i was just asking for "/whatever print json" (or /whatever print xml [for the serious old school folks) functionality in addition to "xxx print terse" or "xxx print detail" a while ago. doesn't seem to be a big deal for me at all. to be honest sending commands over ssh...
what does REST API offer the the current doesn't? The current API takes 3~5 minutes to setup and is very simple to use. I disagree, that it takes 5 minutes to use, it depends on what language you are using? and with an API it shouldn't How much can you do in the existing API that you can do in Winb...
I know I put this up before. (Please add a +1) Guys, would it benefit you? Please think about it. Guys can we encourage Microtik to add REST API for Microtik. Nearly all the API's we use now days are REST. To use REST is 5 minutes, to use the Microtik API, well it's not 5 minutes :( REST, JSON and X...
On just about any MikroTik, you can bridge the VLAN subinterface of one physical interface to the vlan subinterface of another physical subinterface. Or you can bridge a physical port to a vlan subinterface if you need untagged to tagged. Here is an example from the 1072 in our lab For tagged to ta...
I suppose what I am asking: If I plug a carrier into ether 3 and I have ether4 with a tagged vlan say vlan10 [windows vlan10]--[XEN host]--[cisco4948]--[vlan10 ether4 microtik1036 ether3] ---[point to point---carrier--voip sbc How do I get ether 3 to talk to VLAN10 which is tagged. For example: In W...
CCR its a router, i think you are comparing to a cisco switch Well my cisco's doing switching and routing. I know the CCR is a router I have 8 of them 4 are the new 72 core 10Gb/s This is only a VLAN trunking port, I can do that on either a Cisco switch or Cisco router. So does the CCR do the same?...
(I have re written this post) If I plug a carrier into ether 3 and I have ether4 with a tagged vlan say vlan10 [windows vlan10]--[XEN host]--[ trunk cisco4948 trunk]--[vlan10 ether4 microtik1036 ether3] --[point to point--carrier-voip sbc How do I get ether 3 to talk to VLAN10 which is tagged. For e...
We have a full lab of everything from Cisco 6509-E to just about ever flavor of CCR and rack mount MikroTik. When I get a chance I'll try this on a couple of VMs that go through our 40 Gbps CCR Data Center lab. Here is thread where MikroTik comments on IPSEC throughput in CCRs and it appears to top...
Hi If you had a 10Gb/s link between 2 CCR's and you wanted to encrypt the link what tunnel/encryption would you use and what speed do you lose due to the tunnel/encryption? Is it possible with CCR's to encrypt that link? While I do lots of encrypted tunnels with microtik I have never wanted to take ...
Why May you want to do this? block traffic by Country on a CCR Say you run an anycast network and you have 30 pops all 72 core 10gb interface CCR. An attack starts and you look at the botnet and it happens to be all machines from countries in Asia attacking 1 IP Your client base happens to be UK, an...
Hi, In CloudFlare you can block a country which they will be doing by IP block. On Microtik CCR I really would like to be able to block Countries by using the firewall. So tick boxes. Create a Rule. Select Countries, set rule to drop packets Now could use MaxMind binary DB or another ... Make my lif...
Why ban them just un-plug it .... no Joking aside! GeoDNS is becoming quite big now. How useful would Geo Firewall be in a CCR and Geo Routing? So could have it in the firewall Use it for MPLS or routing decisions based on Country.... The Maxmind db is just a binary DB sure you could upload that to ...
Hi Firewall - Geo IP We use lots of CCR's and will use the new one when it comes out 72 core. When our website customers get Dos attacked by Bot nets we can manage it often by moving them to Cloudflare if the attacks are massive, we can also do some Geo IP DNS stuff and BGP stuff but to make it much...
Hi We use access lists & port knocking on external CCR. Internal fw netscreen has SQL open to world when we port knock on perimeter CCR. Its very easy to delete move the wrong rules on Microtik. I do put a comment on rules do not DELETE or Move but mistakes easy and effect could be disaster. On ...
Hi, I have 2 CLOUD core routers I have Snom IP phone users connecting to the routers via OpenVPN over the internet. When a users Phone connects to either router A or router B router and their is an IP route added to that router how can I inject that route into the routing table of the other router. ...
That will teach me to leave my glasses down stairs, your correct, I have just done the other router and that is fine also with 2 different link locals and ipv6 BGP all good
Hi, thank you That worked .. but not sure its right ... Now the bridge is saying designated bridge where as the other says root bridge and the link local is the same as the link local on the other bridge, is that right ? All I did was take the peer down, disable the peer and instance, give a router ...
hi The /112 is on the interface connected to cogent. There is no link local on that interface I think for that to be created automatically on a Microtik it is has to be a /64 The other provider gave us a /64 and that has dynamically created a link local on the other interface where the /64 exists. S...
Hi, I have a /112 from cogent, because its a /112 Microtik doesn't create a link local. I need the link local so the incoming BGP routes are routable. My other ipv6 BGP feed I was given is a /64 and works fine as the link local was created automatically. How do I add a link local when I only have a ...
Hi OK getting closer. The IP address from Cogent is a /112 as 2001:978:2:21::59:2/112 Now the IP in their BGP route is link local. Does Micortik allow /112 addresses as link local? How do I get the router to see that as reachable or can I over write their BGP gateway with a filter and specify the ga...
Hi, I have 2 x CCR's both running full ip4 BGP to multiple upstreams all working fine. I have started to set up dual stack ipv6 separate sessions to ipv4. Ipv6 is up and announces my /32 I have a default route out which routes fine, I can ping ipv6 Google DNS and I can ping from USA to my ipv6 inter...
Hi v6.6 on CCR and 1100AHx2 From PC Host 192.168.0.166 When L2TP is up. Web browsing, ping trace OK via tunnel out of CCR From PC Host 192.168.0.166 When IPSec is up with L2TP ping and trace fine out via CCR, web Browsing hangs and does not work I have an LT2P IPSec VPN from Office to data Centre. C...