Just to be sure, this is the only device suffering?
Can you please share all (and complete) configs of all devices? So both CAPsMAN and CAPs?
And don't forget to remove serial.
Why?any suggestions on how to configure STP on capsman and caps?
You tell me...is the firewall blocking ICMP traffic?In the web page scenario surely it requires the IP to access it? but why can't i ping it?
/export file=anynameyoukike
/ip address
add address=172.18.224.5/22 comment=defconf interface=bridge network=\
172.18.224.0
add address=172.18.224.5/22 interface=ether1 network=172.18.224.0
It helps reading all remarks and questions posting. Glad it is working now.Sure there is no firewall on the machine blocking?
Depends: what is "correct"? What kind of logging are you expecting?What is correct then?
Is it accessable on the computer itself (hosting Jellyfin)?I'm trying to access it via IP address, so, http://192.168.0.254:8096
Depends on where you life I think, Europe isn't that bad.Are you also going to blame car manufacturers if the owner puts in water in the tank ?
Let's remain a bit logical and practical, shall we ?
It would actually be an issue if netisntall would have to be performed through any other port then WAN.Again: non-issue.
/export file=anynameyoulike
/interface wifi export file=anynameyoulike
To be honest...they are absolutely terrible...as paperweightsJust to be clear, you are not using them as paperweights?
/ip firewall raw
add action=drop chain=prerouting disabled=yes dst-port=80 protocol=tcp tls-host=!*diretta*
add action=drop chain=prerouting disabled=yes dst-port=443 protocol=tcp tls-host=!*diretta*
Did you create a support ticket for this?Same issue on a CCR2116, GPON SFP makes the health monitoring fail after some time...
As it misses 5GHz (as far as it is required?), I would prefer hAP AX3 personally.Or, to replace RB2011 with newer router maybe?
Would L009UiGS-2HaxD-IN be a good alternative to my RB2011UiAS-2HnD-IN?
/export file=anynameyoulike
/export file=anynameyoulike
I think he didn't mention that, he just informed us about an updated Intel driver that seems to give him better stability.The problem doesn't occur only with Intel network cards.
It depends on the order of rules, if the rule I mentioned is above the others you mentioned it makes perfect sense.TLDR, this doesn't really answer my question.. are there supposed to be hits on DST NAT rules for traffic that is not permitted by the FW?
/ip/firewall/filter/
add chain=forward action=drop connection-state=new connection-nat-state=!dstnat in-interface-list=WAN
/export file=anynameyoulike
Indeed, sfp1 is not the same as sfp-plus1...The WAN port definitely is not part of the bridge. It's sfp-sfplus1 and its by itself.
Anyway - I will update my ticket and revert.
Oops...Error message says it clearly.
I can think of a thousand and more reasons...want to know from @Marvitex.Security reasons?
dtim-period=1 is the default, you could try a bit higher, like 3.Honestly, for WiFi I'm starting to evaluate something else.
/export file=anynameyoulike
You could have found the information in the supplied links. Just to help you out, AX: yes and AC: no.do you set VLAN ID in Datapath in capsman
Assumption is the mother...Hmmmm perhaps join the latest century............. take advantage of wireguard and other features.........
Turned out (for me) that by setting ft-preserve-vlanid=no explicitely on the ac devices, roaming worked fine.One of the symptoms I would get is that the Stations would not roam from AX to AC and on the interface I would get the error: client was disconnected because could not assign vlan.
/export file=anynameyoulike
/export file=anynameyoulike
You could show your config just to make sure that all settings are correct.Mikrotik 7.17 - band steering does not work even neighborhood group is selected
/export file=anynameyoulike
You firewall rules set isn't complete. What made you decide to change it?Why you say, hope not?!?!?
/export file=anynameyoulike
It doesWeren't you on the "My Mikrotik wifi6 works like a charm"-train all the time?
Where is your DHCP client?It is still not able to receive ip from the isp1 router.
/export file=anynameyoulike
An additional layer of security?Allow VPN connections to router( from public internet)?
Why would it be safer than secured ssh access?
/interface wifi export
/export file=anynameyoulike
/export hide-sensitive file=anynameyoulike
To be honost...the administrator is crap or the router is crap. Because the latter is supporting port forwards I would bet my money on the first.how come be so dificult
Please check the documentation:How do I configure new forwarders in my DNS server settings?
Please post the updated config.I have made all the changed you mentioned but still have the same issue.
/interface wifi export
/export file=anynameyoulike
/ip dhcp-server
add address-pool=dhcp_pool1 interface=bridge name=dhcp1 lease-time=8h
/ip dns
set allow-remote-requests=yes cache-size=409600KiB servers=9.9.9.9 use-doh-server=https://dns.quad9.net/dns-query verify-doh-cert=yes
Can't reproduce this behavior.Is quad9 DoH ever going to work properly on Mikrotik ?
BBS?You prefer ICQ ?
/interface bridge
add name=GUEST-LAN vlan-filtering=yes
add name=LAN vlan-filtering=yes
Part of the uninstall process is a reboot.So extensive they missed 2 reboot steps to make it clear, as shown by the last posts in this thread
Never too old to lose one's virginity.Are you trying to corrupt seniors??
We need to get on a skype/discord chat so we can discuss losing my capsman virginity.
I wouldn't want to go back (from cAP ac to cAP AX to wAP AX). But that is just my opinionHonestly, maybe it's just my opinion but i have a feeling that cAP ac works better than all of this ax stuff...
You haven't mentioned what the log is currently mentioning.Hey, which logs I could enable to see more detail in the moment it happens. I want to be able to see more detail to be sure if this could be a threat or not.