Community discussions

Search found 20 matches

by jantypas
Sun Feb 10, 2019 8:01 pm
Forum: General
Topic: RouterOS side-carring traffic
Replies: 0
Views: 355

RouterOS side-carring traffic

Here's a wierd one for the day folks.... I've got a couple of MT machiens -- one is the trusty RB1100AH that needs to be replaced soon. (That's going to a young person who wants to learn this stuff...) The other is a VM isntance of a CHR. I've even convinced a hard-core ASAer to look at Mikrotik. (C...
by jantypas
Sun Jan 13, 2019 12:31 am
Forum: RouterOS v6 RC and v7 BETA
Topic: Feature Request: zerotier vpn
Replies: 16
Views: 5434

Re: Feature Request: zerotier vpn

I, too, am a ZeroTier user. For those who wonder why we should put it in Microtik, especially if it can appear as a layer-2 interface: ZeroTier is great for doing OSPF across WANs -- yes, I know that's what BGP is for, but there are times we need a "broadcast" interface across a WAN ZeroTier is grea...
by jantypas
Fri Jan 19, 2018 9:11 pm
Forum: General
Topic: Comcast Business service and DHCPv6 from a Mikrotik device
Replies: 0
Views: 188

Comcast Business service and DHCPv6 from a Mikrotik device

OK, it's my fault, I told everyone I had it working, and it did work, until Comcast upgraded my modem.... Old setup: ----> Comcast Netgear Gateway --- Mikrotik 1100AH --- LAN Mikrotik would do a DHCPv6 request of the gateway with a prefix of /60 and a prefix hint of /60. I'd get it, and everything w...
by jantypas
Mon Jan 15, 2018 12:58 am
Forum: General
Topic: Looking for a successor to the RB110AH
Replies: 4
Views: 401

Re: Looking for a successor to the RB110AH

Very nice choices -- maybe the CCR9 will replace this unit and I can gift this unit to someone who's learning about Mikrotik while coming from an old ASA. He was a bit put off by the Mikrotik CLI but, he's learning you can get a lot of power for a fraction of the Cisco price. While I would love ever...
by jantypas
Mon Jan 15, 2018 12:55 am
Forum: General
Topic: Looking for a successor to the RB110AH
Replies: 4
Views: 401

Re: Looking for a successor to the RB110AH

Very nice choices -- maybe the CCR9 will replace this unit and I can gift this unit to someone who's learning about Mikrotik while coming from an old ASA. He was a bit put off by the Mikrotik CLI but, he's learning you can get a lot of power for a fraction of the Cisco price. While I would love ever...
by jantypas
Sun Jan 14, 2018 6:38 pm
Forum: General
Topic: Looking for a successor to the RB110AH
Replies: 4
Views: 401

Looking for a successor to the RB110AH

The subject says it all -- I've got a nice, solid RB1100AH. It's currently an edge router, with a 250Mb/40Mb connection to it. It serves as the edge fireall, IPv6 firewall etc. I let a PFsense box do the IPSEC and OpenVPN work because that's easier for others to handle when compared to the Mikrotik ...
by jantypas
Mon Sep 04, 2017 5:22 am
Forum: General
Topic: Time for VLAN confessions!
Replies: 6
Views: 837

Re: Time for VLAN confessions!

I shall -- what's special about it? However, I took a shot in the dark and just added the VLANs to the bridges. It works.
So most important, thanks to both of you for the help.
by jantypas
Sun Sep 03, 2017 5:54 am
Forum: General
Topic: Time for VLAN confessions!
Replies: 6
Views: 837

Re: Time for VLAN confessions!

Since the previous ASCII art attempt was bad, I have a visio image I can send if it helps....... First, we have a pfSense router with two interfaces -- one is for untagged traffic to keep things simple. The other interface is for tagged traffic (Vlans 100, 101, 102). The pFSense box sends out untagg...
by jantypas
Sun Sep 03, 2017 5:38 am
Forum: General
Topic: Time for VLAN confessions!
Replies: 6
Views: 837

Re: Time for VLAN confessions!

OK -- so here's what I have pFsense -----------------------------------------------------CRS Trunk Switch (100, 101, 102) | | | (All are hybrid ports) S1 S2 S3 | | | | UP 100 UP UP 101 102 | UniFIs Where UP = untagged ports and the numbers are VLANs. The pFSense box sends out untagged traffic to the...
by jantypas
Sat Sep 02, 2017 5:53 pm
Forum: General
Topic: Time for VLAN confessions!
Replies: 6
Views: 837

Time for VLAN confessions!

I knew this day would come -- I'm hoping people can soften the blow for I have sinned.... Years ago, when I started with Mikrotik, I bought the RB1100 (how I remember that fan), and as needs came, I started adding CRS switches. We didn't VLANs at the time, so I never bothered. I just kept adding swi...
by jantypas
Tue Aug 02, 2016 8:25 pm
Forum: General
Topic: Comcast IPv6 and Mikrotik
Replies: 1
Views: 625

Comcast IPv6 and Mikrotik

Hello all--- I know I'm close to an answer, but close enough.... I'm a Comcast static IP business customer. Comcast is now also offering me a ./56 V6 prefix (assigned by DHCPv6). First, since Comcast *truly* does not want to talk about this. I believe the following is true? Assume my prefix is 1111:...
by jantypas
Tue Mar 04, 2014 3:01 am
Forum: Beginner Basics
Topic: New CRS125 -- basic questions about switching vs routing
Replies: 5
Views: 1309

Re: New CRS125 -- basic questions about switching vs routing

Wish I could use VLANs, but not every switch in this environment is really VLAN friendly. I just removed them for the sake of the discussion, so I really have no choice but to double NAT at the moment.....
by jantypas
Tue Mar 04, 2014 2:50 am
Forum: Beginner Basics
Topic: New CRS125 -- basic questions about switching vs routing
Replies: 5
Views: 1309

Re: New CRS125 -- basic questions about switching vs routing

In a perfect world, I want to do this: Inter--- RB1100AH ----- CRS24------ Main Router |||| | switch wlan0 Assume the RB1100 has static WAN addresses and NATs all of its internal LAN ports. The LAN side of the IPs are on the subnet 10.0.0.0/16. I have a series of non-switched interfaces on the 1100....
by jantypas
Tue Mar 04, 2014 1:57 am
Forum: Beginner Basics
Topic: New CRS125 -- basic questions about switching vs routing
Replies: 5
Views: 1309

New CRS125 -- basic questions about switching vs routing

Good evening all.... I just received my new CRS125. I hate to admit it.... I've got my two 1100AHs, and they work great, but this is the first switch/router nit I've had where I need to use the switch and router parts, and I'm stumped. So, some basic questions: Assume the 1100s are doing their routi...
by jantypas
Mon Jun 17, 2013 4:18 pm
Forum: General
Topic: If not the RB1100AH, which one?
Replies: 3
Views: 545

Re: If not the RB1100AH, which one?

Both are fanless? Remember, this is in a home office.
by jantypas
Mon Jun 17, 2013 4:13 pm
Forum: General
Topic: If not the RB1100AH, which one?
Replies: 3
Views: 545

If not the RB1100AH, which one?

Well, it seems I can't get the RB1100AH anymore. This is a home office with high-bandwidth links, so the 450G isn't quite enough. I had an RB1100, but that wasn't office friendly with its fans, and I've the RB1100AH, but these are hard to get. What's the successor? We know it isn't the RB1200. It ne...
by jantypas
Tue May 07, 2013 6:23 am
Forum: General
Topic: L2TP/IPSEC and NAT -- but client IP is unknown (0.0.0.0/0)
Replies: 1
Views: 768

L2TP/IPSEC and NAT -- but client IP is unknown (0.0.0.0/0)

I, like many people are setting up an L2TP/IPSEC VPN. Thus far, I have: - Created the PPP user and address pool - Created the IPSEC policy with generate policy 0.0.0.0/0 - Set up the L2TP server - Added accept rules on the input chain for ports 500,1701 and 4500, as well as protocols 50 and 51. My r...
by jantypas
Sat Feb 05, 2011 10:47 pm
Forum: RouterOS v6 RC and v7 BETA
Topic: Anyone have success with IPSEC and NAT-T on 5.0r8
Replies: 1
Views: 1076

Anyone have success with IPSEC and NAT-T on 5.0r8

Hello all, I know it's a beta and, things do change... but has anyone been able to get a road-warrior config with L2TP/IPSEC and Mikrotik. I have already done the following with various degrees of success. On the laptop (a Mac), I'm behind a cellular router which has both dynamic IP to the network a...
by jantypas
Wed Dec 15, 2010 7:26 pm
Forum: General
Topic: Trouble creating certificates for OVPN server via Easy-RSA
Replies: 0
Views: 575

Trouble creating certificates for OVPN server via Easy-RSA

I'm sure this has been asked 10,000 times before, in fact, I know I was one of those 10,000, but I've had 9,999 failures since :-) I'm trying to set up a Routerboard 450G (OS 4.14) to be used as an OVPN server. I've got an OpenVPN server working just fine on a Fedora 14 box with self-signed certs fo...
by jantypas
Mon May 03, 2010 12:06 am
Forum: General
Topic: IP6 6-to-4 tunnels (Hurricane Electric) with Mikrotik
Replies: 0
Views: 518

IP6 6-to-4 tunnels (Hurricane Electric) with Mikrotik

Good morning all --- I'm making the transition from a Linux router to a Mikrotik box. I have the 450G right now while I wait for the 1100. I'm try to do several things.... Some are probably easy, but these are a few that have me stumped... 1. I've set up an OpenVPN server. I see where I put in my ce...