Community discussions

MUM Europe 2020

Search found 35 matches

by v00d00
Fri Feb 14, 2020 10:24 am
Forum: Scripting
Topic: Fail2ban Scripts for RouterOS
Replies: 1
Views: 1093

Re: Fail2ban Scripts for RouterOS

Hello there,
Interested in your script.

Tried to test it but no results, no errors.

routeros version: 6.46.1.

Let me know if you can support.

Thank you.
Respectfully,
VD
by v00d00
Thu Jul 23, 2009 9:08 am
Forum: Wireless Networking
Topic: Hotspot and repeater
Replies: 5
Views: 3124

Re: Hotspot and repeater

So CRD should be in mode=bridge? What wds-mode should be? /interface wireless set wlan1 wds-mode=static wds-default-bridge=none mode=ap-bridge Next create a bridge and put in ports wlan1,wds1,[ether1???] is that wds-address or mac-address? Do this in the Crossroad: /interface wireless wds add maste...
by v00d00
Mon Jul 13, 2009 12:09 pm
Forum: Scripting
Topic: Script hotspot active users to /tool email body=
Replies: 2
Views: 1588

Re: Script hotspot active users to /tool email body=

is this even possible? seems the issue is getting the print command to run, but that does not seem to work when in a script I have spend a few day to figure this put, but till this moment I'm unable to put the output of the /ip hotspot active print details command to body= command... maybe you alre...
by v00d00
Mon Jul 06, 2009 11:26 am
Forum: General
Topic: How to kill an serial-terminal session that have hangup ?
Replies: 1
Views: 734

How to kill an serial-terminal session that have hangup ?

How to kill an serial-terminal session that have hangup in background? I have worked with serial-terminal connected to usb, via winbox and a new terminal window... when I have closed the new terminal window the I have leaved the the serial-terminal session open, I think so. The problem is that I don...
by v00d00
Sat Jan 31, 2009 3:42 am
Forum: General
Topic: full NAT with multiple ip addresses problem.
Replies: 2
Views: 592

Re: full NAT with multiple ip addresses problem.

I think I have found the problem... it was in the defaul gateway, ISP router... that router didn't see all three public IPs of my external ethernet, just one of those three... so the solution was to activate just one at a time not all three active at the same time... ;) thanks the mt community anywa...
by v00d00
Sat Jan 31, 2009 2:53 am
Forum: General
Topic: full NAT with multiple ip addresses problem.
Replies: 2
Views: 592

Re: full NAT with multiple ip addresses problem.

please somebody help with an idea, cause i dont know what to do more... maybe its a problem with routing and not NAT ???
by v00d00
Fri Jan 30, 2009 9:34 pm
Forum: General
Topic: full NAT with multiple ip addresses problem.
Replies: 2
Views: 592

full NAT with multiple ip addresses problem.

Hello, I have a task that I cant accomplish by my self, so I request help of mt community. I have an MT 2.9 that have 3 eth. One public, one for DMZ and another for lan users. On public eth I have 3 assigned public IPs from the same /29 network. On default route I have specified that it must use pre...
by v00d00
Fri Jan 11, 2008 3:23 pm
Forum: General
Topic: MT3 transparent proxy + squid box + mark routeing problem.
Replies: 1
Views: 680

Re: MT3 transparent proxy + squid box + mark routeing problem.

thank you, but I have find where the problem was hiding. I was having a rule, in forward chain of firewall filter: chain=forward action=drop connection-state=invalid protocol=tcp there was the problem! I have modified this rule to drop just invalid forward that are on out interface, and everything s...
by v00d00
Fri Jan 11, 2008 11:46 am
Forum: General
Topic: MT3 transparent proxy + squid box + mark routeing problem.
Replies: 1
Views: 680

MT3 transparent proxy + squid box + mark routeing problem.

hello. I have next problem with my new upgraded MT. I have upgraded from 2.9.48 to 3.0RC14 on x86, and I have a problem. I'm using transparent proxy from MT to squid box, through accepting connections from squid (172.16.100.3) and redirecting all tcp:80 requests to squid, using mark new route, see n...
by v00d00
Thu Oct 18, 2007 11:51 pm
Forum: General
Topic: Problem with 3.0rc6
Replies: 13
Views: 2194

Re: Problem with 3.0rc6

any pci-e or pci cards installed ? maybe remove them just temporarily to see if it boots with a plain hardware install. also make sure to turn off pnp os option in the bios. A clean install using netinstall and _only_ installing the system package to see if its a package doing it or just the system...
by v00d00
Thu Oct 18, 2007 4:13 pm
Forum: General
Topic: Problem with 3.0rc6
Replies: 13
Views: 2194

Re: Problem with 3.0rc6

try to disable second core in the BIOS.
this is the first thing that I wanted to do, but there is no so option in supermicro bios... :((
by v00d00
Thu Oct 18, 2007 12:16 pm
Forum: General
Topic: Problem with 3.0rc6
Replies: 13
Views: 2194

Re: Problem with 3.0rc6

Be sure the bios setting for plug and play OS is set to NO.
And disable any onboard devices you may not be using:
Printer port, Com 2, Floppy, Etc, Etc.
disable all the ports, SATA, everything that I was able to disable... :) and the same thing 27seconds, and it freezes/blocks.
by v00d00
Wed Oct 17, 2007 9:54 pm
Forum: General
Topic: Problem with 3.0rc6
Replies: 13
Views: 2194

Re: Problem with 3.0rc6

Be sure the bios setting for plug and play OS is set to NO.
And disable any onboard devices you may not be using:
Printer port, Com 2, Floppy, Etc, Etc.
OK I will try that. Any other ideas ?
by v00d00
Tue Oct 16, 2007 10:20 am
Forum: General
Topic: Problem with 3.0rc6
Replies: 13
Views: 2194

Problem with 3.0rc6

I have a big problem with 3.0 version. HARDWARE: 1. two CF to IDE adapter, one with licensed 256mb CF from MT with 3.0rc6 installed on it, and another CF with latest 2.9.46. 2. two SuperServer 5015M-T+ (http://www.supermicro.com/products/system/1U/5015/SYS-5015M-T+.cfm) MISSION: 1. I want to use 3.0...
by v00d00
Tue Jul 24, 2007 10:55 am
Forum: General
Topic: Marking with new-route-mark problem!
Replies: 2
Views: 533

Re: Marking with new-route-mark problem!

Please post, 'ip firewall mangle', 'ip firewall nat' and 'ip route' configuration.

sergejs thxs but I think I have solved by adding another new-mark-route for that hosts and routeing them to default gateway.

thank you. ;)
by v00d00
Mon Jul 23, 2007 4:57 pm
Forum: General
Topic: Marking with new-route-mark problem!
Replies: 2
Views: 533

Marking with new-route-mark problem!

I have one MT router with one interface connected to internet and other interface connected to an cisco 4500 that have 49 internals networks. interface connected to cisco 4500 have 172.16.100.2/29, the cisco 4500 router have 172.16.100.1/29, and the squid cache server has 172.16.100.3/29 1. I have c...
by v00d00
Fri Jul 13, 2007 4:00 pm
Forum: General
Topic: masquerade on public eth with "in traffic" on the same eth!
Replies: 4
Views: 1070

Re: masquerade on public eth with "in traffic" on the same eth!

I dont understand what you are saying. as I read i see that bridging them its not a solution. scheme: internet vpn location with 192.168.2.0/24 (some kind of mpls VPN from our ISP) | | | | | | public eth --------------- | local eth | | | my local networks /ip route print A S 192.168.2.0/24 r 8?.?2.2...
by v00d00
Fri Jul 13, 2007 2:56 pm
Forum: General
Topic: masquerade on public eth with "in traffic" on the same eth!
Replies: 4
Views: 1070

masquerade on public eth with "in traffic" on the same eth!

how to masquerade on public eth with incoming traffic on the same public interface? scheme: public interface ip connected to internet - 80.22.232.35 private network coming trough public interface from a vpn tunnel - 192.168.2.0/24 I have permited all traffic from 192.168.2.0/24 that goes trough publ...
by v00d00
Thu Jun 15, 2006 1:37 pm
Forum: General
Topic: IPsec between two internet MT hosts!? how?
Replies: 4
Views: 1091

Re: Manuals :)

I read this manual many times. I need answer to this question. I think that maybe its not the right network scheme that i wrote. please sombody explain a little.
by v00d00
Thu Jun 15, 2006 9:51 am
Forum: General
Topic: IPsec between two internet MT hosts!? how?
Replies: 4
Views: 1091

IPsec between two internet MT hosts!? how?

I have two MT routers in different locations, with different network on them. The mission is to make an VPN secure tunnel between this two hosts. SOLUTION: to encrypt via IPsec all packets from/to this two MT hosts, and after this to configure an L2TP VPN tunnel, and config routes. PROBLEM: I cant c...
by v00d00
Wed Nov 23, 2005 6:29 pm
Forum: General
Topic: Routing from mark_routing to internal IP
Replies: 4
Views: 1237

I have solved I think my problem by redirecting DNS udp queries to my local dns server, and then put my static entrys here. I think this way it will work better, and my problem is solved, its the best that I could do... thx for the ideea with DNS server... I forgot about him :) P.S. for sure my comp...
by v00d00
Wed Nov 23, 2005 5:14 pm
Forum: General
Topic: Routing from mark_routing to internal IP
Replies: 4
Views: 1237

yep, its a good solution, and I know about this. but anyway I must setup an internal forward only DNS SERVER, and reconfigure all my users to use him. And this are 200 pc's :(... or maybe I can do only dns server, and then redirect all clients dns querys to him? When you would use DNS server in your...
by v00d00
Wed Nov 23, 2005 4:22 pm
Forum: General
Topic: Routing from mark_routing to internal IP
Replies: 4
Views: 1237

Routing from mark_routing to internal IP

NETWORK: A router with two interfaces one internal(192.168.1.1/24) another public(10.1.2.1/26). a mail server in DMZ with 10.1.2.2/26. Masquerade is setup for 192.168.1.0/24 to public interface. PROBLEM: My MRTG graphics on public interface are showed incorectly. Incorectly because when users from m...
by v00d00
Wed Nov 23, 2005 8:43 am
Forum: General
Topic: HOWTO internal network + masquerade by mac address to public
Replies: 15
Views: 3644

the ideea is to do this without HOTSPOT, without buying a lever 4 licence, only on wired network! >>QUESTION: normis but how about a new feature in arp list, so that we can change a dynamic entry to a fixed entry by just one click, if you understand what I wanted to say??? << IP binding in the hotsp...
by v00d00
Tue Nov 22, 2005 5:42 pm
Forum: General
Topic: FEATURE REQUEST: ARP TABLE and STATE of entries from D to F.
Replies: 6
Views: 3495

very good!!! smilga its the best solution I think, seting interface to arp replay-only and adding manual entrys with COPY function from dynamic entrys in arp list. Thats the solution. Thanks guys a lot... This is good example from manual. All address which are not in arp list can not access internet...
by v00d00
Tue Nov 22, 2005 3:14 pm
Forum: General
Topic: FEATURE REQUEST: ARP TABLE and STATE of entries from D to F.
Replies: 6
Views: 3495

I know about the COPY feature not only in the ARP List, but its available though almost all tables in MT. normis I wanted that arp list can work as somekind of filter by mac address. copy function is ok, but how about the limiting access to masquerade by mac, without using a level 4 license and hots...
by v00d00
Tue Nov 22, 2005 2:55 pm
Forum: General
Topic: FEATURE REQUEST: ARP TABLE and STATE of entries from D to F.
Replies: 6
Views: 3495

did you carefully read what I have writed? have you understand what was my ideea? I dont think so... if you want to understand read again, and dont forget this topic http://forum.mikrotik.com//viewtopic.php?t=5559&start=0&postdays=0&postorder=asc&highlight= Did you read the manual?? http://www.mikro...
by v00d00
Tue Nov 22, 2005 1:02 pm
Forum: General
Topic: HOWTO internal network + masquerade by mac address to public
Replies: 15
Views: 3644

about this i know, I have read http://www.mikrotik.com/software.php, question was another, but dont buther, I understand the ideea. Thanks. QUESTION: normis but how about a new feature in arp list, so that we can change a dynamic entry to a fixed entry by just one click, if you understand what I wan...
by v00d00
Tue Nov 22, 2005 11:43 am
Forum: General
Topic: HOWTO internal network + masquerade by mac address to public
Replies: 15
Views: 3644

I need level 4 even if I will dont use wireless support and hotspot, for 200 users???

I am going to use MT only for wired network.
yes, for 200 users you need Level 4
by v00d00
Tue Nov 22, 2005 11:39 am
Forum: General
Topic: HOWTO internal network + masquerade by mac address to public
Replies: 15
Views: 3644

but for HOTSPOT module I need to by a higher licensce, right? :-( I want to buy licence 3 for ISP, and use this kind of scheme with access by mac addresses without hotspot feature, Can I do this using /ip arp, and manualy add IP addresses that are bind to mac addresses ? Will this procedure be effec...
by v00d00
Tue Nov 22, 2005 8:12 am
Forum: General
Topic: FEATURE REQUEST: ARP TABLE and STATE of entries from D to F.
Replies: 6
Views: 3495

FEATURE REQUEST: ARP TABLE and STATE of entries from D to F.

WHY? Here is the general ideea why this feauture request have come. http://forum.mikrotik.com//viewtopic.php?p=23554 FEAUTURE REQUEST (very simple I think): Can you do that the entries in ARP TABLE (/ip arp) can be modified, from D(dynamic) to fixed, or manual? So that when user with that MAC addre...
by v00d00
Tue Nov 22, 2005 8:01 am
Forum: General
Topic: HOWTO internal network + masquerade by mac address to public
Replies: 15
Views: 3644

I think that is a very good ideea to use ARP to bind to fixed IPs... pedja thx, I forgot about this feauture... There will be a good ideea to make a feauture request to mikrotik developers, that they make the ARP table so that I can change from dynamic arp entrys in that table to fixed entrys... so ...
by v00d00
Mon Nov 21, 2005 10:54 am
Forum: General
Topic: HOWTO internal network + masquerade by mac address to public
Replies: 15
Views: 3644

haytcsd can you explaine me more detailed what you wanted to say. I'm sorry for my bad english. As I understand, if the username and passwd are the mac address of his ethernet interface, then he automaticaly authentificates on hotspot? and he dont see any of login requests? The hotspot can authentic...
by v00d00
Mon Nov 21, 2005 8:11 am
Forum: General
Topic: HOWTO internal network + masquerade by mac address to public
Replies: 15
Views: 3644

I dont want that user enters his password hava internet access. I dont need this feauture. I want maybe bind mac-address to some username, and then manypulate all access list with usernames. Can I do this way? You could set up a hotspot to do this. The RouterOS hotspot can indeed also be used to gra...
by v00d00
Sun Nov 20, 2005 2:45 pm
Forum: General
Topic: HOWTO internal network + masquerade by mac address to public
Replies: 15
Views: 3644

HOWTO internal network + masquerade by mac address to public

My company is thinking to buy mikrotik as simple routers, for only wired network NOT WIRELESS. We have a few hundred pc's that are using internet though masquerading. MISSION: we must give access to internet not by ip, because user can change IP at any time. I want to give masquerading by mac addres...