Community discussions

Search found 4714 matches

  • 1
  • 2
  • 3
  • 4
  • 5
  • 95
by pe1chl
Fri Sep 21, 2018 10:06 am
Forum: RouterOS v6 RC and v7 BETA
Topic: Feature requests
Replies: 875
Views: 148952

Re: Feature requests

"my plan" (if we can call it that) seems more realistic, because even though they would lose some control, isolated package could not easily mess up whole system. Yes it would certainly be nice to have user-mode daemons under isolated user IDs so they cannot mess with the MikroTik part of the syste...
by pe1chl
Thu Sep 20, 2018 11:04 pm
Forum: RouterOS v6 RC and v7 BETA
Topic: Feature requests
Replies: 875
Views: 148952

Re: Feature requests

I think MikroTik want to be in the market of selling relatively inexpensive hardware with a relatively powerful routing OS which is relatively easy to configure and which can be supported. (all those parameters of course can vary a little and some may have different opinions about them than others) ...
by pe1chl
Thu Sep 20, 2018 11:04 am
Forum: General
Topic: RB2011UiAS-IN ether boot death loop after auto-upgrade
Replies: 4
Views: 160

Re: RB2011UiAS-IN ether boot death loop after auto-upgrade

There appears to be an issue in 6.43.1 as I have seen this complaint in the 6.43.1 release topic several times. It is not related to your particular auto-upgrade script but just to the 6.43.1 release. Of course it is always dangerous to auto-upgrade firmware without watching the release topic, but o...
by pe1chl
Thu Sep 20, 2018 1:04 am
Forum: Announcements
Topic: v6.44beta [testing] is released!
Replies: 69
Views: 7526

Re: v6.44beta [testing] is released!

It can be a good idea to use "/export terse" as this tends to result in easier to identify changes e.g. when using gitweb or other colored-diff tools or when you want to grep your config collection for the occurrence of certain constructs (with meaningful output). This was added in 6.40 and before t...
by pe1chl
Wed Sep 19, 2018 10:25 pm
Forum: General
Topic: CCR1009 reset admin password and dont write in files
Replies: 9
Views: 307

Re: CCR1009 reset admin password and dont write in files

I think that should work but I have no experience with it, let's see if someone else answers it.
by pe1chl
Wed Sep 19, 2018 2:05 pm
Forum: General
Topic: CCR1009 reset admin password and dont write in files
Replies: 9
Views: 307

Re: CCR1009 reset admin password and dont write in files

When there are disk I/O errors and they remain after a netinstall, the router can effectively be scrapped.
(a technician with a suitable SMT soldering station could replace the flash, but it is likely not worth it)
by pe1chl
Wed Sep 19, 2018 10:24 am
Forum: Announcements
Topic: v6.44beta [testing] is released!
Replies: 69
Views: 7526

Re: v6.44beta [testing] is released!

I have set up automated exports and the output is saved in version control system, so I know what exactly changed and when. And it's perfect for me, but sadly incomplete. Luckily not every router has certificates and recreating users is bearable. But it would be better if export had everything. I a...
by pe1chl
Wed Sep 19, 2018 10:12 am
Forum: Announcements
Topic: v6.44beta [testing] is released!
Replies: 69
Views: 7526

Re: v6.44beta [testing] is released!

*) chr - assign interface names based on underlying PCI device order on KVM; Is this specificially for Linux KVM or is it also for other virtual environments? I have an interface name issue under VMware ESXi 6.7 would that be fixed by this? (I want the ether interfaces named in icreasing PCI bus nu...
by pe1chl
Wed Sep 19, 2018 10:02 am
Forum: General
Topic: logging to remote host is not work [SOLVED]
Replies: 3
Views: 135

Re: logging to remote host is not work [SOLVED]

It is a feature. When you specify multiple keywords on a single logging action, it only matches entries with ALL those keywords (AND function). This is obviously not possible with info,critical,warning,error because always only one of those keywords appears in a log entry. But you could use somethin...
by pe1chl
Wed Sep 19, 2018 9:59 am
Forum: General
Topic: CCR1009 reset admin password and dont write in files
Replies: 9
Views: 307

Re: CCR1009 reset admin password and dont write in files

You should have done that from the beginning! The flash space inside MikroTik routers (the 128MB you see) is really only for software and configuration storage, you should never put databases in there. When you want to use userman or dude, always add some external flash storage (SD card or USB key) ...
by pe1chl
Tue Sep 18, 2018 9:23 pm
Forum: RouterOS v6 RC and v7 BETA
Topic: Feature requests
Replies: 875
Views: 148952

Re: Feature requests

Stop the use of the bundle package, deliver the routers with the packages required for typical home router use: advanced-tools, dhcp, ppp, security, system, wireless (the latter only on devices that have wireless) and most important: add some method in system->packages to download and install packag...
by pe1chl
Tue Sep 18, 2018 9:17 pm
Forum: RouterOS v6 RC and v7 BETA
Topic: NTFS support
Replies: 34
Views: 2765

Re: NTFS support

Stop the use of the bundle package, deliver the routers with the packages required for typical home router use: advanced-tools, dhcp, ppp, security, system, wireless (the latter only on devices that have wireless) and most important: add some method in system->packages to download and install packag...
by pe1chl
Tue Sep 18, 2018 8:40 pm
Forum: General
Topic: CHR x86 ethernet interfaces random names
Replies: 6
Views: 340

Re: CHR x86 ethernet interfaces random names

I am running 6.43.1 (stable) I found that after a reset-to-defaults the name mapping appears consistent. Maybe I should have added all interfaces at once before first boot instead of one-by-one while the router was running.... (I hoped that the software would build a mapping from PCI-ID or MAC-Addre...
by pe1chl
Tue Sep 18, 2018 4:57 pm
Forum: Announcements
Topic: v6.43.1 [stable] and v6.43.2 [stable] is released!
Replies: 86
Views: 7397

Re: v6.43.1 [stable] is released!

Export issues still present - discovered when trying to cut/paste an existing export into 6.43.1:

- /ipv6 dhcp-server is exported before /ipv6 pool but server refers to pool names
- /ip neighbor discovery-settings set discover-interface-list=!somelistname forgets to export the ! (not)
by pe1chl
Tue Sep 18, 2018 3:26 pm
Forum: General
Topic: RouterOS 6.40.4 NIC order issues
Replies: 1
Views: 269

Re: RouterOS 6.40.4 NIC order issues

I am facing the same problem. I created a CHR and added 8 ethernet interfaces, one by one as I already know about this issue, hoping that they will keep the same name. After every interface I added I renamed it from ether1 to ether1-purpose1 etc until ether8-purpose8 and after having done all that o...
by pe1chl
Tue Sep 18, 2018 2:44 pm
Forum: General
Topic: CHR x86 ethernet interfaces random names
Replies: 6
Views: 340

Re: CHR x86 ethernet interfaces random names

I am facing the same problem. I created a CHR and added 8 ethernet interfaces, one by one as I already know about this issue, hoping that they will keep the same name. After every interface I added I renamed it from ether1 to ether1-purpose1 etc until ether8-purpose8 and after having done all that o...
by pe1chl
Tue Sep 18, 2018 10:55 am
Forum: RouterOS v6 RC and v7 BETA
Topic: New IP cloud is coming.
Replies: 74
Views: 9176

Re: New IP cloud is coming.

Ah finally some new functionality :D
Are you considering implementing a management VPN function?
by pe1chl
Mon Sep 17, 2018 11:36 pm
Forum: General
Topic: How to remotely administer Mikrotik routers in safeway
Replies: 19
Views: 677

Re: How to remotely administer Mikrotik routers in safeway

It's not a good idea in my case. I have dynamic IP at home. So I'm looking in solution to safe connect to router with static IP. Get a $3/month VPS with a static IP and run RouterOS CHR on it. Connect a VPN from all your routers to there and also from your home. You can also run The Dude on it for ...
by pe1chl
Mon Sep 17, 2018 6:49 pm
Forum: Announcements
Topic: v6.40.9 [bugfix] is released!
Replies: 50
Views: 8382

Re: v6.40.9 [bugfix] is released!

This is written in the 6.41 release notes. To downgrade across the 6.40-6.41 border you need to netinstall and reconfigure or load a backup you made on 6.40 or slightly before.
by pe1chl
Sun Sep 16, 2018 8:23 pm
Forum: General
Topic: DNSSEC
Replies: 33
Views: 7027

Re: DNSSEC

Yes, it would be interesting to watch how many things it would break. All kinds of DNS overrides would stop working. You could still set static records on your own router, but if done upstream, they would not pass the validation. About 1.5 years ago I enabled DNSSEC on a caching resolver used by a ...
by pe1chl
Sun Sep 16, 2018 12:57 pm
Forum: General
Topic: DNSSEC
Replies: 33
Views: 7027

Re: DNSSEC

True, so there could be some utility in a DNSSEC validating resolver inside RouterOS that returns errors to the clients for nonvalidating replies. However, I would not consider it a first priority. It will cause unexplainable problems to many users that just turn this on "because it should be a good...
by pe1chl
Sat Sep 15, 2018 12:19 pm
Forum: General
Topic: DNS Server TTL problem
Replies: 14
Views: 497

Re: DNS Server TTL problem

TTL of zero on a DNS reply is simply invalid. Fix the server that sends that. This does happen with RouterOS. As record's TTL in RouterOS cache goes down, when I send query at the right moment, I get answer with zero TTL. Edit: Zero TTL is not taboo for others either, I can get it for just expiring...
by pe1chl
Fri Sep 14, 2018 9:16 pm
Forum: Wireless Networking
Topic: Unable to upgrade MikroTik WLC RouterBOARD 3011UiAS [SOLVED]
Replies: 6
Views: 219

Re: Unable to upgrade MikroTik WLC RouterBOARD 3011UiAS [SOLVED]

Easier is to go to the system->packages menu and select "check for updates" where you can then download the current version.
It will automatically download the files required for the device you run it on.
by pe1chl
Fri Sep 14, 2018 7:46 pm
Forum: General
Topic: VLAN Mikrotik with Cisco Switch in mixed environment
Replies: 8
Views: 260

Re: VLAN Mikrotik with Cisco Switch in mixed environment

OK that makes sense for wired connections, but I was under the impression that Wireless VLANS would have to use a bridge on the Mikrotik in order to provision DHCP to devices coming in via the wifi and for the wifi to connect with the VLAN? (I have a wifi subnet and also a hotspot subnet both servi...
by pe1chl
Fri Sep 14, 2018 5:32 pm
Forum: The Dude
Topic: Unable to install Dude on RB750gr3
Replies: 11
Views: 849

Re: Unable to install Dude on RB750gr3

Why did you not read the replies?
You should add external storage, not attempt to use the built-in flash!
by pe1chl
Fri Sep 14, 2018 2:41 pm
Forum: General
Topic: VLAN Mikrotik with Cisco Switch in mixed environment
Replies: 8
Views: 260

Re: VLAN Mikrotik with Cisco Switch in mixed environment

When you have some different VLANs and an external switch there should be no need to have the MikroTik-side VLAN interfaces in a bridge. Just configure your different subnets (addresses) on the VLAN interface directly and you can define the member of the network on the switch. The issue is that ther...
by pe1chl
Fri Sep 14, 2018 10:02 am
Forum: General
Topic: VLAN Mikrotik with Cisco Switch in mixed environment
Replies: 8
Views: 260

Re: VLAN Mikrotik with Cisco Switch in mixed environment

Don't connect two cables because that will easily cause a loop or spanning tree issues. You have to decide if you want a true trunk (everything tagged) or a hybrid (one VLAN tagged and the other untagged) on your link. Both of them work OK but when you want to do a migration a hybrid is probably smo...
by pe1chl
Thu Sep 13, 2018 8:55 pm
Forum: General
Topic: DNS Server TTL problem
Replies: 14
Views: 497

Re: DNS Server TTL problem

Mikrotik was beating my DNS server to death with constant requests for local domains which have a TTL of zero. I have now a separate DNS server to force DNS cache by Mikrotik, to comply by setting an longer TTL for those local domains. Why do people always expect MikroTik to fix other people's stup...
by pe1chl
Wed Sep 12, 2018 7:21 pm
Forum: RouterBOARD hardware
Topic: Mikrotik VDSL / DSL Modem?
Replies: 297
Views: 55143

Re: Mikrotik VDSL / DSL Modem?

I am not going to ship mine as I am not certain it is 100% working. (the past 2 experiments failed to result in link while that worked before)
However, you can easily order it from FMS Internetservice GmbH in Germany.
by pe1chl
Wed Sep 12, 2018 12:35 pm
Forum: General
Topic: DNS Server TTL problem
Replies: 14
Views: 497

Re: DNS Server TTL problem

I don't understand what problem you have. Please elaborate. The DNS resolver/server works according to standards. I think it is bad to have options in the software to make it operate in a nonstandard way, as those could be misunderstood and could cause problems when a low TTL is used deliberately (w...
by pe1chl
Tue Sep 11, 2018 7:50 pm
Forum: Beginner Basics
Topic: Resolve domain dns names in mikrotik
Replies: 4
Views: 195

Re: Resolve domain dns names in mikrotik

So you need to set it up as I wrote in the last sentence.
by pe1chl
Tue Sep 11, 2018 5:56 pm
Forum: Beginner Basics
Topic: Distinguishing between clients' routers
Replies: 7
Views: 295

Re: Distinguishing between clients' routers

Maybe we should suggest to remove it or enable it by default...
by pe1chl
Tue Sep 11, 2018 5:15 pm
Forum: Beginner Basics
Topic: I want to control the devices connected to ethernet what to do?
Replies: 3
Views: 153

Re: I want to control the devices connected to ethernet what to do?

Of course it is always required to watch the situation more or less closely, recently I saw in another topic that someone's internet-connected TV failed to work in this setup.
It could be that there are some braindead IP stacks that fail to work when there are no incoming ARP requests....
by pe1chl
Tue Sep 11, 2018 4:42 pm
Forum: Wireless Networking
Topic: Bridge port received packet with own address as source, probably loop
Replies: 19
Views: 18425

Re: Bridge port received packet with own address as source, probably loop

I have a CCR in a datacenter where the internet connection is provided by a pair of (juniper) routers in VRRP configuration and I very seldomly see the message on that port, but I think it happens when the active router changes. It is only one such message and then it may not be seen for a month. I ...
by pe1chl
Tue Sep 11, 2018 12:23 pm
Forum: RouterOS v6 RC and v7 BETA
Topic: NTFS support
Replies: 34
Views: 2765

Re: NTFS support

I think (only theoretically), this small flash is the main reason of the ROS7 delay. I wondered about that too, but this was denied by MikroTik employees. And to be fair, Ros7 development (and delays) was well underway when this flash size shrink happened. (the classical devices all have 128MB, thi...
by pe1chl
Tue Sep 11, 2018 12:17 pm
Forum: Beginner Basics
Topic: Resolve domain dns names in mikrotik
Replies: 4
Views: 195

Re: Resolve domain dns names in mikrotik

No. You would want to set a static record for ad.mydomain.com with a NS record pointing to your Windows 2012 server, but RouterOS cannot do that! The only solution is to configure the Windows 2012 server to use the MikroTik as a resolver and configure the DHCP there to set the Windows 2012 server as...
by pe1chl
Tue Sep 11, 2018 11:38 am
Forum: General
Topic: DNS Server TTL problem
Replies: 14
Views: 497

Re: DNS Server TTL problem

This is the correct behaviour of DNS. When a caching resolver receives a request for a name it does not have in its cache, it requests the name and puts it in the cache with the TTL that is returned from the originating server (which can be a caching resolver as well). The TTL then counts down from ...
by pe1chl
Tue Sep 11, 2018 10:52 am
Forum: Announcements
Topic: Newsletter #84
Replies: 33
Views: 4154

Re: Newsletter #84

Is it possible to do a license upgrade on the SXTsq Lite60 and connect two of them for a short link? They look physically a bit more suitable for outdoor mast mounting than the wAP 60G AP. That's always possible without an upgrade of the license. Just set the 'master' or AP in 'bridge' mode instead...
by pe1chl
Tue Sep 11, 2018 10:44 am
Forum: Beginner Basics
Topic: Distinguishing between clients' routers
Replies: 7
Views: 295

Re: Distinguishing between clients' routers

Ahh of course... after having this enabled for a long time one forgets that it is even there...
by pe1chl
Tue Sep 11, 2018 1:14 am
Forum: Announcements
Topic: Newsletter #84
Replies: 33
Views: 4154

Re: Newsletter #84

Is it possible to do a license upgrade on the SXTsq Lite60 and connect two of them for a short link?
They look physically a bit more suitable for outdoor mast mounting than the wAP 60G AP.
by pe1chl
Tue Sep 11, 2018 12:45 am
Forum: RouterOS v6 RC and v7 BETA
Topic: NTFS support
Replies: 34
Views: 2765

Re: NTFS support

Look at the bright side, the sooner it fills up, the sooner they will start using bigger flash for newer devices. :) I think they ordered millions of 16MB flash chips to get a nice discount on them and now we have to wait until they are all used up... We can only hope that most of them got destroye...
by pe1chl
Tue Sep 11, 2018 12:38 am
Forum: General
Topic: DMZ like firewalls on Mikrotik [SOLVED]
Replies: 4
Views: 226

Re: DMZ like firewalls on Mikrotik [SOLVED]

Normally (when you trust connection tracking) you would use a single accept rule for established,related without interface spec, then the accept "new" traffic in the direction(s) you want (i.e. from LAN, and probably some selected ports from internet to DMZ) and finally a drop to drop everything not...
by pe1chl
Tue Sep 11, 2018 12:31 am
Forum: Beginner Basics
Topic: Muiltiple networks and firewall
Replies: 5
Views: 235

Re: Muiltiple networks and firewall

I was thinking the same thing, just one SFP+ connection to L2 switch, and do it with VLANs, so clients would not connect trough router itself. And i guess that would work. But i also need road warrior L2TP/IPsec on the router itself, and then i would not be able to see any other device on the same ...
by pe1chl
Tue Sep 11, 2018 12:28 am
Forum: RouterOS v6 RC and v7 BETA
Topic: NTFS support
Replies: 34
Views: 2765

Re: NTFS support

Remember that those new low-end MikroTik routers have only 16MB of flash storage!
The amount of code that can go in there is not unlimited.
Typical NAS devices have several GB of flash to store a full Linux OS, services and utilities.
by pe1chl
Mon Sep 10, 2018 7:46 pm
Forum: RouterOS v6 RC and v7 BETA
Topic: NTFS support
Replies: 34
Views: 2765

Re: NTFS support

They added SMB, so you can use the router as simple NAS, but it's incomplete. People expect more, NTFS, DLNA, ... because competition has it. The default router provided by my ISP (AVM Fritz!box) has this, but I only read complaints about it. People expect throughput comparable to the network rate ...
by pe1chl
Mon Sep 10, 2018 7:33 pm
Forum: Beginner Basics
Topic: Muiltiple networks and firewall
Replies: 5
Views: 235

Re: Muiltiple networks and firewall

It is better to use an interface list instead of an address list in this case. You make an interface list with all your internal interfaces (or you use the existing list LAN for this). Then you add a drop rule for forward from members of this list to members of this list. Then all inter-subnet routi...
by pe1chl
Mon Sep 10, 2018 7:23 pm
Forum: Beginner Basics
Topic: Distinguishing between clients' routers
Replies: 7
Views: 295

Re: Distinguishing between clients' routers

Normally you would have one of the existing routers selected, you edit the name and note, and click add/set to add it to the list. You can also edit the note later, but it is best to do it when adding so you know which one it is before it falls in the sorted list. Of course you also set the "identit...
by pe1chl
Mon Sep 10, 2018 6:59 pm
Forum: RouterBOARD hardware
Topic: More info about mUPS
Replies: 46
Views: 5611

Re: More info about mUPS

I didn't expect it to have a DC-DC up-convert for that low price :) DC-DC converters that do this can be had for a dollar... https://aliexpress.com/item/1PCS-XL6009-Boost-Converter-Step-Up-Adjustable-15W-5-32V-to-5-50V-DC-DC-Power/32807346491.html (of course mUPS contains more than a single DC-DC c...
by pe1chl
Mon Sep 10, 2018 5:07 pm
Forum: RouterBOARD hardware
Topic: RB4011
Replies: 153
Views: 10618

Re: RB4011

RB4011 has included 2.4 ghz card. Question was if we can get USB instead of 2.4 ghz. For example to get 3G/LTE USB modem or USB storage etc. There are plenty of mpcie -> usb cards but we don't know if they're gonna work with RB4011. Of course those cards work without problem, but what is more inter...
by pe1chl
Mon Sep 10, 2018 5:04 pm
Forum: RouterBOARD hardware
Topic: More info about mUPS
Replies: 46
Views: 5611

Re: More info about mUPS

I tought, mUPS has a relay inside, what connects the battery directly to power line, but it would result 13.6V at HeX.
Now what?
Of course it has a DC-DC converter that converts the battery voltage to 20V.
Nothing to worry about.
  • 1
  • 2
  • 3
  • 4
  • 5
  • 95