Community discussions

MikroTik App

Search found 16 matches

by Paco
Sun Aug 07, 2022 6:49 pm
Forum: General
Topic: Open VPN setting for my home LAN
Replies: 6
Views: 1648

Re: Open VPN setting for my home LAN

You have network 192.168.1.0/24 and pool for dhcp: 192.168.1.100-192.168.1.254 and you have network 192.168.2.0/24 and pool for openvpn: 192.168.2.2-192.168.2.250 Thats fine. But look this: /ppp secret add local-address=192.168.2.1 name=admin profile=openVPN remote-address=\ 192.168.1.50 service=ovp...
by Paco
Sun Aug 07, 2022 12:58 am
Forum: General
Topic: OpenVPN scenario to Wireguard [SOLVED]
Replies: 8
Views: 1422

Re: OpenVPN scenario to Wireguard [SOLVED]

Thanks a lot again @Sob. On Router 2 in WG -> peers - I removed 198.19.198.1/32 (router 1 wg ip address) 172.17.72.0/22 (router 1 localnet) 198.19.198.3/32 (router 3 wg ip address) 172.28.0.0/24 (router 3 localnet) and I added only: 0.0.0.0/0 Now my laptop behind router 2 access internet via wan IP ...
by Paco
Sat Aug 06, 2022 11:57 pm
Forum: General
Topic: OpenVPN scenario to Wireguard [SOLVED]
Replies: 8
Views: 1422

Re: OpenVPN scenario to Wireguard [SOLVED]

Hello again, After add allowed networks on: On Router 2 - WG -> Peers 198.19.198.1/32 (router 1 wg ip address) 172.17.72.0/22 (router 1 localnet) 198.19.198.3/32 (router 3 wg ip address) 172.28.0.0/24 (router 3 localnet) and On Router 3 - WG -> Peers 198.19.198.1/32 (router 1 wg ip address) 172.17.7...
by Paco
Sat Aug 06, 2022 2:35 am
Forum: General
Topic: Open VPN setting for my home LAN
Replies: 6
Views: 1648

Re: Open VPN setting for my home LAN

On Bridge -> bridge see ARP and if selected "Enable" -> set it to proxy-arp.
by Paco
Sat Aug 06, 2022 2:03 am
Forum: General
Topic: OpenVPN scenario to Wireguard [SOLVED]
Replies: 8
Views: 1422

Re: OpenVPN scenario to Wireguard [SOLVED]

That's correct. Remember that allowed addresses is what can be on the other side, so there can be incoming packets with that source and outgoing packets with that destination. Nothing extra is required, aside from adjusting firewall if you didn't allow this traffic already. Thank you very much, @So...
by Paco
Sat Aug 06, 2022 1:57 am
Forum: General
Topic: How to prevent random SIP attacks on default port 5060
Replies: 36
Views: 4631

Re: How to prevent random SIP attacks on default port 5060

My point was, if I understand correctly that server sees all connections with 10.10.10.1 as source, it can be because of misconfigured srcnat. Oh sorry! I setup NAT like this: Chain: dstnat Dst address: XXX.XXX.XXX.XXX (My public IP) Protocol: 17 (udp) Dst port: 5060 Action: dst-nat To-addressess: ...
by Paco
Sat Aug 06, 2022 1:47 am
Forum: General
Topic: How to prevent random SIP attacks on default port 5060
Replies: 36
Views: 4631

Re: How to prevent random SIP attacks on default port 5060

Install fail2ban on freepbx and create custom action called for example mikrotik to make your PBX VM/Server/PI to block IP addresses directly on your mikrotik: https://wiki.mikrotik.com/wiki/Use_Mikrotik_as_Fail2ban_firewall Whitelist your known ip addresses in fial2ban in ignoreip section. You also...
by Paco
Sat Aug 06, 2022 1:24 am
Forum: General
Topic: OpenVPN scenario to Wireguard [SOLVED]
Replies: 8
Views: 1422

Re: OpenVPN scenario to Wireguard [SOLVED]

On router1 I have two peers on created on interface Wireguard-Server: Allowed address for Router 2 peer: 198.19.198.2/32 and 172.27.72.0/22 Allowed address for Router 3 peer: 198.19.198.3/32 and 172.28.0.0/24 On Router 2 - WG -> Peers I have only one Peer -> Router 1 with allowed address: 198.19.198...
by Paco
Sat Aug 06, 2022 12:28 am
Forum: General
Topic: OpenVPN scenario to Wireguard [SOLVED]
Replies: 8
Views: 1422

OpenVPN scenario to Wireguard [SOLVED]

Hello, I have 3 routers that has saw their local networks each others over OpenVPN server running on one of it. Router 1: RoS .7.4 My Home Router: RB4011iGS+5HacQ2HnD - Configured OpenVPN as server running on tcp (because if I use udp and route all lan traffic from router 2 or/and router 3 via openv...
by Paco
Wed Jun 03, 2020 7:29 am
Forum: Announcements
Topic: v6.47 [stable] is released!
Replies: 348
Views: 172771

Re: v6.47 [stable] is released!

system,error,critical error while running customized default configuration script: no such item
system,error,critical
Same here, after update to 6.47 my RB4011iGS+5HacQ2HnD-IN and cAP Ac..
Antena gain was gone..
by Paco
Wed Oct 10, 2018 9:59 pm
Forum: General
Topic: Feature Request: OpenVPN [ovpn] udp tunnels
Replies: 249
Views: 139478

Re: Feature Request: OpenVPN [ovpn] udp tunnels

+1 for UDP support for OVPN on MikroTik
by Paco
Fri Aug 24, 2018 7:57 pm
Forum: General
Topic: Problem with Huawei E3372 4G modem on RB2011uias-2hnd-in
Replies: 6
Views: 5285

Re: Problem with Huawei E3372 4G modem on RB2011uias-2hnd-in

Same problem here. E3372 + 951G-2HnD.
current-firmware: 6.42.7
upgrade-firmware: 6.42.7
by Paco
Fri Aug 03, 2018 7:06 pm
Forum: General
Topic: After update to 6.42.6 - Netwatch on Up and on Down when running /system script run not work [SOLVED]
Replies: 2
Views: 2288

After update to 6.42.6 - Netwatch on Up and on Down when running /system script run not work [SOLVED]

After update a firmware and RBOS to last version - my failover scenario stopped working. I use netwatch to watch ping to 1.1.1.1. I have a firewall rule that block ping to 1.1.1.1 from wan-2 (it is pingly only from wan-1).. On UP I run: /system script run wan1-up On Down I run: /system script run wa...
by Paco
Fri Aug 03, 2018 5:56 pm
Forum: Announcements
Topic: v6.42.6 [current]
Replies: 102
Views: 64253

Re: v6.42.6 [current]

After update a firmware and RBOS to last version - my failover scenario stopped working. I use netwatch to watch ping to 1.1.1.1. I have a firewall rule that block ping to 1.1.1.1 from wan-2 (it is pingly only from wan-1).. On UP I run: /system script run wan1-up On Down I run: /system script run wa...
by Paco
Fri Feb 03, 2017 2:44 pm
Forum: Wireless Networking
Topic: RB951 - All wireless clients disconnect simultaneously
Replies: 6
Views: 5060

Re: RB951 - All wireless clients disconnect simultaneously

Same problem here on 951G-2HnD. Please provide us how to fix that.......