/interface wifi export file=anynameyoulike
To be honest...they are absolutely terrible...as paperweightsJust to be clear, you are not using them as paperweights?
/ip firewall raw
add action=drop chain=prerouting disabled=yes dst-port=80 protocol=tcp tls-host=!*diretta*
add action=drop chain=prerouting disabled=yes dst-port=443 protocol=tcp tls-host=!*diretta*
Did you create a support ticket for this?Same issue on a CCR2116, GPON SFP makes the health monitoring fail after some time...
As it misses 5GHz (as far as it is required?), I would prefer hAP AX3 personally.Or, to replace RB2011 with newer router maybe?
Would L009UiGS-2HaxD-IN be a good alternative to my RB2011UiAS-2HnD-IN?
/export file=anynameyoulike
/export file=anynameyoulike
I think he didn't mention that, he just informed us about an updated Intel driver that seems to give him better stability.The problem doesn't occur only with Intel network cards.
It depends on the order of rules, if the rule I mentioned is above the others you mentioned it makes perfect sense.TLDR, this doesn't really answer my question.. are there supposed to be hits on DST NAT rules for traffic that is not permitted by the FW?
/ip/firewall/filter/
add chain=forward action=drop connection-state=new connection-nat-state=!dstnat in-interface-list=WAN
/export file=anynameyoulike
Indeed, sfp1 is not the same as sfp-plus1...The WAN port definitely is not part of the bridge. It's sfp-sfplus1 and its by itself.
Anyway - I will update my ticket and revert.
Oops...Error message says it clearly.
I can think of a thousand and more reasons...want to know from @Marvitex.Security reasons?
dtim-period=1 is the default, you could try a bit higher, like 3.Honestly, for WiFi I'm starting to evaluate something else.
/export file=anynameyoulike
You could have found the information in the supplied links. Just to help you out, AX: yes and AC: no.do you set VLAN ID in Datapath in capsman
Assumption is the mother...Hmmmm perhaps join the latest century............. take advantage of wireguard and other features.........
Turned out (for me) that by setting ft-preserve-vlanid=no explicitely on the ac devices, roaming worked fine.One of the symptoms I would get is that the Stations would not roam from AX to AC and on the interface I would get the error: client was disconnected because could not assign vlan.
/export file=anynameyoulike
/export file=anynameyoulike
You could show your config just to make sure that all settings are correct.Mikrotik 7.17 - band steering does not work even neighborhood group is selected
/export file=anynameyoulike
You firewall rules set isn't complete. What made you decide to change it?Why you say, hope not?!?!?
/export file=anynameyoulike
It doesWeren't you on the "My Mikrotik wifi6 works like a charm"-train all the time?
Where is your DHCP client?It is still not able to receive ip from the isp1 router.
/export file=anynameyoulike
An additional layer of security?Allow VPN connections to router( from public internet)?
Why would it be safer than secured ssh access?
/interface wifi export
/export file=anynameyoulike
/export hide-sensitive file=anynameyoulike
To be honost...the administrator is crap or the router is crap. Because the latter is supporting port forwards I would bet my money on the first.how come be so dificult
Please check the documentation:How do I configure new forwarders in my DNS server settings?
Please post the updated config.I have made all the changed you mentioned but still have the same issue.
/interface wifi export
/export file=anynameyoulike
/ip dhcp-server
add address-pool=dhcp_pool1 interface=bridge name=dhcp1 lease-time=8h
/ip dns
set allow-remote-requests=yes cache-size=409600KiB servers=9.9.9.9 use-doh-server=https://dns.quad9.net/dns-query verify-doh-cert=yes
Can't reproduce this behavior.Is quad9 DoH ever going to work properly on Mikrotik ?
BBS?You prefer ICQ ?
/interface bridge
add name=GUEST-LAN vlan-filtering=yes
add name=LAN vlan-filtering=yes
Part of the uninstall process is a reboot.So extensive they missed 2 reboot steps to make it clear, as shown by the last posts in this thread
Never too old to lose one's virginity.Are you trying to corrupt seniors??
We need to get on a skype/discord chat so we can discuss losing my capsman virginity.
I wouldn't want to go back (from cAP ac to cAP AX to wAP AX). But that is just my opinionHonestly, maybe it's just my opinion but i have a feeling that cAP ac works better than all of this ax stuff...
You haven't mentioned what the log is currently mentioning.Hey, which logs I could enable to see more detail in the moment it happens. I want to be able to see more detail to be sure if this could be a threat or not.
/export file=anynameyoulike
Please first confirm your problem, is it DNS?any help to setup my own dns server?
What is the logging showing? It doesn't sound as fast transitioning.I even tested with a live tv channel playing on the tablet and there was abojt a second drop off when it switched. Is that good?
/interface/wifi/radio/print detail
/interface wifi print
/export file=anynameyoulike
You are very welcome. The radio mac address van be found on the Radios tab (in Winbox).Perfect, thank you very much. I will do the configuration and report back.