Community discussions

Search found 152 matches

by dragon2611
Wed Jan 17, 2018 12:29 am
Forum: RouterBOARD hardware
Topic: Upgrade from 750Gr3
Replies: 2
Views: 656

Upgrade from 750Gr3

Can someone confirm what a good upgrade from an RB750Gr3 would be? Have 200 down 20 up cable, which may go to ~350/20 soon but I also have a fairly heavy configuration I'm running VRF's with 2 ISP's (There's a DSL Circuit as fail over) and then L2TP tunnels off to another ISP (It was for IPv6 and to...
by dragon2611
Tue Jan 16, 2018 3:43 pm
Forum: General
Topic: Check Gateway for DHCP added routes.
Replies: 2
Views: 280

Re: Check Gateway for DHCP added routes.

Ah thanks, I'll give that a try. Had a few cases where my cable modem has been dropping out lately and I wanted to improve failover to the DSL connection. Also need to contact the ISP and get it checked out if it does it again (Last time they claimed it was an area fault, then it seemed ok for the l...
by dragon2611
Mon Jan 15, 2018 11:07 pm
Forum: General
Topic: Check Gateway for DHCP added routes.
Replies: 2
Views: 280

Check Gateway for DHCP added routes.

Would it be possible to implement the "check gateway" feature for routes added by DHCP? For example say the routerOS device is connected to ISP that requires DHCP via a Modem or Media convertor, said device loses it's connection to the ISP, the ISP hands out a long DHCP lease so the routerOS device ...
by dragon2611
Sat Nov 18, 2017 12:43 pm
Forum: General
Topic: RB750Gr3 6.40.5 winbox 3.11 IPSEC peer lifetime
Replies: 0
Views: 348

RB750Gr3 6.40.5 winbox 3.11 IPSEC peer lifetime

Keep finding that on ROS 6.40.5 winbox 3.11 I'll goto IP > IPSEC > Peers click on a peer and goto advanced and the lifetime is 00:00:00

I'll change it to a more sensible value and save but at somepoint it seems to get reset to 00:00:00
by dragon2611
Tue Nov 14, 2017 1:03 pm
Forum: Virtualization
Topic: Virtio-SCSI
Replies: 3
Views: 992

Virtio-SCSI

Am I right in thinking CHR 6.40.5 doesn't support virtio-scsi as a storage device? Created a VM in ovirt then copied the downloaded raw image over the HDD image ovirt had created (HDD image ovirt created was also RAW), RouterOS started booting and then decided it couldn't find the HDD. Changed the D...
by dragon2611
Sun Sep 17, 2017 5:05 pm
Forum: General
Topic: 6.41rc28 RB450G loss of traffic.
Replies: 2
Views: 559

Re: 6.41rc28 RB450G loss of traffic.

It's just done it again with the new PSU, and interestingly the Vlan's it's passing through at L2 appeared to work ok, it looks like the IP on the bridge interface stops responding for some reason as when it happens I can't ping that IP or access winbox.etc using it. That would explain why the L3 in...
by dragon2611
Fri Sep 15, 2017 10:10 pm
Forum: General
Topic: 6.41rc28 RB450G loss of traffic.
Replies: 2
Views: 559

6.41rc28 RB450G loss of traffic.

I have an RB450G configured mostly as switch with the exception of one interface where it routes so been using 6.41rc for the new switch/bridge implementation , I've had a problem over the last couple days where it appears it stops passing traffic after a while (Usually happens overnight at somepoin...
by dragon2611
Thu Sep 07, 2017 11:52 pm
Forum: General
Topic: 6.41rc23 Vlans
Replies: 0
Views: 599

6.41rc23 Vlans

Just a friendly warning, it's very easy to mess up the configuration when getting to grips with the new way Vlans are handled via bridge and it seems if you change the bridge PVID wrongly it's quite possible to get in a state where you can't access the router at all even with mac-telnet, at least it...
by dragon2611
Sun Jul 30, 2017 3:17 pm
Forum: RouterBOARD hardware
Topic: HEXr3 IPSEC acceleration?
Replies: 1
Views: 666

HEXr3 IPSEC acceleration?

Sorry if it's been asked before and I missed it but what IPSEC settings can be accelerated? I had AES-256 / SHA512/ DH16 which I don't think was as CPU was around 50% (One core pegged) @ ~ 50Mbit AES-128/SHA-1/DH16 seems to get over 100Mbit with little CPU usage so I presume *IS* accelerated, but I'...
by dragon2611
Thu Jun 29, 2017 11:19 am
Forum: General
Topic: Winbox Confirm Delete (Or Commit changes)
Replies: 4
Views: 668

Re: Winbox Confirm Delete (Or Commit changes)

There is also a "undo" and "redo" button in winbox.
I'm ashamed to say I'd not noticed that.
by dragon2611
Thu Jun 29, 2017 12:46 am
Forum: General
Topic: Winbox Confirm Delete (Or Commit changes)
Replies: 4
Views: 668

Re: Winbox Confirm Delete (Or Commit changes)

Not sure safe mode would have done anything as It was an L2TP I accidentally deleted instead of disabled and I wasn't coming in over that interface so it wouldn't have caused a disconnect
by dragon2611
Wed Jun 28, 2017 10:07 pm
Forum: General
Topic: Winbox Confirm Delete (Or Commit changes)
Replies: 4
Views: 668

Winbox Confirm Delete (Or Commit changes)

Would it be possible to either have winbox ask when deleting an interface, I have on occasion hit delete instead of disable or have a mode where changes were not made "live" until a commit button was pressed.
by dragon2611
Mon Mar 06, 2017 11:07 pm
Forum: General
Topic: Ikev2 tunnel isolation?
Replies: 4
Views: 866

Re: Ikev2 tunnel isolation?

7 -8 I think, Although the remote edgerouter appears to be having problems at the moment.
by dragon2611
Thu Feb 16, 2017 1:19 pm
Forum: General
Topic: TR069 with FreeACS
Replies: 57
Views: 51433

Re: TR069 with FreeACS

For GenieACS issues try contacting the developer, he was quite responsive last time I was playing with it (although that was a couple years back)
by dragon2611
Thu Feb 16, 2017 11:30 am
Forum: Virtualization
Topic: Mikrotik CHR P1 Licence - packet loss [FIXED]
Replies: 17
Views: 3032

Re: Mikrotik CHR P1 Licence - packet loss [FIXED]

This bug only affected CHR speed limitation mechanism. It is not related to non-virtual (real) devices. Yes my home router happens to be a CHR running in Proxmox (KVM) on an N3150 celeron with 2 cores allocated to the VM There's also an instance of Opnsense doing IPS for the IOT (internet of things...
by dragon2611
Wed Feb 15, 2017 9:08 pm
Forum: Virtualization
Topic: Mikrotik CHR P1 Licence - packet loss [FIXED]
Replies: 17
Views: 3032

Re: Beware of Mikrotik CHR P1 Licence - packet loss

We have found an issue in the queue which creates the license speed limitations. Next RouterOS build should have a fix. Thanks for reporting it. Hi Normis Any details on the Issue and when the fix is out, I'm wondering if that's why I was seeing packet-loss on my VDSL even if I shaped it to below t...
by dragon2611
Sun Feb 12, 2017 4:13 pm
Forum: General
Topic: Ikev2 tunnel isolation?
Replies: 4
Views: 866

Re: Ikev2 tunnel isolation?

Still doesn't like it even with that set to unique, same problem 1 tunnel establishes the others just sit on no phase2

Switch to IKEv1 and it appears to work.
by dragon2611
Sun Feb 12, 2017 1:33 pm
Forum: General
Topic: Ikev2 tunnel isolation?
Replies: 4
Views: 866

Ikev2 tunnel isolation?

Does routerOS support IKEv2 + Tunnel isolation (At least that what it's called on Opnsense) It seems UBNT edgerouters don't like it if you negotiate IKEv2 then try and setup multiple tunnels, only the first one sets up. Tunnel isolation makes it behave more like IKEv1 where each tunnel would be setu...
by dragon2611
Tue Feb 07, 2017 5:04 pm
Forum: Announcements
Topic: Winbox 3.10 released!
Replies: 70
Views: 39871

Re: Winbox 3.10 released!

Sorry, using Webfig is the only option right now. It is not trivial to fix. P.S: side note. isn't it a bit strange, that a laptop at it's native resolution shows too small text? Some manufacturers seem to like putting 2k-4k panels in 13 -15" laptops, not really sure the point to be honest. Also win...
by dragon2611
Sat Dec 17, 2016 2:48 pm
Forum: RouterBOARD hardware
Topic: RB750Gr3 - Report and questions
Replies: 112
Views: 32953

Re: RB750Gr3 - Report and questions

Try a switch between the RB and the PC
by dragon2611
Sat Dec 17, 2016 2:08 pm
Forum: RouterBOARD hardware
Topic: RB750Gr3 - Report and questions
Replies: 112
Views: 32953

Re: RB750Gr3 - Report and questions

I've been suspicious about VLANs, since Ubiquiti Edgerouter-x doesn't support them either, Mediatek seems to have screwed the pooch on delivering well documented switch drivers to their customers. The ER-X does support VLANs on the switch, needs EdgeOS 1.85 or later if I remember rightly. Regarding...
by dragon2611
Sat Dec 17, 2016 1:52 pm
Forum: RouterBOARD hardware
Topic: hAP ac lite tower
Replies: 0
Views: 540

hAP ac lite tower

Have to say from the pictures it's quite possibly the best looking thing to come out of Mikrotik yet.

However shame about the 10/100 ports, are there any plans to put other RB hardware in this same case design, i.e some of the Gigabit capable stuff?
by dragon2611
Sat Dec 17, 2016 1:48 pm
Forum: RouterBOARD hardware
Topic: Mikrotik VDSL / DSL Modem?
Replies: 314
Views: 87382

Re: Mikrotik VDSL / DSL Modem?

My proxmox host running the CHR has a Draytek vigornic 132 in bridge mode for modem (It's essentially a vigor 130 on a PCI-E card) That is nice for using on a PC platform. How does it appear in the host system? As an ethernet card? Which driver? Sorry had only just seen this. Shows up as RTL8111/81...
by dragon2611
Mon Nov 14, 2016 11:24 pm
Forum: RouterBOARD hardware
Topic: Mikrotik VDSL / DSL Modem?
Replies: 314
Views: 87382

Re: Mikrotik VDSL / DSL Modem?

My proxmox host running the CHR has a Draytek vigornic 132 in bridge mode for modem (It's essentially a vigor 130 on a PCI-E card)
by dragon2611
Mon Oct 17, 2016 11:08 am
Forum: General
Topic: CHR PPP MTU
Replies: 2
Views: 472

Re: CHR PPP MTU

Interesting thanks,

Might have to take a packet capture and then see if the ISP (Or something in the middle) isn't responding correctly.

I tried setting the MTU at 1500 from the ISP end as well but no dice (Yes they actually expose that in their control panel!)
by dragon2611
Sun Oct 16, 2016 7:41 pm
Forum: General
Topic: CHR PPP MTU
Replies: 2
Views: 472

CHR PPP MTU

Any reason the CHR wouldn't be able to run a 1500byte PPP MTU providing the physical interface is at least 1508 Bytes as is the Vswitch.etc?

Mine connects at 1500 and then drops to 1480 for some reason.

Had 1500Byte MTU working on the pfSense firewall that I was using previously.
by dragon2611
Mon Jun 27, 2016 7:46 pm
Forum: RouterBOARD hardware
Topic: Mikrotik VDSL / DSL Modem?
Replies: 314
Views: 87382

Re: Mikrotik VDSL / DSL Modem?

Draytek have just made a Router/VDSL modem on a PCI-E card, but don't know about pricing yet but it can also bridge, if it's NIC driver is supported by routerOS then maybe X86 builds could be done using it if you did want an all in one box.
by dragon2611
Wed Jun 15, 2016 3:50 pm
Forum: General
Topic: IPv6 /127
Replies: 18
Views: 2401

Re: IPv6 /127

Without a corresponding interface route it won't work as it won't know which interface to send the packet out of to reach that /32 or /128 /32 /128 should really only be used on PPP links where you can just next hop the interface and in loopbacks for IGP's.etc I have done things with /32's on provid...
by dragon2611
Wed Jun 15, 2016 2:06 pm
Forum: General
Topic: IPv6 /127
Replies: 18
Views: 2401

Re: IPv6 /127

I already worked around that issue by making it a /126 ;-)
by dragon2611
Wed Jun 15, 2016 1:44 pm
Forum: General
Topic: IPv6 /127
Replies: 18
Views: 2401

Re: IPv6 /127

A /128 contains 1 IP address what do you propose to put on the other end of the Link?
by dragon2611
Wed Jun 15, 2016 1:36 pm
Forum: General
Topic: IPv6 /127
Replies: 18
Views: 2401

Re: IPv6 /127

You are confusing PPP with Ethernet links that only have 2 devices on (which can also be refereed to as a point2point link as there are only 2 possible destinations) in which case a /31 is acceptable to use providing both devices know how to support it.
by dragon2611
Tue Jun 14, 2016 6:32 pm
Forum: General
Topic: IPv6 /127
Replies: 18
Views: 2401

Re: IPv6 /127

I thought the advise had since changed regarding the use of such subnet sizes on router2router links.
by dragon2611
Tue Jun 14, 2016 6:19 pm
Forum: General
Topic: IPv6 /127
Replies: 18
Views: 2401

Re: IPv6 /127

In this case the other "Router" is actually a proxmox host, due to it being a rented dedicated server and me not having a seperate router onsite. Essentially the Host has an IPv6 address (now a /126) and next-hops the CHR virtual machine. Same for Ipv4 execpt in that case it's RFC1918 space and only...
by dragon2611
Sun Jun 12, 2016 6:59 pm
Forum: General
Topic: IPv6 /127
Replies: 18
Views: 2401

IPv6 /127

Not sure RouterOS likes /127's or at least it doesn't seem to like /127's where the gateway is :: For instance 2607:XXXX:XXa::1 with a gateway of 2607:XXXX:XXa:: RouterOS would ping 2607:XXXX:XXa:: but it would show unreachable in ipv6 routes and wouldn't use it as the default gateway I swapped to a...
by dragon2611
Mon Apr 11, 2016 1:06 am
Forum: RouterBOARD hardware
Topic: HEX as a switch?
Replies: 5
Views: 1351

Re: HEX as a switch?

How not to install an RB750 :lol: http://i.imgur.com/9Ma7ZJh.jpg I'll probably replace it with something gig capable shortly but it was either that on an RB450G that I had spare that could be poe powered :lol: Seriously why the builders would pre-wire the place with CAT5, then put it in the TV distr...
by dragon2611
Tue Mar 29, 2016 2:25 pm
Forum: RouterBOARD hardware
Topic: HEX as a switch?
Replies: 5
Views: 1351

Re: HEX as a switch?

I'd be a bit worried about it if it got so hot to melt the case :shock: I do have some RB450G's spare but I think the HEX might be a better fit as it looks to be smaller and also hopefully a bit more energy efficient/runs cooler? There's a large hole in the wall in the back of the box so it's not to...
by dragon2611
Tue Mar 29, 2016 1:51 pm
Forum: RouterBOARD hardware
Topic: HEX as a switch?
Replies: 5
Views: 1351

HEX as a switch?

As per title really, I need a small remote powered switch with at least 4 ports, Given the HEX seems smaller than the 250GS and has the full routerOS i'm wondering if it's a better choice. Also do Routerboards shut down if they get to hot it might need to be shoved into the TV distribution box as th...
by dragon2611
Wed Dec 23, 2015 6:24 pm
Forum: Forwarding Protocols
Topic: OSPFv3 with a UBNT edgerouter?
Replies: 7
Views: 2433

Re: OSPFv3 with a UBNT edgerouter?

Done Also i've changed the IPv6 addressing since last night as it turns out I'd used the wrong ranges on the router's at home :lol: I think I accidentally used part of my /48 from tunnel-broker with part of my /56 from the co-lo provider :lol: Although in the case of this specific problem correcting...
by dragon2611
Wed Dec 23, 2015 3:28 pm
Forum: Forwarding Protocols
Topic: OSPFv3 with a UBNT edgerouter?
Replies: 7
Views: 2433

Re: OSPFv3 with a UBNT edgerouter?

OSPF is working between them for Ipv4 but OSPFv3 (which is needed for the Ipv6) isn't I've recently gotten a /56 from my co-location provider so rather than use tunnelbroker (which seems to geolocate to the USA more often than not) I was trying to use the Site2Site tunnels I have in place to route s...
by dragon2611
Wed Dec 23, 2015 9:19 am
Forum: Forwarding Protocols
Topic: OSPFv3 with a UBNT edgerouter?
Replies: 7
Views: 2433

OSPFv3 with a UBNT edgerouter?

I'm guessing I've missed a setting or something on the UBNT side as My 2 RB450G's seem to be happily talking OSPFv3 to each other but I can't get the RB at home to talk to the Edgerouter Any idea's, the message I keep getting on the Routerboard is "info Database Description packet has different opti...
by dragon2611
Tue Dec 15, 2015 8:15 pm
Forum: General
Topic: 6.33.3 RB450G can't jump Input PPP to ppp chain.
Replies: 0
Views: 1028

6.33.3 RB450G can't jump Input PPP to ppp chain.

Winbox 3.0 When trying to setup a jump rule Chain input input interface "all ppp" action jump jump target ppp Couldn't add New firewall rule -outgoing interface matching not possible in input and prerouting chains (6) Errm I never asked it to perform any output interface matching? Edit: rule works f...
by dragon2611
Tue Dec 15, 2015 10:56 am
Forum: RouterBOARD hardware
Topic: 8 port POE switch?
Replies: 7
Views: 1984

Re: 8 port POE switch?

Any dumb switch does support vlans. Do you really need it to be manageable? http://www.alfa.net.my/products/Alfa-Network-APS08G-8-Port-Gigabit-802.3at-PoE-Desktop-Switch/62 Yes otherwise any device can just tag a packet with a VLAN tag and join that Vlan, which kind of defys the point of segmenting...
by dragon2611
Sun Dec 13, 2015 12:39 pm
Forum: RouterBOARD hardware
Topic: 8 port POE switch?
Replies: 7
Views: 1984

8 port POE switch?

Any recommendations for a small Silent POE switch to use at home? Needs to be managed/smart (Vlan support as a minimum) and have 802.3af (or 802.3.at) which rules out the mikrotik switches :( Was going to get an RB3011 at home to upgrade an aging RB450G, but starting to think a 850gx2 with the H/W c...
by dragon2611
Sun Dec 13, 2015 12:11 pm
Forum: Announcements
Topic: hAP lite
Replies: 389
Views: 164049

Re: hAP lite

Change to 20 MHz only and see the difference! Some phones dont understand 40 MHz. ;) Also if you are in Europe or somewhere that allows the use of channels 12,13 make sure you're not actually using them, some devices forget that not everywhere prohibits their use. HP stream7 comes to mind here but ...
by dragon2611
Fri Dec 11, 2015 5:10 pm
Forum: General
Topic: NAT broadcast to unicast?
Replies: 4
Views: 1072

Re: NAT broadcast to unicast?

It's not UPNP, but the device tends to reply to queries directed at by sending the reply to the broadcast address on port 9671 I believe (It's a lightwaveRF link, it pulls electricity usage and controls a few remote switched sockets) I'm also probably getting an IR blaster if it ever turns up, who k...
by dragon2611
Fri Dec 11, 2015 5:02 pm
Forum: General
Topic: NAT broadcast to unicast?
Replies: 4
Views: 1072

Re: NAT broadcast to unicast?

If I was going to bridge across sites it would only be my IOT vlan anyway so wouldn't be all the remote sites traffic ;-)

Also no need for static routes, I have OSPF working between the 2 sites ;-)
by dragon2611
Fri Dec 11, 2015 3:51 pm
Forum: General
Topic: NAT broadcast to unicast?
Replies: 4
Views: 1072

NAT broadcast to unicast?

Would it be possible to catch a UDP broadcast packet with an NAT rule and redirect it to a host that's not in the same L2 segment of the network? I have an IOT device that tends to send stuff to the broadcast address (UDP I think) and I want to interact with it from a Virtual Machine that's sitting ...
by dragon2611
Sun Dec 06, 2015 2:29 pm
Forum: General
Topic: L2TP/IPSEC
Replies: 0
Views: 519

L2TP/IPSEC

Hmm it looks like if you check use IPSEC in routerOS 6.33.3 on an RB450 and the remote end also allows plain L2TP it's possible to get into a situation where the IPSEC doesn't come up and the L2TP ends up connected without encryption. I would have thought it would be sensible if the IPSEC option is ...
by dragon2611
Thu Dec 03, 2015 10:16 pm
Forum: General
Topic: 6.33.2 RB450 L2TP/IPSEC dial-out duplicate IPSEC Peer entries.
Replies: 0
Views: 444

6.33.2 RB450 L2TP/IPSEC dial-out duplicate IPSEC Peer entries.

As per title really, noticed that when RouterOS is configured to initate a L2TP/IPSEC connection it creates a dynamic Peer in IPSEC > Peers. Fine but it doesn't seem to do a very good job of cleaning up after itself as dispite having 2 L2TP/IPSEC tunnels I have about 24 peers created 22 of them are ...
by dragon2611
Fri Nov 20, 2015 3:01 pm
Forum: RouterBOARD hardware
Topic: RB3011 Block diagram?
Replies: 230
Views: 50974

Re: RB3011 Block diagram?

Hoping a desktop version is not far behind, the RM version won't fit where I want to locate one (To wide)
by dragon2611
Thu Nov 19, 2015 11:57 pm
Forum: RouterBOARD hardware
Topic: RB3011 Block diagram?
Replies: 230
Views: 50974

Re: RB3011 Block diagram?

http://linitx.com/product/mikrotik-rout ... -psu/14584 - Interesting LinITX are listing the 3011-RM for start DEC.

Might ask them about it if I remember as sometimes the dates on the sites aren't that accurate.
by dragon2611
Fri Nov 06, 2015 3:30 pm
Forum: RouterBOARD hardware
Topic: RB3011 Block diagram?
Replies: 230
Views: 50974

Re: RB3011 Block diagram?

I asked support on the off chance they'll reply. I have a RB450G i want to upgrade since it's a bit of a bottleneck, problem is I can't really justify the price of a CCR1009, I'm not sure an RB2011 would be enough of an upgrade to justify the cost of that either depends how much fastrack helps it al...
by dragon2611
Mon Sep 28, 2015 8:35 pm
Forum: General
Topic: IPSEC priority?
Replies: 1
Views: 747

IPSEC priority?

Could the priority option in IPSEC be used for failover? I.e if I configure 2 policies with the same source/destination but different SA endpoints will router OS try to use the low priority one if the higher priority one drops out or am I completely misunderstanding what the priority option in IPSEC...
by dragon2611
Wed Jun 10, 2015 1:00 pm
Forum: RouterBOARD hardware
Topic: RB450G not booting
Replies: 7
Views: 1561

Re: RB450G not booting

I had a RB450G do something similar and reloading it via Netinstall fixed it so it's definitely worth trying.
by dragon2611
Wed Jun 10, 2015 12:54 pm
Forum: Announcements
Topic: hAP lite
Replies: 389
Views: 164049

Re: hAP lite

MIkrotik would not produce ADSL product but I will realy like to see some. Hate to have 2 devices ADSL(bridge) + Mikrotik at client place. Or at least some Small POE powered VDSL modems, it seems there is not a POE DSL modem, maybe they're to power hungry for that? I have 2 Huawei HG612's one doing...
by dragon2611
Mon Jun 08, 2015 6:35 pm
Forum: General
Topic: RB450G VS RB750/751-2NHD
Replies: 4
Views: 1471

Re: RB450G VS RB750/751-2NHD

If you want to be able to saturate your internet line without causing latency for online games you'll have to implement QoS on your end. The ISP already does downstream QOS, if their traffic management system is working properly it should treat real-time protocols such as gaming as higher priority....
by dragon2611
Mon Jun 08, 2015 5:32 pm
Forum: General
Topic: RB450G VS RB750/751-2NHD
Replies: 4
Views: 1471

Re: RB450G VS RB750/751-2NHD

Interestingly I had some friends round the other week who were trying to play TF2, I'd not installed it on my laptop so was downloading it from steam and was causing them latency spikes of around 200ms+, it seemed the RB cpu was spiking to 90% at around the same time. Two different issues here: CPU...
by dragon2611
Mon Jun 08, 2015 2:41 pm
Forum: General
Topic: Request: EOIP with dynamic IP's
Replies: 1
Views: 485

Request: EOIP with dynamic IP's

Since EOIP will soon support encryption it would be nice if this could be combined with support for dynamic IP's where for the local IP could be pulled from the internet and the remote IP could be resolved from an FQDN.

Currently if you enter an FQDN winbox resolves it and adds the IP.
by dragon2611
Mon Jun 08, 2015 2:26 pm
Forum: General
Topic: RB450G VS RB750/751-2NHD
Replies: 4
Views: 1471

RB450G VS RB750/751-2NHD

I've got an RB450G connected to 2 DSL isps via bridged modems one providing ~72/20 and one providing 14/1 (One is VDSL2 and the other is ADSL2+) both connections are PPPoE Fairly basic Nat/Firewall setup, 1 Mangle rule to direct inbound traffic on the 2nd isp to another routing table (so the reply g...
by dragon2611
Sat Mar 07, 2015 10:37 pm
Forum: General
Topic: feature request: VPN/PPP bonding
Replies: 3
Views: 1487

Re: feature request: VPN/PPP bonding

Isn't that already achievable with nTH packet based mangle rules (All be it rather CPU intensive).
by dragon2611
Wed Mar 04, 2015 4:37 pm
Forum: Announcements
Topic: hAP lite
Replies: 389
Views: 164049

Re: hAP lite

If Mikrotik are planning to offer some more "Home" products how about some nicer looking cases? Personally I'm more about the feature-set but then again if these are going to end up in home environment where lets face it they're likely to end up standing next to a TV.etc (Yes I know that's probably ...
by dragon2611
Fri Feb 20, 2015 8:58 pm
Forum: Announcements
Topic: hAP lite
Replies: 389
Views: 164049

Re: hAP lite

Now how about a "Pro" with at least 802.11ac 2x2:2 on 5ghz and 2.4ghz 802.11n + gigabit ethernet.

Serious lack of decent 802.11ac ap's out there, it's mostly either consumer crap or expensive enterprise stuff.
by dragon2611
Wed Jun 12, 2013 12:53 pm
Forum: General
Topic: Bitdefender and windbox
Replies: 2
Views: 495

Re: Bitdefender and windbox

I'm guessing it was a duff definitions update as it used to be fine with it

Anyway seeing as apparently Bitdefender isn't capable of the simple task of restoring a file from quarantine when told to it's gone from my system.

Also just noticed my typo in the topic title :lol: :roll:
by dragon2611
Wed Jun 12, 2013 12:14 am
Forum: General
Topic: Bitdefender and windbox
Replies: 2
Views: 495

Bitdefender and windbox

Looks like bitdefender is blocking winbox from RouterOS 6.0 thinking it's a virus.

Useless piece of junk didn't even restore the file when it was told to and was blocking subsequent re downloads of winbox, Since it seems impossible to tell this AV software who's in charge it's now uninstalled.
by dragon2611
Wed May 29, 2013 12:35 am
Forum: General
Topic: IPSEC to ASA
Replies: 1
Views: 509

Re: IPSEC to ASA

Upgrading the routerboard to RouterOS 6 seems to have solved it, now Dead peer detection seems to be working properly.

Not sure if it was configuration specific or something wrong with DPD in 5.25
by dragon2611
Tue May 28, 2013 4:37 pm
Forum: General
Topic: IPSEC to ASA
Replies: 1
Views: 509

IPSEC to ASA

I have an IPSEC tunnel between a RB450G running RouterOS 5.25 that seems to randomly stop working. DPD is enabled on the Mikrotik end and I think it's also enabled on the ASA and as far as I can tell the SA lifetimes match up at each end. Manually flushing the SA's on the Routerboard usually fixes i...
by dragon2611
Wed Apr 03, 2013 2:46 pm
Forum: SwOS
Topic: Dual Mode ports?
Replies: 8
Views: 4117

Re: Dual Mode ports?

Yes it does indeed, you could however copy all the VM images to an external device/storage. Then reinstall it, create the VM's again on the proxmox server, and then copy the image back to the host in the specific VM folder. Then you wont loose any VM data ;) Just a lot of downtime on the VM's :lol:...
by dragon2611
Tue Apr 02, 2013 7:28 pm
Forum: SwOS
Topic: Dual Mode ports?
Replies: 8
Views: 4117

Re: Dual Mode ports?

Ofcourse im not sure which hardware you got there, but all the hardware i tried here just ignore the vlan packets, as they do not support it / or have it disabled. If hardware is causing trouble when you have vlans on the link, but also untagged vlan then i would suggest getting other hardware whic...
by dragon2611
Mon Apr 01, 2013 12:44 pm
Forum: SwOS
Topic: Dual Mode ports?
Replies: 8
Views: 4117

Re: Dual Mode ports?

Ofcourse im not sure which hardware you got there, but all the hardware i tried here just ignore the vlan packets, as they do not support it / or have it disabled. If hardware is causing trouble when you have vlans on the link, but also untagged vlan then i would suggest getting other hardware whic...
by dragon2611
Fri Mar 29, 2013 11:33 am
Forum: SwOS
Topic: Dual Mode ports?
Replies: 8
Views: 4117

Re: Dual Mode ports?

As far as i know you can do that when setting the ports on Optional (and leave the header 'as-is'). Then you put the ports on vlan4 and packets for vlan9 will travel thru it. Like this: Screen Shot 2013-03-29 at 05.16.24.png Doesn't work as it leaves the traffic tagged with Vlan4 which is what caus...
by dragon2611
Wed Mar 27, 2013 4:23 pm
Forum: Beginner Basics
Topic: IPSEC Firewall?
Replies: 1
Views: 493

IPSEC Firewall?

Is there a way to match a packet on the firewall only if it came in via an IPSEC tunnel?

I.e I want to allow a packet only if it comes from a specific Source address but also only if it came in IPSEC encrypted.
by dragon2611
Thu Mar 21, 2013 12:22 am
Forum: SwOS
Topic: Dual Mode ports?
Replies: 8
Views: 4117

Dual Mode ports?

Is it possible to support Dual Mode ports on the GS250? Basically I need port 2 and 3 to pass untagged packets for Vlan4 and also to accept packets tagged with Vlan9 I seem to only manage either completely untagged (By striping on egress) or completely tagged, the problem is there are HP proliant ma...
by dragon2611
Sun Feb 24, 2013 11:13 pm
Forum: Beginner Basics
Topic: NAT problem
Replies: 14
Views: 4854

Re: NAT problem

OK today I have tried Chain srcnat Src Add 10.0.0.0/16 Dst Add 46.65.209.241 Proto TCP Dst Port 443 action = src-nat to 46.65.209.241 No joy Interestingly, I have IIS running on port 80 NAT'ed against one IP address and that works without one of the above rules. Services directed at port 80 on anot...
by dragon2611
Sun Feb 10, 2013 9:58 pm
Forum: Beginner Basics
Topic: RB750 - VLANs/Bridges/Interfaces
Replies: 6
Views: 2549

Re: RB750 - VLANs/Bridges/Interfaces

I'd have thought a cisco AP could send Vlan Tagged packets.
by dragon2611
Sun Feb 10, 2013 9:48 pm
Forum: Beginner Basics
Topic: RB750 - VLANs/Bridges/Interfaces
Replies: 6
Views: 2549

Re: RB750 - VLANs/Bridges/Interfaces

Essentially what I'm trying to do is: Port 1 - WAN Port 2 - VLAN10 client (no tag) Port 3 - VLAN10 client (no tag) Port 4 - VLAN10 client (no tag) Port 5 - Cisco WAP (VLAN10 no tag, VLANs20,40,60,80 with tags) No need to firewall between VLAN10 clients, but I'd want to firewall off the VLANs from c...
by dragon2611
Sun Feb 10, 2013 9:36 pm
Forum: Beginner Basics
Topic: RB750 - VLANs/Bridges/Interfaces
Replies: 6
Views: 2549

Re: RB750 - VLANs/Bridges/Interfaces

If it's just the one port on the RB that needs to carry the Vlan tagging it might be better to place the Vlans directly on that port and not the bridge. Also if you don't need to firewall or record traffic stats between the internal ports it might be better to shove them on the switch instead of usi...
by dragon2611
Sun Nov 25, 2012 5:22 pm
Forum: General
Topic: 5.22 released!
Replies: 104
Views: 47788

5.22 released!

My RB1200 normal again with ROS 5.22,thanks :)
What problems were you having before?


Sent from my Phone using Tapatalk
by dragon2611
Mon Nov 19, 2012 12:10 am
Forum: Wireless Networking
Topic: Tapatalk on this forum.
Replies: 2
Views: 718

Tapatalk on this forum.

Hi Normis

Much better thanks


Sent from my tablet using Tapatalk HD
by dragon2611
Sun Nov 18, 2012 1:37 pm
Forum: Wireless Networking
Topic: Tapatalk on this forum.
Replies: 2
Views: 718

Tapatalk on this forum.

Not even sure this is the right forum as they all show up as the same

Any idea If its possible to display the entire name






Sent from my tablet using Tapatalk HD
by dragon2611
Sun Sep 16, 2012 8:39 pm
Forum: RouterBOARD hardware
Topic: Spectrum Noise on RB751U-2HnD
Replies: 36
Views: 5846

Re: Spectrum Noise on RB751U-2HnD

Has anyone done a scan with another spectrum scanning device placed in with the RB751 to confirm that it actually is sending out that interference? Be interested to know if it shows up on something like a wispy and is actually the 751 kicking out interference or if it's simply some kind of data proc...
by dragon2611
Sun Sep 16, 2012 8:10 pm
Forum: RouterBOARD hardware
Topic: [SOLVED] RB 1200 initial setup
Replies: 8
Views: 3937

Re: RB 1200 initial setup

Thanks everyone for the answers. djdrastic, There are 10 Gigabit ports, from eth1 to eth10, in manual it is written that eth1 is configured as 192.168.88.1. Should I use eth10? There is no Windows there at the moment, can't try winbox now. Whist it does physically have 10 Supposedly Gigabit ports i...
by dragon2611
Sat Aug 18, 2012 4:32 pm
Forum: Scripting
Topic: Capture and then Parse DHCP packet?
Replies: 0
Views: 647

Capture and then Parse DHCP packet?

Is it possible to use scripting to firstly configure the packetsniffer to capture a DHCP exchange and then to parse the captured packet to retrieve the values present in DHCP options 242 and 243 in the DHCP offer/DHCP ack packet. What would be even better would be if It could run a HEX to DEC conver...
by dragon2611
Mon Aug 13, 2012 7:58 pm
Forum: Beginner Basics
Topic: Handling a situation of two interfaces on the same subnet
Replies: 3
Views: 936

Handling a situation of two interfaces on the same subnet

It can be done in winbox by double clicking the Ethernet interface Can't remember the commands off the top of my head Also you probably don't want slave te ports to the wan either bridge or set the ip on 3 and slave 4 to 3 if you don't need any monitoring or filtering on the traffic between 3 and 4 ...
by dragon2611
Mon Jul 30, 2012 8:56 pm
Forum: General
Topic: DHCP client option61
Replies: 5
Views: 2458

DHCP client option61

Had this working in one build think it might have been 5.15 but now it doesn't work on 5.19 However I changed from adsl to Vdsl and the ISP changed the login so i dont know if thats why there's some non alphanumeric chars in the login one thing I did notice during a pcap was the packet from the RB h...
by dragon2611
Thu Jun 07, 2012 12:23 am
Forum: General
Topic: Get the dumping of the Torch tools
Replies: 4
Views: 1970

Re: Get the dumping of the Torch tools

It would be nice to be able to export a torch.
Use packet-sniffer then open the dump in wireshark and filter as appropriate?

You might (Probably will) need to filter the initial capture as well or you'll take up a lot of storage space in a very short time period.
by dragon2611
Sat Jun 02, 2012 2:43 am
Forum: General
Topic: EOIP in place of VLAN?
Replies: 1
Views: 890

EOIP in place of VLAN?

Is EOIP a good option if I want to trunk traffic from a "Guest" SSID across an Infrastructure that cannot handle Vlans? The switch My Downstairs AP and my Alix (running routerOS) is on Does support Vlans but the switch my upstairs AP is connected to doesn't The AP upstairs is my RB751, so currently ...
by dragon2611
Wed May 02, 2012 1:32 pm
Forum: Beginner Basics
Topic: PBR/route marking with dynamic ip?
Replies: 2
Views: 789

Re: PBR/route marking with dynamic ip?

In the end I just switched things around so the DSL line with the dynamic IP was the default route and then used PBR to route stuff I didn't want hitting that line to my other DSL line (which has a static IP)
by dragon2611
Fri Apr 27, 2012 11:20 pm
Forum: Beginner Basics
Topic: PBR/route marking with dynamic ip?
Replies: 2
Views: 789

PBR/route marking with dynamic ip?

Does anyone know how to make a marked route if you have a dynamic IP on one of your WAN interfaces? It's easy if the IP is static as the gateway isn't likely to change but in the case of the Interface IP being assigned by DHCP it's quite possible to pickup an IP from a completely different range on ...
by dragon2611
Tue Apr 10, 2012 12:16 pm
Forum: General
Topic: Apple Airplay causes reboot on 751
Replies: 3
Views: 839

Re: Apple Airplay causes reboot on 751

Maybe it was just a neutrino passing through your 751's CPU :lol:
:-| I don't get it?
by dragon2611
Mon Apr 09, 2012 11:02 pm
Forum: General
Topic: Apple Airplay causes reboot on 751
Replies: 3
Views: 839

Apple Airplay causes reboot on 751

model: 751U-2HnD current-firmware: 2.38 RouterOS: 5.14 I have had it a couple of times now where using Airplay Display mirroring between an AppleTV connected to the Wired Lan and an Ipad2 connected via the wireless interface on the RB751 causes the RB to reboot itself a few seconds after the Ipad co...
by dragon2611
Wed Mar 28, 2012 2:06 pm
Forum: General
Topic: Vlan on a bridge?
Replies: 2
Views: 1484

Re: Vlan on a bridge?

The D-link was supposed to be putting anything connected to it's port 2 on the guest Vlan (Vlan 16) I did also have a virtual AP defined but wasn't worried about that untill I had sorted the wired side. The ethernet port was on a bridge so that might well have been the problem, for now I'll leave it...
by dragon2611
Tue Mar 27, 2012 11:57 pm
Forum: General
Topic: Feature request - Winbox connection timeout
Replies: 12
Views: 6560

Re: Feature request - Winbox connection timeout

I'm also voting for one of these options: 1) Session idle timeout - I got negative answer from MikroTik support about adding this feature at this moment 2) Remove active user session - the same as option (1) Any update on this? I have a router running v2.9.26 that shows several of the same user nam...
by dragon2611
Tue Mar 27, 2012 11:50 pm
Forum: General
Topic: RouterBOARD 751U-2HnD and version 5.11-5.13 problems
Replies: 9
Views: 2062

Re: RouterBOARD 751U-2HnD and version 5.11-5.13 problems

I had an issue upgrading my RB751 from 5.13 (i think) to 5.14 where it crashed after upgrading and had to be reset before it would respond at all
by dragon2611
Tue Mar 27, 2012 11:07 pm
Forum: General
Topic: Vlan on a bridge?
Replies: 2
Views: 1484

Vlan on a bridge?

Should a Vlan work ok i if it's been added to a bridge in routerOS? I have an RB751U-2HnD at home connected to a d-link DES-1100-16 switch, ROS is version 5.14 RB firmware 2.38 I wanted to create a "Guest" Vlan (802.1q tag = 16) which provides internet access only and doesn't allow access to my inte...
by dragon2611
Thu Mar 22, 2012 4:16 pm
Forum: General
Topic: RB1200 Packetloss issue
Replies: 13
Views: 3770

Re: RB1200 Packetloss issue

Spot when the port was changed.
by dragon2611
Thu Mar 22, 2012 3:14 pm
Forum: General
Topic: RB1200 Packetloss issue
Replies: 13
Views: 3770

Re: RB1200 Packetloss issue

Just had the Uplink moved to port4

Initial results look good Packetloss is gone and also much less jitter on the connection.

Will monitor it further but it looks like ports 9 and 10 on my RB1200 are faulty :(
by dragon2611
Thu Mar 22, 2012 2:04 am
Forum: General
Topic: RB1200 Packetloss issue
Replies: 13
Views: 3770

Re: RB1200 Packetloss issue

Hmm Pinging the other side of the router (ports 1 and 2) is fine, both 9 or 10 (enabled/disabled them independently) show the problem. I'm going to try and get the cable in port 10 moved to one of the other free ports just to eliminate ports 9/10 on my RB as having gone bad seeing as I've seen other...
by dragon2611
Thu Mar 22, 2012 12:08 am
Forum: General
Topic: RB1200 Packetloss issue
Replies: 13
Views: 3770

RB1200 Packetloss issue

I seem to be having a strange issue with my RB1200 where I start seeing 25%+ PL mostly in the evenings over the past few days. I did think I might have somehow caused a switching loop as I have 2 Uplinks to the Rack Switch one on ETH9 and on on ETH10 but even if I disable one of the ports and switch...
by dragon2611
Mon Mar 12, 2012 1:56 am
Forum: General
Topic: 5.12 > 5.14 didn't go so well (RB751)
Replies: 0
Views: 342

5.12 > 5.14 didn't go so well (RB751)

Tried upgrading my RB751U-2HnD, The files uploaded ok but upon rebooting to upgrade it didn't come back up :( Managed to reset the RB and load an old backup config from December last year, sure I had more recent backups but they might be on the other pc... Either way something in my config seems to ...
by dragon2611
Thu Feb 02, 2012 12:51 am
Forum: General
Topic: SSTP: recvd too small packet
Replies: 33
Views: 11582

Re: SSTP: recvd too small packet

Ah thanks that was driving me nuts, was trying to figure out what i'd done to my laptop to break SSTP seeing as it had worked the last time I'd used it and was working fine between routerboards.
by dragon2611
Wed Feb 01, 2012 1:25 pm
Forum: General
Topic: DHCP client option61
Replies: 5
Views: 2458

Re: DHCP client option61

Neither of the routerboards I can access from here are running 5.12 it seems

One is still on 5.8 and the other on 5.10 :?

I can't get access to my RB at home from here as my firewall rules disallow it.
by dragon2611
Thu Jan 26, 2012 10:11 pm
Forum: General
Topic: Artificial Ping delay
Replies: 6
Views: 1949

Re: Artificial Ping delay

I'd actually like to do this as well (although on an RB751), as I've seen some reports on my ISP's forum of the latency compensation in certain games giving players a disadvantage because their ping is to low and it's overcompensating. Would be interesting to add a 10 - 20ms delay and see if it's tr...
by dragon2611
Thu Jan 26, 2012 1:33 am
Forum: General
Topic: DHCP client option61
Replies: 5
Views: 2458

Re: DHCP client option61

Any ideas anyone?

I know the username/password I have works since I can get a DG834v4 with dgteam to connect by killing it's udhcpc and restarting it with the -c argument

But would much rather have the Public IP on the routerboard directly.
by dragon2611
Fri Jan 20, 2012 12:20 pm
Forum: General
Topic: DHCP client option61
Replies: 5
Views: 2458

DHCP client option61

Having a bit of trouble using the Client-ID option on the DHCP client, is this option supposted to be sending the data using dhcp option61? Trying to get my routerboard to get an IP address from Sky Broadband using a bridged DSL modem, although offically speaking you're only supposed to use the supp...
by dragon2611
Fri Dec 30, 2011 2:48 pm
Forum: General
Topic: protecting my network from outside (especially ISP)
Replies: 8
Views: 1726

Re: protecting my network from outside (especially ISP)

I've always wondered if the related rule allows the host you are exchanging traffic with open access through the firewall or it's just to allow replies to your request
by dragon2611
Fri Dec 30, 2011 2:26 pm
Forum: General
Topic: protecting my network from outside (especially ISP)
Replies: 8
Views: 1726

Re: protecting my network from outside (especially ISP)

I tend to allow established, related and then drop everything else incoming

Not sure if that's the best way to do it or if that opens up some potential holes
by dragon2611
Thu Dec 29, 2011 1:11 pm
Forum: General
Topic: Simulate Latency?
Replies: 2
Views: 1872

Simulate Latency?

Is there anyway to configure RouterOS to simulate a Higher latency link?

I did wonder if it was possible to use the Traffic Queues to hold the packets in a buffer for 10 - 20ms but I can't see how it would be done if it is indeed even possible.
by dragon2611
Thu Dec 01, 2011 12:19 pm
Forum: Beginner Basics
Topic: L2TP pass through Cisco ASA?
Replies: 0
Views: 861

L2TP pass through Cisco ASA?

Does anyone know how to make a cisco ASA pass through an L2TP connection initated from a Routerboard? There's an ASA between one of my routerboards and the internet connection and it seems to be preventing me making an outbound L2TP connection from the RB to a remote location. I can't easily move th...
by dragon2611
Mon Nov 28, 2011 2:16 am
Forum: General
Topic: OVPN Bonding
Replies: 1
Views: 522

Re: OVPN Bonding

We've just tried using L2TP and was able to get ~30mbit/s CPU usage was very high 90 - 100% so I doubt it's possible to get much more, that and there's only another 2-3Mbit/s I could possibly pull above that anyway before I run out of bandwidth on my DSL's
by dragon2611
Sat Nov 26, 2011 9:06 pm
Forum: General
Topic: OVPN Bonding
Replies: 1
Views: 522

OVPN Bonding

I've been testing an OVPN based bonding solution that a friend of mine's been working on. We're using a Linux server his end and a rb751 at my end. We seem to have gotten it working pretty well in terms of handling a link failure.etc but the problem I'm now having is I can't pull more than 20Mbit/s ...
by dragon2611
Sat Nov 26, 2011 5:43 pm
Forum: RouterBOARD hardware
Topic: RB751-U-2nHD 100% cpu
Replies: 20
Views: 5349

Re: RB751-U-2nHD 100% cpu

I was adding an Ovpn client interface when I lost connection.

It looks like watchdog rebooted the router, have raised a ticket with the autosupout.rif attached in the hope it will help MT track down the problem.
by dragon2611
Tue Nov 22, 2011 2:39 pm
Forum: RouterBOARD hardware
Topic: RB751-U-2nHD 100% cpu
Replies: 20
Views: 5349

Re: RB751-U-2nHD 100% cpu

Nope no proxy enabled

Has a couple VPN tunnels and usually 5 - 10 wifi clients

Can't think of much that needs to be written to flash
by dragon2611
Tue Nov 22, 2011 12:51 am
Forum: RouterBOARD hardware
Topic: RB751-U-2nHD 100% cpu
Replies: 20
Views: 5349

Re: RB751-U-2nHD 100% cpu

Hi Normis, I couldn't get a sup-out as I got kicked out of winbox before I could run one, watchdog was disabled so it wouldn't have run one and in the end had to give up and powercycle the RB. However I did manage to screencap this before It threw me out. Edit: Turned watchdog back on (I had turned ...
by dragon2611
Sun Nov 13, 2011 3:47 am
Forum: RouterBOARD hardware
Topic: RB751-U-2nHD 100% cpu
Replies: 20
Views: 5349

Re: RB751-U-2nHD 100% cpu

Thanks I'll try that next time it happens (providing I can actually login to the RB of course)

I'm wondering if it's related to this http://forum.mikrotik.com/viewtopic.php?f=1&t=47655 as I do use SNMP from a Cacti server to graph my bandwidth usage over time.

Running 5.8 but also had it on 5.7
by dragon2611
Sun Nov 13, 2011 3:14 am
Forum: RouterBOARD hardware
Topic: RB751-U-2nHD 100% cpu
Replies: 20
Views: 5349

RB751-U-2nHD 100% cpu

I seem to have a problem with my RB751-U-2nHD where it will spike to 100% CPU usage and sit there for several minutes making it almost totally unresponsive, if watchdog is enabled it will then eventually reboot itself. I do have an SSTP tunnel established, however I don't think it's encryption causi...
by dragon2611
Tue Oct 18, 2011 4:28 pm
Forum: General
Topic: RB450G 5.7 Vlans on a network bridge
Replies: 2
Views: 492

Re: RB450G 5.7 Vlans on a network bridge

there is a known problem with DHCP server. It will be resovled in RouterOS 5.8 Hi Janisk, I don't think this is just the DHCP server though as some of the VLans had an external DHCP server and still had no DHCP :( Edit: Forgot the DHCP relay is being used for those other vlans, Is this bug specific...
by dragon2611
Tue Oct 18, 2011 1:04 pm
Forum: General
Topic: RB450G 5.7 Vlans on a network bridge
Replies: 2
Views: 492

RB450G 5.7 Vlans on a network bridge

Hi All, Upgraded an RB450G from 5.5 and 5.7 and it seems the Vlans I had configured on a network bridge (2 ports) stopped working correctly. Downgraded from 5.7 to 5.6 and traffic on the Vlans started working again. I'm not 100% sure if it's all traffic on the Vlan or just broadcast traffic as none ...
by dragon2611
Sat Aug 20, 2011 2:06 am
Forum: General
Topic: RTL8100CL
Replies: 0
Views: 305

RTL8100CL

Does anyone know if the realtek RTL8100CL ethernet controller chip is supported in RouterOS X86? Reason I ask is I've seen a ADSL2+ PCI card that handles the DSL related stuff on the card itself and then presents itself to the host OS as a RTL8100CL based Ethernet controller. Currently run my Router...
by dragon2611
Tue Aug 09, 2011 10:10 pm
Forum: Beginner Basics
Topic: Policy based routing with PPPoE
Replies: 1
Views: 866

Re: Policy based routing with PPPoE

Ok seems to be working at the moment with the route set to use the interface rather than an IP address. The only problem i'm having currently is I can't ping my 2nd Interface from the internet when the primary Interface is also online. I think it's trying to reply via the other ISP :-/ Edit: fixed i...
by dragon2611
Tue Aug 09, 2011 8:54 pm
Forum: Beginner Basics
Topic: Policy based routing with PPPoE
Replies: 1
Views: 866

Policy based routing with PPPoE

Having a bit of fun with Setting up Policy based routing. I have 2 ISP's and I want certain computers to get routed over the 2nd ISP. ISP1 Is a static IP connection on ETH1 provided by A bridged DSL modem, this is my system default router ISP2 is PPPoE from a bridged DSL modem on ETH2. Whilst the IS...
by dragon2611
Sat Jul 30, 2011 1:36 am
Forum: Scripting
Topic: Script doesn't work
Replies: 3
Views: 1862

Re: Script doesn't work

Oh right.

I'd have thought referencing the numeric ID for the rule would be a lot less resource intensive than searching for a comment.

The only reason I can presume they disallow this is in case rules get re-orderd?
by dragon2611
Sat Jul 30, 2011 12:53 am
Forum: Scripting
Topic: Script doesn't work
Replies: 3
Views: 1862

Script doesn't work

I have a couple of scripts that's triggered by netwatch that quite simply turns on a mangle rule to tag packets to take a different route if one of my Wan connections drops. The ones "BEup" and "BEdown" function as expected , the other 2 do not seem to actually do anything when run regardless of if ...
by dragon2611
Tue May 17, 2011 1:08 am
Forum: Wireless Networking
Topic: Router OS 5.0 X86 Hotspot wrong IP address
Replies: 9
Views: 1591

Re: Router OS 5.0 X86 Hotspot wrong IP address

Do you have a DHCP server running on that interface? It should grab an address from that DHCP server pool. Yes [admin@MikroTik] > ip dhcp-server print detail Flags: X - disabled, I - invalid 0 name="My-Lan" interface=Lan lease-time=3d address-pool=My-lan bootp-support=static add-arp=yes authoritati...
by dragon2611
Tue May 17, 2011 12:51 am
Forum: Wireless Networking
Topic: Router OS 5.0 X86 Hotspot wrong IP address
Replies: 9
Views: 1591

Re: Router OS 5.0 X86 Hotspot wrong IP address

http://wiki.mikrotik.com/wiki/Manual:Hotspot_Introduction#Getting_an_Address One-to-one NAT can be disabled by un-setting the address-pool parameter under /ip hotspot. ie: /ip hotspot set 0 address-pool=none That just seems to cause the clients to end up without a usable IP address. my android phon...
by dragon2611
Sun May 15, 2011 3:25 pm
Forum: Wireless Networking
Topic: Router OS 5.0 X86 Hotspot wrong IP address
Replies: 9
Views: 1591

Re: Router OS 5.0 X86 Hotspot wrong IP address

Check "/ip hotspot host". Compare the "address" value to the "to-address" value. Are they the same? This is the hotspot 1:1 NAT feature. Ah yes thanks just spotted that actually, why it would 1:1 NAT to an IP in the same subnet seems a bit silly, is it a feature of Hotspot or a misconfiguration on ...
by dragon2611
Sun May 15, 2011 3:23 pm
Forum: Wireless Networking
Topic: Router OS 5.0 X86 Hotspot wrong IP address
Replies: 9
Views: 1591

Re: Router OS 5.0 X86 Hotspot wrong IP address

hmm Upgraded to 5.2 and now it's showing 192.168.0.3 for the same client.

Although I think I now know why

if I look in hosts under hotspot it shows 192.168.0.8 bound to 192.168.0.3 :lol:
by dragon2611
Sun May 15, 2011 3:02 pm
Forum: Wireless Networking
Topic: Router OS 5.0 X86 Hotspot wrong IP address
Replies: 9
Views: 1591

Router OS 5.0 X86 Hotspot wrong IP address

Will update to Version 5.2 shortly and retest but noticed this bug in 5.0 Connected a friends laptop to my guest network in order to download some updates onto it, went to the router's IP address after authenticating and got the status screen The status screen shows Welcome Guest1 IP 192.168.0.9 etc...
by dragon2611
Sat Feb 12, 2011 4:03 pm
Forum: General
Topic: Routeros X86 5RC9 Hotspot binding
Replies: 1
Views: 822

Routeros X86 5RC9 Hotspot binding

Not sure if it's my pc or not (It worked on RouterOS v4.16) but if I click on an active host in hotspot to bring up it's details and then hit the "make binding" button it will cause winbox to crash. Tried downloading the version of winbox from the router to make sure I had the correct version and it...
by dragon2611
Sun Jan 16, 2011 3:27 am
Forum: General
Topic: Multi IP Issue
Replies: 5
Views: 1501

Re: Multi IP Issue

Managed to figure out a work around. It seems the IP doesn't work until there has been some outbound traffic on it, originally my default NAT rules rewrote everything to my first IP so even if I sent a packet from the router with a source IP set to one of the others I think the NAT rule was catching...
by dragon2611
Tue Jan 11, 2011 3:04 pm
Forum: General
Topic: Multi IP Issue
Replies: 5
Views: 1501

Re: Multi IP Issue

so, even without firewall you just add ip address to the interface, that already has an address (same subnet) and you are not able to ping it? Or is there anything else as simple test of adding another address did not yield any ICMP packet failures. I could ping it from the LAN side of the network ...
by dragon2611
Mon Jan 10, 2011 10:47 pm
Forum: General
Topic: Multi IP Issue
Replies: 5
Views: 1501

Re: Multi IP Issue

The issue here is likely routing. Without more info on your setup, I can't give you a certain answer. You can only have one route to a given destination active at any given time, unless the route is for a specific packet/routing mark. Essentially, the IP all have the same default gateway, so only o...
by dragon2611
Fri Jan 07, 2011 6:36 pm
Forum: RouterBOARD hardware
Topic: Buy an RB or just licence x86?
Replies: 16
Views: 2117

Re: Buy an RB or just licence x86?

Ended up buying a Licence for L4 X86

I think it was partly due to "I want it now" syndrome.
by dragon2611
Fri Jan 07, 2011 5:27 pm
Forum: RouterBOARD hardware
Topic: Buy an RB or just licence x86?
Replies: 16
Views: 2117

Re: Buy an RB or just licence x86?

http://wiki.mikrotik.com/wiki/Manual:All_about_licenses#What_is_a_Replacement_Key It is a special key which is issued by the Support Team if you accidently lose the license, and the Mikrotik Support decides that it is not directly your fault. It costs 10$ and has the same features as the key that y...
by dragon2611
Fri Jan 07, 2011 5:17 pm
Forum: RouterBOARD hardware
Topic: Buy an RB or just licence x86?
Replies: 16
Views: 2117

Re: Buy an RB or just licence x86?

How are you booting the Alix boards? Licenses are tied to the media they are installed on. If you can't swap the drive to a different board you cannot use that board as a spare. Edit: saw you use a CF card. CF card failure still kills you. Edited my previous post some, by the way. I would hope that...
by dragon2611
Fri Jan 07, 2011 5:05 pm
Forum: RouterBOARD hardware
Topic: Buy an RB or just licence x86?
Replies: 16
Views: 2117

Re: Buy an RB or just licence x86?

A 450G will do just fine what you're trying to do. I also like buying RouterBOARDs simply because I like buying an entire stack from a vendor as it more or less guarantees compatibility for the next couple of years. That said, the Alix board should also work just peachy and will save you $55 over l...
by dragon2611
Fri Jan 07, 2011 4:58 pm
Forum: RouterBOARD hardware
Topic: Buy an RB or just licence x86?
Replies: 16
Views: 2117

Re: Buy an RB or just licence x86?

Whilst this is a nice discussion about bonding.etc and I'm quite happy to continue on with it can we get back to the original question for a moment? Which was actually about what would be best suited to doing ~40Mbit/s throuhput and will be able to handle radius.etc Don't really want to spend any mo...
by dragon2611
Fri Jan 07, 2011 6:05 am
Forum: RouterBOARD hardware
Topic: RB450G Gigabit problem
Replies: 11
Views: 6135

Re: RB450G Gigabit problem

I have a netgear GS105V2 and it seems to be VERY fussy about what it will talk to at 1Gbit/s although I'm unsure if the one I have was faulty, someone gave it to me but the original Psu was faulty (failing under load). According to the power rating it should work with a 12V 1A psu but when I tried i...
by dragon2611
Fri Jan 07, 2011 3:43 am
Forum: RouterBOARD hardware
Topic: Buy an RB or just licence x86?
Replies: 16
Views: 2117

Re: Buy an RB or just licence x86?

1) Shame really as I already own about 3 Alix 2D3's Is there a specific RB that's best to get? 2) MLPPP on the RB750 did work (Think it was a Cisco RAS at the other end) apart from the aforementioned issue when one of the lines dropped sync, throughput was fine when it worked, which was most of the ...
by dragon2611
Thu Jan 06, 2011 10:30 pm
Forum: RouterBOARD hardware
Topic: Buy an RB or just licence x86?
Replies: 16
Views: 2117

Re: Buy an RB or just licence x86?

My ISP offers a bonded service where they Bond 2 Adsl2+ lines using ATM layer bonding (G998.1 based I believe) the ISP provided router (Comtrend Nexuslink 5631) handles the DSL (including the bonding), and can be configured to act as an Ethernet > DSL bridge. As since my ISP uses RFC1483/2684 bridge...
by dragon2611
Wed Jan 05, 2011 4:52 pm
Forum: RouterBOARD hardware
Topic: Buy an RB or just licence x86?
Replies: 16
Views: 2117

Buy an RB or just licence x86?

Currently I have bonded ADSL2+, with the ISP supplied modem bridged to my RouterOS box. The DSL Sync speed is 42Mbit/s downstream 4.6Mbit/s upstream Currently running routerOS 5.7RC7 Demo (l1) on an Alix 2D3 (X86 500mhz Geode, 128mb cf card 256mb ram) Also doing IPv6 tunnelling via HE.net and have v...
by dragon2611
Wed Jan 05, 2011 2:38 pm
Forum: General
Topic: Multi IP Issue
Replies: 5
Views: 1501

Multi IP Issue

Just had a really strange Issue in RouterOS 5 RC7 with multiple IP's on the same interface. My ISP gives multiple IPv4s as single IP's from a larger subnet rather than allocate a proper routed subnet, this usually works fine on routerOS you just add the IP to the interface with the Subnet Mask given...
by dragon2611
Tue Dec 14, 2010 9:01 pm
Forum: General
Topic: ROS 5.0Rc5 always permits SMTP
Replies: 4
Views: 976

Re: ROS 5.0Rc5 always permits SMTP

That happens a lot with antivirus software. McAfee does the same thing - by default "prevent worms from mass emailing" is enabled, and telnet isn't a whitelisted process: can't check mail servers via telnet that way. Bit me more than a few times. With avast it actually does look like it's connected...
by dragon2611
Tue Dec 14, 2010 8:49 pm
Forum: General
Topic: ROS 5.0Rc5 always permits SMTP
Replies: 4
Views: 976

Re: ROS 5.0Rc5 always permits SMTP

Think i've figured it out. You're right RouterOS isn't actually allowing the connection through on port 25, infact it seems the PC wasn't even bothering to try and make an SMTP connection to the server. Turns out it was the Antivirus App running on the pc (Avast) looks like its SMTP proxy was either...
by dragon2611
Tue Dec 14, 2010 8:03 pm
Forum: General
Topic: ROS 5.0Rc5 always permits SMTP
Replies: 4
Views: 976

ROS 5.0Rc5 always permits SMTP

Hi all, I've been playing around with router OS v5 on an Alix2D3 and have come across a bit of an odd situation. It seems if you configure a rule in the forward chain to drop TCP port 25 connection it ignores it completely. I've even tried making this the first rule in the chain and yet somehow it s...
by dragon2611
Sat Oct 17, 2009 2:15 pm
Forum: General
Topic: Best way to detect a DSL link failure?
Replies: 0
Views: 358

Best way to detect a DSL link failure?

Hi all being playing around with MLPPP on RouterOS and one of the problems I seem to be having is detecting a DSL link failure as I find when that occurs I get a lot of packetloss until the PPP session eventually drops. I did try to speed up the proccess by setting up a Netmonitor to bounce the PPPo...
by dragon2611
Thu Oct 01, 2009 10:04 pm
Forum: General
Topic: DHCP woes
Replies: 8
Views: 1135

Re: DHCP woes

i more wonder why giaddr field is changed by your bridge. RouterOS dhcp-server will ignore requests that comes with giaddr set, as that means it has to have relay configured, if it is not, then request is addressed to another dhcp-server. adding second dhcp-server with relay ip address set should n...
by dragon2611
Thu Oct 01, 2009 11:15 am
Forum: General
Topic: DHCP woes
Replies: 8
Views: 1135

Re: DHCP woes

i more wonder why giaddr field is changed by your bridge. RouterOS dhcp-server will ignore requests that comes with giaddr set, as that means it has to have relay configured, if it is not, then request is addressed to another dhcp-server. adding second dhcp-server with relay ip address set should n...
by dragon2611
Wed Sep 30, 2009 4:24 pm
Forum: General
Topic: DHCP woes
Replies: 8
Views: 1135

Re: DHCP woes

giaddr field is set if you have dhcp-relay set up (or something equal is other vendor) in that case, dhcp server sees the request with giaddr set and ignores that because it has nothing to do with something that is not configured to work with. you can just set another dhcp-server to give addresses ...
by dragon2611
Wed Sep 30, 2009 10:21 am
Forum: General
Topic: DHCP woes
Replies: 8
Views: 1135

Re: DHCP woes

what is your OS that tries to get the ip address? Basically, if something is able to get IP, there is no reason why other devices could not do the same. Check your firewall, maybe it has something to do with it. I figured out what it is (with the help of some people in irc) it's the computers on th...
by dragon2611
Tue Sep 29, 2009 11:14 pm
Forum: General
Topic: DHCP woes
Replies: 8
Views: 1135

DHCP woes

I recently bought a routerboard 750 to try routerOS. I was previously loadbalancing 2 lines with pfSense but wanted to try MLPPP bonding, i replaced my pfsense box with the RB750 and the problem i'm having is my PC upstairs refuses to get a DHCP lease yet works fine if i manually set an IP on the in...
by dragon2611
Fri Sep 25, 2009 11:43 pm
Forum: RouterBOARD hardware
Topic: MLPPP @ 40MBit/s
Replies: 2
Views: 905

Re: MLPPP @ 40MBit/s

Hi, Until now we use RB450 for ML-PPP with two 16 Megabit ADSL2+ Lines and see no CPU problem at all. When the Lines are totally stuffed with downloads by a bittorrent client, cpu usage levels around 35%. Since the RB750 should be very similar in CPU Power, i suppose you won't be seeing any CPU pro...
by dragon2611
Fri Sep 25, 2009 12:20 am
Forum: RouterBOARD hardware
Topic: MLPPP @ 40MBit/s
Replies: 2
Views: 905

MLPPP @ 40MBit/s

Hi all Forgive me if this is a really stupid question but i'm completely new to routerboards and routerOS :( What would I need hardware wise to handle 40Mbit/s and MLPPP? (2x 20Mbit down 2Mbit up ADSL2+ lines) Would a routerboard 750 be able to handle it? I want to use NAT but I can always use my Pf...