum: General
Topic: CITY FOR NEXT EUROPEAN MUM 2012
Replies: 49
Views: 6999

Re: CITY FOR NEXT EUROPEAN MUM 2012

Can I request somewhere outside the Eurozone? Eastern Europe is good - not seen much of that and enjoyed Wroclaw and Prague. What about (in no particular order): Lodz Gdansk Skopje Bucharest Dubrovnik Split Brno Poznan Belgrade Personally, I'd like Gdansk - having grown up hearing about Lech Walesa ...
by NAB
Mon Sep 12, 2011 12:48 pm
Forum: General
Topic: L2TP and proxy-arp
Replies: 2
Views: 1986

L2TP and proxy-arp

Hi all, Bit of a problem here... Got a RB acting as a LNS in a data centre with a /24. I would like to allocate one address from this pool to an L2TP client. Both the LNS and the client are running ROS 5.6. Both have only one ethernet port. LNS: IP 198.51.100.254/24 gw 198.51.100.1 Client: ether1 IP...
by NAB
Mon Jul 25, 2011 6:43 pm
Forum: General
Topic: How can I block access from Winbox.
Replies: 2
Views: 5580

Re: How can I block access from Winbox.

MAC-winbox runs on layer 2
Argh. Major attack of the stupids. I knew this, I know I knew this. I just got caught up with the incrementing packet counts and stopped thinking.

Thank you!
by NAB
Mon Jul 25, 2011 6:05 pm
Forum: General
Topic: How can I block access from Winbox.
Replies: 2
Views: 5580

How can I block access from Winbox.

Hi, I have a RB493. It's running ROS 5.5. I want to block all access from WinBox clients on 'ether4', unfortunately I don't seem to be able to do so. If I create the following three rules: /ip firewall filter add action=drop chain=input disabled=no in-interface=ether4 add action=drop chain=output di...
by NAB
Wed May 11, 2011 2:08 pm
Forum: Forwarding Protocols
Topic: Network Routing
Replies: 5
Views: 1438

Re: Network Routing

Tips:

1 - Get rid of NAT at the SXT level (do it at the 433).
2 - Rationalise IP networks.
3 - Change 'Router' to do source based routing.

If that's not enough to get you going, there are many people here who offer commercial consultancy and who may be willing to help.
by NAB
Fri Apr 01, 2011 6:20 pm
Forum: SwOS
Topic: SwOS 1.2 not reporting SNMP correctly
Replies: 11
Views: 6502

Re: SwOS 1.2 not reporting SNMP correctly

Hi,
this is not correct
and
There is a bug in the bandwith values
So I was correct then - SNMP is borked. It's just that the borkedness can be overcome with a manual tweak... :)
by NAB
Fri Apr 01, 2011 11:35 am
Forum: SwOS
Topic: SwOS 1.2 not reporting SNMP correctly
Replies: 11
Views: 6502

Re: SwOS 1.2 not reporting SNMP correctly

I've been trying SwOS out at home before we even think about selling it to our customers.... I'm definitely seeing strange SNMP data coming back from SwOS (1.4). Typically: Data simply not being reported - this is my NAS which typically shifts several GB a day: RB250G-NAS-Nodata.png Data being mis-r...
by NAB
Fri Mar 18, 2011 6:58 pm
Forum: General
Topic: BUG: 5.0rc11 crashes with 'int ether print' command
Replies: 2
Views: 817

Re: BUG: 5.0rc11 crashes with 'int ether print' command

What do you mean 'crashes'? Does the whole box become inoperative, or is is only the command line session?
by NAB
Fri Mar 18, 2011 6:57 pm
Forum: General
Topic: weird problem:WAN-IP becomes unreachable [solved]
Replies: 3
Views: 947

Re: weird problem:WAN-IP becomes unreachable

Can I ask you to clarify (because your post doesn't make it 100% clear) whether the box continues to work perfectly in all other respects even when it can't be pinged?
by NAB
Fri Feb 25, 2011 5:15 pm
Forum: RouterBOARD hardware
Topic: 450g with the hotspot setup
Replies: 3
Views: 1630

Re: 450g with the hotspot setup

Or, alternatively, a number of ROS consultants frequent this board and will, for a consideration, be more than happy to help you.
by NAB
Mon Feb 21, 2011 2:59 pm
Forum: General
Topic: Mikrotik IPv6 addresses
Replies: 33
Views: 2981

Re: Mikrotik IPv6 addresses

They told us that IPv6 is still in testing stage, and we shouldn't be surprised that stuff breaks
That's fine, but then you shouldn't have created AAAA records for your existing FQDNs - perhaps 6.www.mikrotik.com and 6.forum.mikrotik.com (or whatever) should have been used until testing's complete?
by NAB
Mon Feb 21, 2011 2:04 pm
Forum: General
Topic: Mikrotik IPv6 addresses
Replies: 33
Views: 2981

Re: Mikrotik IPv6 addresses

Seems that our problem is somewhere else: $ traceroute6 www.mikrotik.com traceroute to www.mikrotik.com (2a02:610:7501:1000::2) from 2001:8b0:fff1:0:20e:2eff:fe6d:ba68, 30 hops max, 24 byte packets 1 0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.1.f.f.f.0.b.8.0.1.0.0.2.ip6.arpa (2001:8b0:fff1::) 0.447 ms ...
by NAB
Mon Feb 21, 2011 11:51 am
Forum: General
Topic: Mikrotik IPv6 addresses
Replies: 33
Views: 2981

Re: Mikrotik IPv6 addresses

10/10 on test-ipv6.com and no problem tracerouting to our gateway - 2001:8b0:fff1::
by NAB
Mon Feb 21, 2011 11:34 am
Forum: General
Topic: Mikrotik IPv6 addresses
Replies: 33
Views: 2981

Mikrotik IPv6 addresses

I see that Mikrotik have allocated IPv6 addresses to their web server (www.mikrotik.com --> 2a02:610:7501:1000::2), forum (forum.mikrotik.com --> 2a02:610:7501:1000::201) and primary MX (mailgw.mikrotik.com --> 2a02:610:7501:1000::199). Unfortunately, none of the addresses in question are responding...
by NAB
Mon Jan 24, 2011 2:03 pm
Forum: General
Topic: only mail is allowed
Replies: 8
Views: 2154

Re: only mail is allowed

You may also want to allow DNS lookups too. Assuming the ROS box is configured to permit DNS requests, add the following rule: /ip firewall filter add chain=input src-address=192.168.120.0/24 protocol=udp dst-port=53 action=accept add chain=input src-address=192.168.120.0/24 action=drop And then you...
by NAB
Tue Nov 30, 2010 9:44 pm
Forum: General
Topic: Where Europe MUM'11 will TakePlace?SOLVED.10-11marchBudapest
Replies: 64
Views: 8427

Re: Where Europe MUM'11 will TakePlace?SOLVED.10-11marchBuda

Bah.

'snot fair.

I'll be skiing in France that week.

Oh well, see you all in 2012.

And next time, will somebody check with me first please? ;-)
by NAB
Thu Nov 04, 2010 6:56 pm
Forum: General
Topic: IPSec - invalid length of payload
Replies: 4
Views: 3761

Re: IPSec - invalid length of payload

I'm seeing this with ROS 5.0rc3 connecting to a Fortinet Fortigate.

Should I downgrade to the latest 4.x?
by NAB
Mon Oct 18, 2010 10:52 am
Forum: General
Topic: asking about.. my routerboard rb750 ability
Replies: 8
Views: 975

Re: asking about.. my routerboard rb750 ability

upthere The point I was trying to make was that if somebody hasn't answered your question, it's likely because they don't understand what the question was. Re-reading your original post, I am still not clear that fewi answered your question - after all, if you'd have just RTFM you would have known ...
by NAB
Sun Oct 17, 2010 12:12 pm
Forum: General
Topic: asking about.. my routerboard rb750 ability
Replies: 8
Views: 975

Re: asking about.. my routerboard rb750 ability

Help with what? What's the question?
by NAB
Thu Oct 07, 2010 7:58 pm
Forum: General
Topic: PPP over serial port is dialing additional digits.
Replies: 1
Views: 526

PPP over serial port is dialing additional digits.

Hi, RB411U ROS 4.11 I have a PPP session configured as follows /interface ppp-client add \ add-default-route=no allow="" data-channel=0 dial-command=ATDT1234567890 dial-on-demand=no \ disabled=no info-channel=0 keepalive-timeout=10 max-mru=1500 max-mtu=1500 modem-init=ATZ \ mrru=disabled name=ppp-ou...
by NAB
Wed Oct 06, 2010 11:48 pm
Forum: RouterBOARD hardware
Topic: RB450 Capacitors problem?
Replies: 120
Views: 41821

Re: RB450 Capacitors problem?

In the UK, the Sale of Goods Act pretty much covers you (see http://www.berr.gov.uk/whatwedo/consumers/fact-sheets/page38311.html for a reasonable summary). The problem as I see it is that it's the reseller which is going to take the hit for this and since MT's liability has ended. It seems to me th...
by NAB
Mon Oct 04, 2010 7:48 pm
Forum: RouterBOARD hardware
Topic: RB450 Capacitors problem?
Replies: 120
Views: 41821

Re: RB450 Capacitors problem?

Oh great.

Just had my first 450 die with this problem.

Am now waiting for more to die and more unhappy customers as a result.

Great.
by NAB
Tue Sep 28, 2010 9:18 pm
Forum: RouterBOARD hardware
Topic: Hack/mod to RB411UAHR to switch relay....?
Replies: 6
Views: 2107

Re: Hack/mod to RB411UAHR to switch relay....?

OK. Problem solved. I couldn't find any nice way of getting signals out of the board, so I've decided to use the serial port instead. Creating a special-user and then SSHing into the box works a treat. I've built a proof of concept Arduino based prototype which offers a simple menu on a serial port ...
by NAB
Tue Sep 28, 2010 3:32 pm
Forum: RouterBOARD hardware
Topic: Hack/mod to RB411UAHR to switch relay....?
Replies: 6
Views: 2107

Re: Hack/mod to RB411UAHR to switch relay....?

Hmm.

Setting DTR and/or RTS high and low seems to have absolutely no effect at all.

Ideas anybody?
by NAB
Mon Sep 27, 2010 11:33 pm
Forum: RouterBOARD hardware
Topic: Hack/mod to RB411UAHR to switch relay....?
Replies: 6
Views: 2107

Re: Hack/mod to RB411UAHR to switch relay....?

Hmmm. Looks like I can set DTR and RTS on the serial port, so I could use that with a much less complicated microprocessor configuration. I'll get the multimeter out tomorrow and have a poke about to see what happens....
by NAB
Mon Sep 27, 2010 8:12 pm
Forum: RouterBOARD hardware
Topic: Hack/mod to RB411UAHR to switch relay....?
Replies: 6
Views: 2107

Hack/mod to RB411UAHR to switch relay....?

Hi, I have a new customer with an interesting project: At remote sites, there will be a RB411UAHR tunnelling back to a central concentrator. The RBs will be connected to the Internet via a GSM modems and a black box device will be connected to each RBs Ethernet port. That is the only equipment at th...
by NAB
Fri Sep 24, 2010 7:21 pm
Forum: Scripting
Topic: Automatically provisioning RBs
Replies: 8
Views: 7624

Re: Automatically provisioning RBs

then push it via the API, telnet, or SSH. I like that. The main problem I was having was how to determine whether the request for provisioning is correct or not. I thought I'd got around the problem by having the RB bring up a L2TP tunnel using a combination of a 'secret' as well as its MAC and ser...
by NAB
Fri Sep 24, 2010 7:13 pm
Forum: Scripting
Topic: Automatically provisioning RBs
Replies: 8
Views: 7624

Re: Automatically provisioning RBs

you can use scripts .rsc file at the time of installation or u can also use Flashfig feature in netinstall.
Neither of these methods would work on a large scale deployment - imagine rolling out 100 RBs, each of them requiring a (slightly) different configuration.
by NAB
Sun Sep 19, 2010 4:26 pm
Forum: General
Topic: L2TP keep alive - where is it?
Replies: 20
Views: 9034

Re: L2TP keep alive - where is it?

If client can reach the server it will establish new session right away. So I don't see any problems. Where all communications are initiated by the client, then this may well work. However in the real world (and particularly for the purposes L2TP is put to), communications are often initiated from ...
by NAB
Sat Sep 18, 2010 1:42 am
Forum: Scripting
Topic: updating dynamic l2tp client "connect-to" IP address
Replies: 3
Views: 917

Re: updating dynamic l2tp client "connect-to" IP address

Have a look on the wiki for the NTP address management script I wrote. Should do exactly what you need with only a little tweaking.
by NAB
Thu Sep 16, 2010 8:11 pm
Forum: Scripting
Topic: Multiple conditions with [find ...]
Replies: 12
Views: 3905

Re: Multiple conditions with [find ...]

basically if we backport everyhing, the only difference is the version number.
Indeed, but the only person who has mentioned backporting everything is you.

What it boils down to is that there is a known bug in your 'stable' release tree. All we're asking for is a fix.
by NAB
Thu Sep 16, 2010 11:26 am
Forum: Scripting
Topic: Multiple conditions with [find ...]
Replies: 12
Views: 3905

Re: Multiple conditions with [find ...]

that was last 5.0 build thought.
Yes. It all appears to work fine for the 5.x tree, just not 4.x
by NAB
Thu Sep 16, 2010 11:07 am
Forum: Scripting
Topic: Multiple conditions with [find ...]
Replies: 12
Views: 3905

Re: Multiple conditions with [find ...]

Should also add that this bug doesn't appear to exist in ROS 5.0b6.
by NAB
Thu Sep 16, 2010 11:02 am
Forum: Scripting
Topic: Multiple conditions with [find ...]
Replies: 12
Views: 3905

Re: Multiple conditions with [find ...]

After a good sleep and a bit more digging, it appears that the problem is caused by the routing marks... [admin@MikroTik] > /ip route add dst-address=1.1.1.1/32 gateway=2.2.2.2 comment="test_a" [admin@MikroTik] > /ip route add dst-address=1.1.1.1/32 gateway=3.3.3.3 comment="test_b" routing-mark="tes...
by NAB
Thu Sep 16, 2010 10:34 am
Forum: Scripting
Topic: Multiple conditions with [find ...]
Replies: 12
Views: 3905

Re: Multiple conditions with [find ...]

Damn. And I wasted four hours trying to debug this, convinced I was doing something wrong.

E-mail sent.
by NAB
Wed Sep 15, 2010 5:23 pm
Forum: Scripting
Topic: Multiple conditions with [find ...]
Replies: 12
Views: 3905

Multiple conditions with [find ...]

Hi, I have a problem and Google hasn't been able to help. I have the following routing table: [admin@MikroTik] > /ip route print Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme, B - blackhole, U - unreachable, P - prohibit # DST-ADDRESS PREF...
by NAB
Tue Sep 14, 2010 12:57 pm
Forum: Scripting
Topic: Automatically provisioning RBs
Replies: 8
Views: 7624

Automatically provisioning RBs

Hi all, We have a standard configuration we need to roll out over many routerboards. Most of this configuration will be the same for every single board, however the IP addressing (and consequently routing) will be different for each board. So, I'd like to have a standard script I can provision with ...
by NAB
Thu Aug 12, 2010 8:07 pm
Forum: General
Topic: Wired Hotel Ports
Replies: 6
Views: 1299

Re: Wired Hotel Ports

Having been there and done that, the cheapest but still effective solution was to use port-based VLANs (i.e. not VLAN tagging) on the cheapest switches which supported it. A pair of 48 port basic managed switches will cost about GBP500. As long as the switch supports as many port groups as it has po...
by NAB
Wed Aug 04, 2010 10:40 am
Forum: General
Topic: (HELP) Regex for Static DNS
Replies: 2
Views: 959

Re: (HELP) Regex for Static DNS

A HTTP URI as a whole has absolutely nothing to do with DNS. It looks like what you want to do (i.e. munge the URL) should be done on the web server iteself - DNS can't help you here.
by NAB
Wed Aug 04, 2010 10:33 am
Forum: General
Topic: Critical Logins
Replies: 4
Views: 1012

Re: Critical Logins

/ip firewall filter add place-before=0 src-address=220.225.120.238 chain=input action=drop
by NAB
Tue Jul 20, 2010 1:21 pm
Forum: General
Topic: L2TP keepalive
Replies: 2
Views: 720

Re: L2TP keepalive

setup a netwatch on that link
Gah. Sometimes I can't see the wood for the trees. Thank you for that thought, I'm just ashamed I didn't think of it myself!
by NAB
Mon Jul 19, 2010 4:49 pm
Forum: General
Topic: L2TP keepalive
Replies: 2
Views: 720

L2TP keepalive

Hi, I have a site with some SIP equipment sat behind a particularly agressive NAT router. The session timeouts are such that it is impossible to run NATted SIP over the link. We have installed a RB750 which punches out an L2TP tunnel over which we are running the SIP links. This is working a treat, ...
by NAB
Tue Jul 06, 2010 7:39 pm
Forum: Scripting
Topic: script
Replies: 14
Views: 1851

Re: script

it dont work with me
How are you running the script and what error message do you get?
by NAB
Mon Jun 28, 2010 5:17 pm
Forum: General
Topic: L2TP over 2 external IPs
Replies: 5
Views: 1283

Re: L2TP over 2 external IPs

After doing some more digging, it appears that both the L2TP clients and servers are ignoring any routing marks and packets are just passed to the default (no-mark) route. The only way I can get two ROS boxes to talk to each other over two differently routed L2TP connections is to src-nat on the cli...
by NAB
Mon Jun 28, 2010 4:48 pm
Forum: General
Topic: L2TP over 2 external IPs
Replies: 5
Views: 1283

Re: L2TP over 2 external IPs

Just stumbled over this one myself and have spent a couple of hours trying to work out why the hell it wasn't working before coming across this post. It seems that even trying to force connection/route marks on these connections fails - the route marks are set, but are then completely ignored by the...
by NAB
Fri Jun 18, 2010 5:19 pm
Forum: General
Topic: Request to tidy up the forum.
Replies: 1
Views: 325

Request to tidy up the forum.

Hi, There are now 11 announcements and sticky posts at the top of the 'general' board on this forum. Please could I request that this is tidied up a bit? Perhaps new boards 'Announcements' and 'Stickies' (OK, a better name is needed for the second one) should be created and any announcements/stickie...
by NAB
Fri Jun 18, 2010 5:16 pm
Forum: General
Topic: MikroTik RouterOS version 5.0beta3 released!
Replies: 91
Views: 30751

Re: MikroTik RouterOS version 5.0beta3 released!

it was rb600 and rb333. eth link is flapping and nothing on console port,also no "beep" when power is up Sounds like exactly the problem I had with a RB230. Completely trashed the boot - no beeps, nothing on the console. Even a netinstall didn't work - it downloaded the files and then just hung. Th...
by NAB
Mon Jun 14, 2010 2:08 pm
Forum: General
Topic: RB1100 bandwidth test over L2TP link - problems
Replies: 5
Views: 1176

Re: RB1100 bandwidth test over L2TP link - problems

Right. More information.... I have duplicated the configuration on a RB450 (ROS 3.29) and a PC (ROS 4.5) and can confirm that the same happens. So, I am imagining that this is a side-effect of the bandwidth-test module rather than what actually happens when I load the tunnel (which I will test next).
by NAB
Mon Jun 14, 2010 1:23 pm
Forum: General
Topic: RB1100 bandwidth test over L2TP link - problems
Replies: 5
Views: 1176

Re: RB1100 bandwidth test over L2TP link - problems

No, I haven't done that yet.
by NAB
Mon Jun 14, 2010 1:08 pm
Forum: General
Topic: RB1100 bandwidth test over L2TP link - problems
Replies: 5
Views: 1176

RB1100 bandwidth test over L2TP link - problems

Hi, I have a RB1100 (ROS 4.10) with several ROS clients (ROS 5.0b2, ROS 4.5, ROS 4.10) connected over unencrypted L2TP links. When I run a bandwidth test on the RB1100 against one of the clients (any one of them), UDP works absolutely fine, but using TCP causes all sorts of problems.... 1 - The CPU ...
by NAB
Sun May 23, 2010 10:20 pm
Forum: Beginner Basics
Topic: Web Proxy Redirect to html file on router
Replies: 12
Views: 10519

Re: Web Proxy Redirect to html file on router

Just download webproxy/error.html file form webproxy folder located on your router. Edit it as a standart HTML file. And upload it back where it was. Worth pointing out that that file doesn't appear automatically (at least on any system I've tried it on) and I had to click on 'Reset HTML' in the we...
by NAB
Sun May 16, 2010 8:42 pm
Forum: General
Topic: IPv6
Replies: 32
Views: 9172

Re: IPv6

who is your ISP? never heard of any giving out native v6 yet so im curious.
Don't know about the OP, but in the UK, Andrews and Arnold have been providing native IPv6 for around about 6 years. See http://aaisp.net.uk/kb-broadband-ipv6.html.
by NAB
Fri May 07, 2010 1:47 pm
Forum: RouterBOARD hardware
Topic: Routerboard 200/230 maximum compact flash capacity?
Replies: 2
Views: 617

Re: Routerboard 200/230 maximum compact flash capacity?

Many thanks for the speedy reply.
by NAB
Fri May 07, 2010 1:28 pm
Forum: RouterBOARD hardware
Topic: Routerboard 200/230 maximum compact flash capacity?
Replies: 2
Views: 617

Routerboard 200/230 maximum compact flash capacity?

Hi,

Just a quick question...

I can't seem to find the information anywhere else...

Does anybody know what the maximum supported Compact Flash capacity is for the RB200 and RB230 boards?

Cheers,

Nick.
by NAB
Sat May 01, 2010 3:56 pm
Forum: General
Topic: MikroTik RouterOS version 5.0beta2 released!
Replies: 139
Views: 44907

Re: MikroTik RouterOS version 5.0beta2 released!

Bug in scripting: The following code no longer works and returns the error message "Script Error: cannot compare if string is less than string": :if ([/system resource get version] < "4.6") do={ :log error "This script is not supported on the installed ROS version."; :log error "Please install ROS v...
by NAB
Thu Apr 01, 2010 11:59 am
Forum: General
Topic: IPv6 over PPPoE
Replies: 140
Views: 26151

Re: IPv6 over PPPoE

ipv4-to-ipv6 converter cables...
The same cables, when connected back to front convert IPv4-to-FrameRelay. I guess there's not much use for that these days, but it's a handy thing to have in your toolkit and certainly makes ROS and RB devices much more flexible.
by NAB
Wed Mar 31, 2010 1:04 pm
Forum: General
Topic: ANYBODY ever got mikrotik to work with asterisk
Replies: 14
Views: 2921

Re: ANYBODY ever got mikrotik to work with asterisk

it's a deal i emailed you 2 your email listed on your site hopefully that the correct one if not pls get back to me asap with another one thanks !!!
Not received anything from you. Try vitellconsulting at gmail dot com.
by NAB
Fri Mar 26, 2010 12:33 pm
Forum: General
Topic: ANYBODY ever got mikrotik to work with asterisk
Replies: 14
Views: 2921

Re: ANYBODY ever got mikrotik to work with asterisk

...what do you have in sip.conf for your provider on asterisk? I'd also ask what's in rtp.conf just to see what ports it's expecting. However, the 30 second problem is likely to be a SIP timeout (by default, RTP in asterisk times out at 60 seconds). I'll do you a deal - you give me remote access to...
by NAB
Thu Mar 25, 2010 9:02 pm
Forum: General
Topic: ANYBODY ever got mikrotik to work with asterisk
Replies: 14
Views: 2921

Re: ANYBODY ever got mikrotik to work with asterisk

I have multiple Asterisk installations routing through ROS boxes. It just works. You make it sound so " easy " That's because (assuming that the Asterisk box is configured correctly, of course) it is easy. If you can share a little more information with us (details of your IP blocks, whether you're ...
by NAB
Tue Mar 23, 2010 4:09 pm
Forum: General
Topic: Limit PPTP user to only see a range of IP's
Replies: 2
Views: 815

Re: Limit PPTP user to only see a range of IP's

In the PPP profile settings, add a value for incoming and outgoing filters for any user of that profile. This creates two jump rules in the 'ppp' chain for traffic to and from the appropriate interfaces, then make sure that traffic passes through the 'ppp' chain and create chains named as per the in...
by NAB
Fri Mar 12, 2010 11:10 pm
Forum: Scripting
Topic: Stop script from failing if packages aren't installed?
Replies: 15
Views: 3564

Re: Stop script from failing if packages aren't installed?

OK. This is strange.... The following script works perfectly whether the wireless package is or is not loaded: :if ([/system package find name=wireless disabled=no] = "") do={ :log info "Wireless package is not installed."; } else={ /interface wireless security-profiles add \ authentication-types=wp...
by NAB
Fri Mar 12, 2010 2:06 am
Forum: General
Topic: RouterOS v4.6 released
Replies: 80
Views: 12395

Re: RouterOS v4.6 released

If you would see what kinds of mails we get everyday, you would reconsider this idea :) But that's precisely my point. If the bugtracker was open to all and members of the community were made bug marshalls, most of the first line support questions would be answered by them and you could concentrate...
by NAB
Fri Mar 12, 2010 2:03 am
Forum: General
Topic: RouterOS v4.6 released
Replies: 80
Views: 12395

Re: RouterOS v4.6 released

Over time the two will split and you'll end up with something like Debian vs Ubuntu. You pays your money, you makes your choice. With the added advantage to MikroTik that they'll still make money from hardware sales. In fact, I'd bet they'd make more money - if ROS is opened up, I would practically...
by NAB
Fri Mar 12, 2010 1:58 am
Forum: Scripting
Topic: Stop script from failing if packages aren't installed?
Replies: 15
Views: 3564

Re: Stop script from failing if packages aren't installed?

I should add that the following script works exactly as expected: :if ([/system package find name=wireless disabled=no] = "") do={ :put "No wireless"; } else={ :put "Wireless installed"; } It is only the inclusion of commands which are implemented in a package which is not installed which causes the...
by NAB
Fri Mar 12, 2010 1:53 am
Forum: Scripting
Topic: Stop script from failing if packages aren't installed?
Replies: 15
Views: 3564

Re: Stop script from failing if packages aren't installed?

I think you're all missing my point. The check that I do for the package works perfectly well - if "" is returned, then the package isn't installed or is installed but is not enabled. The problem is that if the script contains any commands which are implemented within a package which is not installe...
by NAB
Thu Mar 11, 2010 2:09 pm
Forum: Scripting
Topic: Stop script from failing if packages aren't installed?
Replies: 15
Views: 3564

Stop script from failing if packages aren't installed?

Hi all, Consider the following example script: :if ([/system package find name=wireless disabled=no] = "") do={ :log info "Wireless package is not installed."; } else={ /interface wireless security-profiles add \ authentication-types=wpa-psk,wpa2-psk,wpa-eap,wpa2-eap \ eap-methods=passthrough group-...
by NAB
Thu Mar 11, 2010 9:50 am
Forum: General
Topic: RouterOS v4.6 released
Replies: 80
Views: 12395

Re: RouterOS v4.6 released

Support screens it from users, because many reported 'bugs' are just misconfigurations Ah-ha, so it's our fault that MT aren't more open with us? May I venture to suggest that if the documentation were more complete, a large number of these misconfigurations wouldn't happen in the first place? Howe...
by NAB
Wed Mar 10, 2010 9:38 pm
Forum: General
Topic: RouterOS v4.6 released
Replies: 80
Views: 12395

Re: RouterOS v4.6 released

Make supout.rif file and send to support with proper problem description instead of just complaining. Yes. I agree, and that is exactly what I do (see ticket 2010030466000103, for an example). But sending a description and a supout.rif is a far cry from stating "exactly what [was] discovered in muc...
by NAB
Wed Mar 10, 2010 4:08 pm
Forum: General
Topic: Yet another change which doesn't appear in the change log.
Replies: 14
Views: 1817

Re: Yet another change which doesn't appear in the change log.

What's the point of it? I thought it didn't break any scripts yet, but I noticed that I was wrong. I can remove my own posts, can't I ? Of course you can - it's your forum, you can do whatever you want. I was discussing this issue with a colleague who told me they couldn't see your posting. I happe...
by NAB
Wed Mar 10, 2010 3:57 pm
Forum: General
Topic: Yet another change which doesn't appear in the change log.
Replies: 14
Views: 1817

Re: Yet another change which doesn't appear in the change log.

Sorry for that, not sure how it happened. We are always fighting with the developers to write these things in the changelog, but sometimes some things are left out. I hope it didn't break any scripts. why a script that was working perfectly well on 4.5 no longer does on 4.6 ouch. somebody is going ...
by NAB
Wed Mar 10, 2010 1:33 pm
Forum: General
Topic: Yet another change which doesn't appear in the change log.
Replies: 14
Views: 1817

Re: Yet another change which doesn't appear in the change log.

well, then in addition to what you already wrote, you can set more than 2 dns servers on the router. This is not an acceptable response. The point is that MT seem to think it is perfectly acceptable to make these changes without even having the courtesy of notifying their customers that this is the...
by NAB
Wed Mar 10, 2010 12:33 pm
Forum: General
Topic: Yet another change which doesn't appear in the change log.
Replies: 14
Views: 1817

Yet another change which doesn't appear in the change log.

Some time ago I wrote the script: http://wiki.mikrotik.com/wiki/A_script_to_set_up_WAN/LAN/WLAN_to_get_you_started Which a lot of people are using both to put a basic configuration on their router and also to learn about ROS. Last night a colleague mentioned that the script doesn't work for him. Aft...
by NAB
Wed Mar 10, 2010 12:18 pm
Forum: General
Topic: RouterOS v4.6 released
Replies: 80
Views: 12395

Re: RouterOS v4.6 released

It's not fair to state "I tested and downgraded". A network engineer does not just "test and downgrade" but should state exactly what he discovered in much greater detail! What rubbish. A network engineer has to ensure his/her network runs properly. If an upgrade caused a problem, the primary respo...
by NAB
Mon Mar 08, 2010 10:13 pm
Forum: General
Topic: connection without bridge
Replies: 2
Views: 439

Re: connection without bridge

1 - Put each port into switch mode with one master (eth1?)
2 - Set up individual networks on each interface and use IP routing

What are you trying to achieve?
by NAB
Mon Mar 08, 2010 9:39 pm
Forum: General
Topic: PPTP dialup with specify interface (WAN)
Replies: 6
Views: 960

Re: PPTP dialup with specify interface (WAN)

Hi,

Sorry, but you simply haven't given enough information for anybody to be able to help you.
  • 1
  • 2