Community discussions

Search found 234 matches

by ivicask
Fri Sep 27, 2019 8:33 am
Forum: General
Topic: Laptops are trying to hack my router
Replies: 8
Views: 1091

Re: Laptops are trying to hack my router

What AV you used to scan?
by ivicask
Tue Sep 24, 2019 10:29 pm
Forum: RouterOS v7 BETA
Topic: Torrent client
Replies: 25
Views: 4077

Re: Torrent client

Well for me torrent client would be most awesome for home use, schedule download/s over night when nobody is using net to download some stuff on external drive, silent, and low power use compared to PC, + you can use the same drive for direct access over network ..

Big + 1 from me.
by ivicask
Tue Sep 17, 2019 11:36 pm
Forum: Wireless Networking
Topic: WiFi4EU
Replies: 8
Views: 1795

Re: WiFi4EU

I'm using mikrotik only as hotspot controller, and Aruba for APs, they are expensive, but work way better than any mikrotik ever will.
by ivicask
Mon Sep 16, 2019 8:25 am
Forum: Wireless Networking
Topic: cAP-ac Throughput & High Ping Problems
Replies: 33
Views: 3381

Re: cAP-ac Throughput & High Ping Problems

I allways have similar problems with mikrotik and 2.4 ghz , do you have b/g/n enabled? Try set it to -g/n only, or N only if all devices support it.
by ivicask
Sun Jul 07, 2019 10:03 pm
Forum: Announcements
Topic: v6.46beta [testing] is released!
Replies: 107
Views: 39614

Re: v6.46beta [testing] is released!

Wishes for 6.46: - WinBox => CAPsMAN: Reboot button for CAPs Yes, I agree. It is annoying in CAPsMAN network to manual restart every AP. APs are updated automatically from CAPsMAN, and all APs have firmware autoupdate=yes, but still required additional manual restart for firmware update. +1 for that
by ivicask
Tue Jun 11, 2019 2:47 pm
Forum: Wireless Networking
Topic: 2.4 4-way handshake timeout
Replies: 11
Views: 1538

Re: 2.4 4-way handshake timeout

Got email from Mikrotik. Explained the problem and how to reproduce it. They did... And don't currently have a fix. So high density with interference... If you see 4-way handshake time out in Caps-man... Don't fight it. Don't mess with support. Just buy the Ruckus radio and move on. I get those als...
by ivicask
Fri Mar 08, 2019 11:27 am
Forum: RouterBOARD hardware
Topic: MUM Europe 2019: new hardware
Replies: 61
Views: 11979

Re: MUM Europe 2019: new hardware

That Audience with Cat6 LTE looks super interesting, cant wait to see full specs and price.
by ivicask
Mon Mar 04, 2019 10:46 pm
Forum: Wireless Networking
Topic: Wireless outdoor range
Replies: 1
Views: 232

Re: Wireless outdoor range

Hello Mikrotik community, I am looking to deploy an outdoor AP for a hotspot, I was wondering what the maximum realistic range an outdoor AP can deliver for mobile phones, as far as I know, indoor APs can only deliver about 10-20 meters reliable before disconnections are experienced. Any help would...
by ivicask
Mon Jan 28, 2019 2:34 pm
Forum: General
Topic: Examples of using RAW firewall?
Replies: 28
Views: 7731

Re: Examples of using RAW firewall?

Thanks ivicask.
Rule was worked once. Now users from IP addresses of the Black list tring to connect to sip port 5060 and rule not working.
I think u should change all those blacklist to
for example from add address=37.0.0.0 -> address=37.0.0.0/24
by ivicask
Mon Jan 28, 2019 12:24 pm
Forum: General
Topic: Examples of using RAW firewall?
Replies: 28
Views: 7731

Re: Examples of using RAW firewall?

Thanks MKX. I tried all variants but rule is not working. I have task from my chief - block all connections on ports 5060-5080 from abroad. I tried to block one subnet 37.0.0.0 but rule not working :( Here are my firewall settings Regards. Rule actually seams working fine as u can see one block in ...
by ivicask
Tue Jan 22, 2019 7:54 pm
Forum: General
Topic: Mark the traffic for YouTube, Facebook, etc.
Replies: 28
Views: 4366

Re: Mark the traffic for YouTube, Facebook, etc.

Hmmm Okay, so that sounds promising. However what you are telling me is that initial traffic will ALWAYS get out and not be rerouted because its done in real time not prerouting. Also, the script is not timed to user access but to a rote timing scheme that will run regardless if streaming is done (...
by ivicask
Tue Jan 22, 2019 3:36 pm
Forum: General
Topic: Mark the traffic for YouTube, Facebook, etc.
Replies: 28
Views: 4366

Re: Mark the traffic for YouTube, Facebook, etc.

@anav, tls-host only works for TCP, you should use ivicask script to read googlevideo.com dns from catch and write it to address list Thats basically what OP @mladen074 did but in simpler script, i actually jumped to lasts posts and missed the first post from him :) Not sure which one is better if ...
by ivicask
Tue Jan 22, 2019 2:52 pm
Forum: General
Topic: Mark the traffic for YouTube, Facebook, etc.
Replies: 28
Views: 4366

Re: Mark the traffic for YouTube, Facebook, etc.

yeah good stuff, i noticed that when you are using Mobile app, it uses UDP 443 instead of TCP. For desktop, i believe that google QUIC protocol is disabled by default, hence should work with TCP. (in where tls-host only works) It streams to my Windows 10 PC (Chrome) in UDP protocol also. The above ...
by ivicask
Tue Jan 22, 2019 2:34 pm
Forum: General
Topic: Mark the traffic for YouTube, Facebook, etc.
Replies: 28
Views: 4366

Re: Mark the traffic for YouTube, Facebook, etc.

Maybe google is using and additional dns structure. What ip's are being streamed from? which doman is that? You can contribute to the thread. I figured it, its streaming it over UDP actualy for me, i had TCP protocol as TLS matcher requires it and this of course didint work for me. I added this scr...
by ivicask
Tue Jan 22, 2019 2:16 pm
Forum: General
Topic: Mark the traffic for YouTube, Facebook, etc.
Replies: 28
Views: 4366

Re: Mark the traffic for YouTube, Facebook, etc.

I also tried implementing you tube Traffic control via this and its absolutely not working. TSL host thing is totally useless in this case and doesnt pick actual IP of video stream *.googlevideo.com *.youtube.com give me about 4 ip to my address list, but when i start youtube video it comes from so...
by ivicask
Tue Jan 22, 2019 12:45 pm
Forum: General
Topic: Mark the traffic for YouTube, Facebook, etc.
Replies: 28
Views: 4366

Re: Mark the traffic for YouTube, Facebook, etc.

I also tried implementing you tube Traffic control via this and its absolutely not working. TSL host thing is totally useless in this case and doesnt pick actual IP of video stream *.googlevideo.com *.youtube.com give me about 4 ip to my address list, but when i start youtube video it comes from so...
by ivicask
Tue Jan 22, 2019 11:58 am
Forum: General
Topic: Mark the traffic for YouTube, Facebook, etc.
Replies: 28
Views: 4366

Re: Mark the traffic for YouTube, Facebook, etc.

I also tried implementing you tube Traffic control via this and its absolutely not working. TSL host thing is totally useless in this case and doesnt pick actual IP of video stream *.googlevideo.com *.youtube.com give me about 4 ip to my address list, but when i start youtube video it comes from som...
by ivicask
Thu Jan 10, 2019 11:42 am
Forum: General
Topic: Hairpin NAT not working on RouterOS 6 line WAN load balancing
Replies: 8
Views: 653

Re: Hairpin NAT not working on RouterOS 6 line WAN load balancing

Can anyone support me this problem. Thank you! For me doesnt work without this rule also add action=masquerade chain=srcnat comment=HAIRPIN dst-address=192.168.1.0/24 out-interface=LAN src-address=192.168.1.0/24 Change ips and out interface to match your network. He have this rule already add actio...
by ivicask
Thu Jan 10, 2019 11:25 am
Forum: General
Topic: Hairpin NAT not working on RouterOS 6 line WAN load balancing
Replies: 8
Views: 653

Re: Hairpin NAT not working on RouterOS 6 line WAN load balancing

Can anyone support me this problem. Thank you! For me doesnt work without this rule also add action=masquerade chain=srcnat comment=HAIRPIN dst-address=192.168.1.0/24 out-interface=LAN src-address=192.168.1.0/24 Change ips and out interface to match your network. He have this rule already add actio...
by ivicask
Thu Jan 10, 2019 10:59 am
Forum: General
Topic: Hairpin NAT not working on RouterOS 6 line WAN load balancing
Replies: 8
Views: 653

Re: Hairpin NAT not working on RouterOS 6 line WAN load balancing

Can anyone support me this problem.
Thank you!
For me doesnt work without this rule also

add action=masquerade chain=srcnat comment=HAIRPIN dst-address=192.168.1.0/24 out-interface=LAN src-address=192.168.1.0/24

Change ips and out interface to match your network.
by ivicask
Mon Dec 31, 2018 10:17 pm
Forum: Scripting
Topic: pppoe status script [SOLVED]
Replies: 7
Views: 1810

Re: pppoe status script [SOLVED]

this is not helping because i have more than 80 pppoe-out1-80 so any one disconect will be disconnect all Create several profiles for each pppoe with matching pppoe name inside, u can easy automate it to add via command line.. Or someone with a bit scripting knowlage could make u script which loops...
by ivicask
Mon Dec 31, 2018 10:09 pm
Forum: General
Topic: Why (not) use Hairpin NAT
Replies: 28
Views: 2903

Re: Why (not) use Hairpin NAT

Now i have set in my RDC connection file public dns name with ports matching which server i wanna access blablab.dyndns.org:3000 blablab.dyndns.org:4000 blablab.dyndns.org:5000 I see that could be a problem. But I would not have done it this way. For what you need to pay for dyndns.org each year to...
by ivicask
Mon Dec 31, 2018 9:30 pm
Forum: General
Topic: Why (not) use Hairpin NAT
Replies: 28
Views: 2903

Re: Why (not) use Hairpin NAT

server0.home.com 192.168.10.50 server1.home.com 192.168.10.51 server2.home.com 192.168.10.52 server3.home.com 192.168.10.53 server4.home.com 192.168.10.54 server5.home.com 192.168.10.55 server6.home.com 192.168.10.56 server7.home.com 192.168.10.57 server8.home.com 192.168.10.58 server9.home.com 192...
by ivicask
Mon Dec 31, 2018 9:06 pm
Forum: General
Topic: Why (not) use Hairpin NAT
Replies: 28
Views: 2903

Re: Why (not) use Hairpin NAT

Use internal DNS. When someone on the internet asks for your server web.myserver.com on inernal ip 192.168.10.50 he asks a public DNS and gets IP 85.12.134.20 (sample IP) Then when you are on the internal net, you will use the DNS server you get from your DHCP server. That should not be google or o...
by ivicask
Mon Dec 31, 2018 8:50 pm
Forum: General
Topic: Why (not) use Hairpin NAT
Replies: 28
Views: 2903

Re: Why (not) use Hairpin NAT

I agree with quoted comment by thirdstreetzero. Just think about going IPv6 ... no NAT there. So HairpinNAT really is an obscure solution to a specific problem ... and use case of @ivicask is just further exagerated misuse. Quite a few times people requested full-featured DNS server for ROS ... and...
by ivicask
Mon Dec 31, 2018 11:55 am
Forum: General
Topic: Why (not) use Hairpin NAT
Replies: 28
Views: 2903

Re: Why not use Hairpin NAT

Not sure what your post means?Why not to use? Anyways, with DNS you can only do single internal host, if u need multiple ips to work with DNS name inside ur network u simple must use hairpin. For example how would you access 3 different IPs via dns name ?If you add static entry for like mydomain.dyn...
by ivicask
Thu Dec 27, 2018 4:21 pm
Forum: Wireless Networking
Topic: LHG 60G experience
Replies: 547
Views: 63864

Re: LHG 60G experience

what do you expect more if you bond 5ghz+60ghz? anyway there is 1gbps ethernet port, i dont get your idea (: my point, just to get ANY connection during bad weather, okay let it be at least 100mbps for snow fall or heavy rain, so the customers would not fuck up to red our phones :) What if you go a...
by ivicask
Thu Dec 27, 2018 11:20 am
Forum: Wireless Networking
Topic: LHG 60G experience
Replies: 547
Views: 63864

Re: LHG 60G experience

Yes LHG60 is great hardware with improved distance and 5 GHZ backup it 'll be a must for 2019 wating for more info
I wonder if its only backup failover, or you can agregate 2 links 60+5ghz at the same time for bigger throughput along for instant failover.
by ivicask
Sat Dec 08, 2018 10:48 pm
Forum: General
Topic: Crowd Funding of v7
Replies: 32
Views: 5382

Re: Crowd Funding of v7

What do you mean with queue "parallelization"? Each parent queue already works on separate CPU core in v6. Really?Because when i asked support why cant my RB750Gr3 route more than 150mbit of traffic with queues and single core gets stuck at 100% while router all cores arent going even over 50%, i w...
by ivicask
Mon Dec 03, 2018 3:00 pm
Forum: Announcements
Topic: Tik App, MikroTik android utility ALPHA test
Replies: 425
Views: 144521

Re: Tik App, MikroTik android utility ALPHA test

I wonder is i possible to add some kinda of bandwidth test into this app?So i can quickly test actual wifi performance from router to my phone directly, it would be the most useful thing ever.
by ivicask
Thu Nov 29, 2018 2:01 pm
Forum: General
Topic: QoS and Firewall Mangle questions [SOLVED]
Replies: 2
Views: 314

Re: QoS and Firewall Mangle questions [SOLVED]

Check if you have fastrack rule in firewall, disable it.
by ivicask
Thu Nov 22, 2018 9:27 am
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 1103

Re: QOS not working with file hosting sites like Megaupload

I'm leaving some reserved bandwidth for dns and some other small packets, and also downloads get grouped under another parent which has limit a bit below my total download speed, this way it doesn't saturate download and gives time for queues to drop packets so everything works smooth. If u like i ...
by ivicask
Wed Nov 21, 2018 8:06 pm
Forum: General
Topic: Why blacklist burteforcers VS just dropping the ports/service?
Replies: 7
Views: 625

Re: Why blacklist burteforcers VS just dropping the ports/service?

If you have drop rules that simply drop packets to ports/services you do not use like ssh, ftp, telnet, winbox, etc... what is the advantage to creating a timed black list and dropping that? Is it to gain the logs and perform further action? If you have the IP/Services turned for all those is there...
by ivicask
Wed Nov 21, 2018 5:34 pm
Forum: General
Topic: Queue Trees, CPU Utilization and Watchdog reboots
Replies: 12
Views: 1290

Re: Queue Trees, CPU Utilization and Watchdog reboots

If these reboots are just because router is slow to respond due to high cpu load, but does respond, you could disable watchdog for time being... I did that, than router froze and was not accessible for 5mins and until I force rebooted him via power, it still did switch traffic to my acces point con...
by ivicask
Wed Nov 21, 2018 5:28 pm
Forum: General
Topic: Why blacklist burteforcers VS just dropping the ports/service?
Replies: 7
Views: 625

Re: Why blacklist burteforcers VS just dropping the ports/service?

If you have drop rules that simply drop packets to ports/services you do not use like ssh, ftp, telnet, winbox, etc... what is the advantage to creating a timed black list and dropping that? Is it to gain the logs and perform further action? If you have the IP/Services turned for all those is there...
by ivicask
Wed Nov 21, 2018 8:39 am
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 1103

Re: QOS not working with file hosting sites like Megaupload

I'm leaving some reserved bandwidth for dns and some other small packets, and also downloads get grouped under another parent which has limit a bit below my total download speed, this way it doesn't saturate download and gives time for queues to drop packets so everything works smooth. If u like i c...
by ivicask
Wed Nov 21, 2018 12:32 am
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 1103

Re: QOS not working with file hosting sites like Megaupload

add action=mark-connection chain=postrouting comment=DOWNLOADS_5+MB connection-bytes=\ 5000000-0 new-connection-mark=HTTP_DOWNLOADS_5+_2 passthrough=yes port=80,443,8080 protocol=\ tcp add action=mark-packet chain=postrouting connection-mark=DOWNLOADS_5+_2 new-packet-mark=\ HTTP_DOWNLOADS_5+ passthr...
by ivicask
Tue Nov 20, 2018 10:14 pm
Forum: General
Topic: QOS not working with file hosting sites like Megaupload
Replies: 16
Views: 1103

Re: QOS not working with file hosting sites like Megaupload

You using that download manager of theirs? I downloaded alot from mega thru browser directly this days and goes properly thru my queue for large downloads, simple mangle of ports 443,80,8080 and bytes set to 5+mb.
by ivicask
Tue Nov 20, 2018 6:16 pm
Forum: General
Topic: Queue Trees, CPU Utilization and Watchdog reboots
Replies: 12
Views: 1290

Re: Queue Trees, CPU Utilization and Watchdog reboots

I actually have the same issue with exact same router, got 3 random watchdoog reboots so far in past 10 days, but this first time ever happen to me since latest update (44beta28), but didint had much time to debug it or change versions..
by ivicask
Mon Nov 12, 2018 10:22 am
Forum: Announcements
Topic: Newsletter 85
Replies: 30
Views: 9943

Re: Newsletter 85

And more LTE products with old and slow cat4 modems...I dont understand how can anyone even get more than 100mbit from this, i cant get more than 30mbit sitting next to tower, while anything else from super old mobile phone(6-7 years) to 2x cheaper routers achieve at least 2x speed if not more.. Why...
by ivicask
Mon Nov 05, 2018 3:00 pm
Forum: General
Topic: Need help with VPN routing
Replies: 0
Views: 239

Need help with VPN routing

So im preparing one CRC router for my customer, and i want to make separate DHCP POOL for VPN users.And this does work without problem unless i un-tick the "use default gateway on remote network" under VPN profile under windows, than i cant ping between subnets anymore.But if i dont untick this opti...
by ivicask
Thu Oct 25, 2018 10:06 am
Forum: General
Topic: Port Scan Drop ?
Replies: 6
Views: 950

Re: Port Scan Drop ?

Attacker can't use spoofed IP for scanning because such results wouldn't make it back to him (unless he is your ISP and all your traffic pass through him) Spoofed IP is used mostly for (D)DoS attacks where you don't care about response or where you want the response to be sent to someone else on pu...
by ivicask
Wed Oct 24, 2018 3:01 pm
Forum: General
Topic: Port Scan Drop ?
Replies: 6
Views: 950

Re: Port Scan Drop ?

Best practice says you should drop all unknown input, there's no need to make rules specifically for port scanners. Yea, but than attacker can scan for ports and for example find my none standard RDP port and than do further attacks on it, this way he get IP block for port scan attempts and he does...
by ivicask
Fri Sep 28, 2018 12:15 pm
Forum: General
Topic: something is wrong with my DNS resolving...
Replies: 8
Views: 716

Re: something is wrong with my DNS resolving...

https://i.imgur.com/xjwAmyu.jpg My DNS settings looks ok to me, i did not make any changes for years. This problem occurred yesterday without any modification from my side. I also noticed unauthorized attempt to log in into my router viewtopic.php?f=2&t=139702 My current suspicion is that someone m...
by ivicask
Sat Sep 22, 2018 8:40 pm
Forum: General
Topic: restore back to identical devices never works :(
Replies: 28
Views: 1750

Re: restore back to identical devices never works :(

At the very leat, we should be able to import a backup into another device of same model and RoS/bootloader version. Certificates, users and all. I think that is working. But in practice it is not enough. E.g. I have 2 installs of CCR1009-8G-1S-1S+ which when broken is no longer available and would...
by ivicask
Tue Sep 18, 2018 6:11 pm
Forum: General
Topic: Port 60000 attacks, anyone info on this?
Replies: 11
Views: 1144

Re: Port 60000 attacks, anyone info on this?

I'm seeing them too. From two different routers: [admin@MikroTik] > /log print count-only where message~":60000->" 6 and [admin@MikroTik] > /log print count-only where message~":60000->" 14 They are stealth in the sense that they avoid typical blacklisting attempts; just a few contacts per hour com...
by ivicask
Tue Sep 18, 2018 4:46 pm
Forum: General
Topic: Port 60000 attacks, anyone info on this?
Replies: 11
Views: 1144

Re: Port 60000 attacks, anyone info on this?

... i was just wondering if anyone else is getting probed via this port as it seams im catching this on several locations and not 100% sure what to do about it. Could be, but I don't notice as I have a general drop rule at the end of firewall rules list. It does show increasing number of connection...
by ivicask
Tue Sep 18, 2018 4:33 pm
Forum: General
Topic: Port 60000 attacks, anyone info on this?
Replies: 11
Views: 1144

Re: Port 60000 attacks, anyone info on this?

... i was just wondering if anyone else is getting probed via this port as it seams im catching this on several locations and not 100% sure what to do about it. Could be, but I don't notice as I have a general drop rule at the end of firewall rules list. It does show increasing number of connection...
by ivicask
Tue Sep 18, 2018 4:29 pm
Forum: General
Topic: Port 60000 attacks, anyone info on this?
Replies: 11
Views: 1144

Re: Port 60000 attacks, anyone info on this?

I don't get it why would anybody want to allow connections to some random port (3389 is as nice random number as any other between 0 and 65536) from internet at large? Your firewall rule is not complete ... attacker can easily change source port to some other and your rule won't catch anything. I g...
by ivicask
Tue Sep 18, 2018 4:16 pm
Forum: General
Topic: Port 60000 attacks, anyone info on this?
Replies: 11
Views: 1144

Re: Port 60000 attacks, anyone info on this?

I don't get it why would anybody want to allow connections to some random port (3389 is as nice random number as any other between 0 and 65536) from internet at large? Your firewall rule is not complete ... attacker can easily change source port to some other and your rule won't catch anything. I g...
by ivicask
Tue Sep 18, 2018 11:45 am
Forum: General
Topic: Port 60000 attacks, anyone info on this?
Replies: 11
Views: 1144

Port 60000 attacks, anyone info on this?

After recently one of our server got hacked over RDC and got crpytolocker i noticed theres frequent port 60000 TCP to 3389 and also other random ports attemps. After bit googling it says that port 60000 is "deepthroat" trojan attack port. For now i added firewall rule to catch all source port 60000 ...
by ivicask
Mon Sep 17, 2018 1:17 pm
Forum: General
Topic: How to remotely administer Mikrotik routers in safeway
Replies: 19
Views: 1328

Re: How to remotely administer Mikrotik routers in safeway

Hello As we all know it's very important how to configure firewall and services on our Miktotik routers. A lot of us are using Winbox for remote administrating because its easiest, changing port from 8021 to any other doesnt rise security level. So next step is to use SSH but I read that I can't fo...
by ivicask
Fri Sep 14, 2018 4:26 pm
Forum: Beginner Basics
Topic: Is it possible make queue tree under simple queue
Replies: 5
Views: 1549

Re: Is it possible make queue tree under simple queue

Why not create new PCQ queue with desired limits, but add a bit above burst limits, set this queue to hotspot interface, it should smoothen out browsing while downloading.
by ivicask
Tue Aug 28, 2018 10:42 pm
Forum: Announcements
Topic: v6.43rc [release candidate] is released!
Replies: 557
Views: 113454

Re: v6.43rc [release candidate] is released!

I cant update CCR1009-7G-1C from 6.43rc51 to 6.43rc64, i click check for updates, download&install, after reboot i still have old version.Tried also manually downloading the file and puting into root and rebooting, same thing. EDIT:I figured it , i had other router package so it failed to select pro...
by ivicask
Sun Aug 05, 2018 7:07 pm
Forum: Wireless Networking
Topic: High Ping on 2.4GHz
Replies: 13
Views: 1536

Re: High Ping on 2.4GHz

I often have this problem with 2.4ghz, where its un-usable, without any close networks to interfere, what helps alot is set mode to G/N, or only N if you dont need backward compatibility.
by ivicask
Sat Aug 04, 2018 10:55 am
Forum: Wireless Networking
Topic: Caps selecting same channel
Replies: 31
Views: 7295

Re: Caps selecting same channel

Anything new on this topic? CAPSMAN still uses the same frequency for all 5 GHz radios on my hap AC devices regardless of any configuration I might try. There is only one setup that works: in case I DON'T set any frequencies AND uncheck "skip DFS channels" I end up having different channels on my r...
by ivicask
Mon Jul 09, 2018 12:40 pm
Forum: Beginner Basics
Topic: SSID for kids Zone with OpenDNS
Replies: 14
Views: 1540

Re: SSID for kids Zone with OpenDNS

HI, I haven't got a different DHCP server for each SSID because I couldn't create one. Couldn't add New DHCP server - can not run on slave interface (6) Sorry to be dum but this is my debut with routerboard OS. I think that having a different DHCP server for each SSID is the way I'll like to go for...
by ivicask
Mon Jul 09, 2018 12:15 pm
Forum: Beginner Basics
Topic: SSID for kids Zone with OpenDNS
Replies: 14
Views: 1540

Re: SSID for kids Zone with OpenDNS

Hi, I managed to create multiple SSID in my house. One of the SSID is for my children and their friends (9 years old). The idea of having multiple ssid was to be able to control the content on the kids wifi using OpenDNS. So far, I haven't managed to figure out how to set dns per ssid so that my ma...
by ivicask
Thu Jun 21, 2018 9:25 am
Forum: Wireless Networking
Topic: wAP LTE kit - phenomenally bad performance
Replies: 20
Views: 3576

Re: wAP LTE kit - phenomenally bad performance

my phone does 4g 50+download and 15+ upload at same location, same provider, different SIM You can forget about it, alot of users including me already complained about it, dont bother with this device if u expect any normal speeds, its just terrible. https://forum.mikrotik.com/viewtopic.php?f=7&t=1...
by ivicask
Mon Jun 11, 2018 10:39 am
Forum: General
Topic: MT Router honeypot.
Replies: 20
Views: 2047

Re: MT Router honeypot.

I wonder if Mikrotik has honeypot routers, pretty sure they dont or they would already capture all the previous exploits before it would spread like they did.

Any official statement regarding this from mikrotik?
by ivicask
Sun Jun 10, 2018 8:33 pm
Forum: Wireless Networking
Topic: 60Ghz 2.4km - possible?
Replies: 41
Views: 6072

Re: 60Ghz 2.4km - possible?

Hey folks. We need to replace one of our 5Ghz Links due to high noise. We would like to switch to 60 Ghz. The Link is 2.4km and has 600 meters of altitude change. We don’t need a Gigabit. 100 mbits would be plenty. Has anyone any experience if this is even possible? We got about 15% less Air preass...
by ivicask
Thu Jun 07, 2018 9:22 am
Forum: Wireless Networking
Topic: Suggested CAPsMAN Hardware
Replies: 11
Views: 1351

Re: Suggested CAPsMAN Hardware

Ok, Thanks for the replies. Local Forwarding isn't an option, so we need some model with higher CPU. Also Fast-Track can't be used, because we need some firewall rules to hide the rest of our network from the CAPs Clients. I think we will go with RB1100x4 or maybe we will try the RB3011. I will rep...
by ivicask
Wed Jun 06, 2018 12:08 am
Forum: Wireless Networking
Topic: Suggested CAPsMAN Hardware
Replies: 11
Views: 1351

Re: Suggested CAPsMAN Hardware

What's wrong with RB750Gr3, I use it with 7 Wap Ac, we have 150mbit line, and few queue tree rules, one simple queue for guest network, and up to 70 clients, works fine. Note I use local forwarding, not sure if it would work so good with capsman forwarding, u may need use higher cpu power product th...
by ivicask
Tue Jun 05, 2018 2:03 pm
Forum: Announcements
Topic: MikroTik News June 2018 (Issue #83)
Replies: 44
Views: 13698

Re: MikroTik News June 2018 (Issue #83)

- new, improved SXT LTE kit with two Ethernet ports Same price but ....inferior....:( Yes, hope MT stops recycling those old modems, and give us some LTE product with LTE 6+ category What do you guys mean? It is much better than SXT LTE first generation: "In comparison with our first generation mod...
by ivicask
Tue Jun 05, 2018 9:35 am
Forum: Announcements
Topic: MikroTik News June 2018 (Issue #83)
Replies: 44
Views: 13698

Re: MikroTik News June 2018 (Issue #83)

- new, improved SXT LTE kit with two Ethernet ports

Same price but ....inferior....:(
Yes, hope MT stops recycling those old modems, and give us some LTE product with LTE 6+ category
by ivicask
Mon Jun 04, 2018 3:29 pm
Forum: RouterBOARD hardware
Topic: wAP ac overheating?Crashing
Replies: 8
Views: 1458

wAP ac overheating?Crashing

I have one wAP ac whos giving me problems for some time, but unfortunately is also out of warranty so i just wonder what are normal temps for this device?When i copy files over 5ghz interface at around (450mbit/s ) speeds, the router hits 80c and than randomly starts crashing and its not visible on ...
by ivicask
Thu May 24, 2018 1:53 pm
Forum: RouterBOARD hardware
Topic: wAP ac not discoverable over ethernet
Replies: 5
Views: 955

Re: wAP ac not discoverable over ethernet

I have couple of wAP ac devices that for some odd reason doesn't come up in the Winbox discovery. Connecting via MAC address fails too. Connecting over IP is OK. If I'm connected to Wifi, then everything works as expected (discovery + connecting over MAC and IP). Is this expected behavior? Coz for ...
by ivicask
Wed May 16, 2018 9:40 am
Forum: Announcements
Topic: Future of LTE products, user feedback requested
Replies: 86
Views: 19968

Re: Future of LTE products, user feedback requested

I would be happy with product like this

https://mikrotik.com/product/mant_lte_5o

But with integrated modem and 1 lan port, nothing more..
And atleast CAT6 is a MUST so it doesnt work like some 10 year old phone/device with horrific perfomance like current WAP LTE works.
by ivicask
Sat May 12, 2018 10:46 am
Forum: RouterBOARD hardware
Topic: 3x3 MIMO antennas >20dBi
Replies: 19
Views: 1884

Re: 3x3 MIMO antennas >20dBi

Just wondering if someone can tell me why there are no 3x3 MIMO antennas on the market much greater than 20dBi ? I have a couple of RB921UAGS-5SHPacD-NM(triple chain capable) doing about 8KM's point to point, but limited to 2x2 due to antenna limitations(cant find a commercial 28 to 30dBi antenna w...
by ivicask
Mon Apr 23, 2018 4:12 pm
Forum: Beginner Basics
Topic: WiFi comparison between hAP ac2 and hAP ac
Replies: 12
Views: 12418

Re: WiFi comparison between hAP ac2 and hAP ac

I'm doing WiFi coverage tests between 2 Models: RBD52G-5HacD2HnD-TC (I will call it hAPac2) RB962UiGS-5HacT2HnT (I will call it hAPac) WiFi comparison between hAP ac2 and hAP ac.png The suggested price of both models results in a price difference of $ 60.00 My question: Where is such a big differen...
by ivicask
Mon Apr 23, 2018 3:17 pm
Forum: Announcements
Topic: Advisory: Vulnerability exploiting the Winbox port [SOLVED]
Replies: 204
Views: 161611

Re: Advisory: Vulnerability exploiting the Winbox port

But that whats the point of this, i ran it 3 times and got all my ports listed 3 times before mikrotik blocked it, "attacker" already have all it needs. Scan this 93.155.148.98 - my IP address and tell me the open ports please! It shows none now, but is this site already on your block list?Try clea...
by ivicask
Mon Apr 23, 2018 3:03 pm
Forum: Announcements
Topic: Advisory: Vulnerability exploiting the Winbox port [SOLVED]
Replies: 204
Views: 161611

Re: Advisory: Vulnerability exploiting the Winbox port

But if i run it from https://mxtoolbox.com/SuperTool.aspx?action=scan, it finishes every time and shows my open ports on router without blocking it.. Try for your self. OK, try this : ip fi fi add action=add-src-to-address-list address-list=Port_Scanner address-list-timeout=1w chain=input comment="...
by ivicask
Mon Apr 23, 2018 2:34 pm
Forum: Announcements
Topic: Advisory: Vulnerability exploiting the Winbox port [SOLVED]
Replies: 204
Views: 161611

Re: Advisory: Vulnerability exploiting the Winbox port

What do do : 1) Firewall the Winbox port from the public interface, and from untrusted networks. It is best, if you only allow known IP addresses to connect to your router to any services, not just Winbox. We suggest this to become common practice. As an alternative, possibly easier, use the "IP ->...
by ivicask
Wed Apr 11, 2018 12:28 pm
Forum: RouterBOARD hardware
Topic: Hardware for Traffic Shaping ~500mbps
Replies: 3
Views: 855

Re: Hardware for Traffic Shaping ~500mbps

Hi Everyone, I am looking for a recommendation for hardware that is capable of doing traffic shaping on a line that is about 500dn/100up without choking. I currently have a 300/20 link and am using other vendor hardware that employs hardware offloading that is reaching it's limit due to QOS turning...
by ivicask
Sun Apr 08, 2018 5:14 pm
Forum: General
Topic: Proxy causes 100% load on only 30mbit bandwidth?
Replies: 1
Views: 506

Proxy causes 100% load on only 30mbit bandwidth?

I have one RB911G connected to another wifi as client, and i just want to use it as proxy server so i can add it to my Dropbox or Mozila settings so i can surf over other net. Moment i run speedtest CPU gets lucked down to 100% and cant pass more than 30mbit, while im having 50mbit speed.The cache i...
by ivicask
Sun Apr 08, 2018 2:30 pm
Forum: General
Topic: Huge outgoing DNS requests (100gb in week)
Replies: 9
Views: 919

Re: Huge outgoing DNS requests (100gb in week)

Well it simple stopped, now it had like 30mb dns traffic in a week, i did nothing, upgraded or even rebooted router.

Will monitor if it happens again.
by ivicask
Fri Apr 06, 2018 5:24 pm
Forum: General
Topic: Huge outgoing DNS requests (100gb in week)
Replies: 9
Views: 919

Re: Huge outgoing DNS requests (100gb in week)

6.41rc52, doubt it's infected, it was installed 2 months ago, had latest version of os since installed, I have very stric firewall rules, I drop dns requests from net etc.. router has complex pass etc.
by ivicask
Fri Apr 06, 2018 3:33 pm
Forum: General
Topic: Huge outgoing DNS requests (100gb in week)
Replies: 9
Views: 919

Re: Huge outgoing DNS requests (100gb in week)

Wireshark shows all standard query packets, and gets responding ip addresses resolved back , but i do see them repeating, even it already got proper ip adresses reported back, and domain and ip exist. Still doesnt make sense, if it does return proper IP why is it repeating requests and not simple c...
by ivicask
Fri Apr 06, 2018 3:27 pm
Forum: General
Topic: Huge outgoing DNS requests (100gb in week)
Replies: 9
Views: 919

Re: Huge outgoing DNS requests (100gb in week)

Check the DNS cache, but this is a likely explanation, depending on the number of clients using your DNS. Even if u unplug entire network, meaning only Mikrotik leaves, this DNS requests still go . And we are talking about like 20 clients max who use internet lightly, its impossible they do 100gb D...
by ivicask
Fri Apr 06, 2018 2:57 pm
Forum: General
Topic: Huge outgoing DNS requests (100gb in week)
Replies: 9
Views: 919

Re: Huge outgoing DNS requests (100gb in week)

Check the DNS cache, but this is a likely explanation, depending on the number of clients using your DNS. Even if u unplug entire network, meaning only Mikrotik leaves, this DNS requests still go . And we are talking about like 20 clients max who use internet lightly, its impossible they do 100gb D...
by ivicask
Fri Apr 06, 2018 11:20 am
Forum: General
Topic: MUM berlin
Replies: 28
Views: 2646

Re: MUM berlin

Ah common Mikrotik, mANT 5o LTE, at first i was YES, finally new LTE device, than realized its just antena. Was it a problem to give us such product with builtin LTE modem of higher category than current ones you have.Thats all pointless what you did.WAP LTE performs so bad, no antena will help it, ...
by ivicask
Fri Apr 06, 2018 9:58 am
Forum: General
Topic: Huge outgoing DNS requests (100gb in week)
Replies: 9
Views: 919

Huge outgoing DNS requests (100gb in week)

I just installed one HAP ac at one customer, they got NEW HP switch with fiber connection to internet from ISP, and its connected to my LAN1 port on Mikrotik which has fixed ip 192.168.1.3, than all is routed out thru LAN port 2 on mikrotik on range 192.168.100.0/24 to customers internal netowrk. No...
by ivicask
Thu Mar 29, 2018 2:48 pm
Forum: General
Topic: Router + switch + ap all in one solution
Replies: 15
Views: 1375

Re: Router + switch + ap all in one solution

I don't think so. The RB750Gr3 is a nice router, check in the specs what its achievable performance is, but when you are talking about 1Gbps internet and of course you are going to speedtest that, this class of router is simply not going to cut it (with a manageable configuration w.r.t firewall and...
by ivicask
Sun Mar 25, 2018 4:39 pm
Forum: General
Topic: Feature requests
Replies: 1160
Views: 208051

Re: Feature requests

Hello to disable DNS attacking please add listen address on better from use ip firewall filters /ip dns allow-remote-requist=yes /ip dns listen-src-address=192.168.88.0/24,x.xx,y.y.y Regards Cant you already do that via firewall, dont understand what more you need, if you want to block DNS requests...
by ivicask
Tue Mar 06, 2018 12:14 pm
Forum: General
Topic: Cant ping by hostname outside mikrotik via IPIP tunnel
Replies: 0
Views: 288

Cant ping by hostname outside mikrotik via IPIP tunnel

So i created an IPIP tunel between 2 locations, NAT and routes are properly added and i can ping without issue networks form both sides, enter network shares, RDC etc. Problem is i cant access any of them by hostname of server/computer. Mikrotik from its console can ping by name without issues, but ...
by ivicask
Mon Feb 12, 2018 4:38 pm
Forum: RouterBOARD hardware
Topic: CAP ac bad Antenna design?
Replies: 95
Views: 21337

Re: CAP ac bad Antenna design?

The new hAPac^2 and cAPac have two chains, since most devices only have 2 chains and the third chain is rarely used. What about load balancing between chains?What if i have 20 + various devices which have mix of 1 or 2 chains, arent all 3 chains on Mikrotik device used and give better overall throu...
by ivicask
Mon Feb 05, 2018 2:45 pm
Forum: General
Topic: Shorten URL via Mikrotik, possible?
Replies: 1
Views: 409

Shorten URL via Mikrotik, possible?

I wonder if its posibble to shroten URL somehow from mine mikrotik router for one TV in network.I tried using online URL shortners but they are not realible or have link expiration or max opening.And its too complicated for me to enter this long URL who sometimes changes into TV. For xample link loo...
by ivicask
Tue Jan 30, 2018 11:18 am
Forum: Wireless Networking
Topic: Tired of disconnection problem
Replies: 4
Views: 513

Re: Tired of disconnection problem

I have same issue on several locations with different aps.. For example this is my HOME, and the client that says extnesive data loos is a TV who doesnt move inch, and as u can see signal is more than powerful(-48-62), still i get random disconnects for all devices at home, Philips TV, HTC phone, AS...
by ivicask
Tue Jan 16, 2018 3:07 pm
Forum: General
Topic: Block many websites
Replies: 20
Views: 11891

Re: Block many websites

New and exciting way to block things introduced in latest 6.41, block by SSL certificate name with TLS-HOST: /ip firewall filter add action=drop chain=forward protocol=tcp tls-host=*facebook.com What about sites who dont use SSL?Or does sites SSL certificate needs to be named same name as site?How ...
by ivicask
Tue Jan 16, 2018 2:58 pm
Forum: General
Topic: Block many websites
Replies: 20
Views: 11891

Re: Block many websites

That is indeed very simple, but unfortunately it will not work correctly! One IP address can handle multiple websites, so when you block this way you will block other sites as well. Well than in that case you can do DNS block /ip dns static add address=127.0.0.1 regexp=facebook.com etc And in order...
by ivicask
Tue Jan 16, 2018 2:49 pm
Forum: General
Topic: Block many websites
Replies: 20
Views: 11891

Re: Block many websites

Thanks Normis, By ip you mean to block the ip addresses of websites in Firewall->Filter Rules right? I ll try that /ip firewall address-list add address=facebook.com list=blocked_web add address=youtube.com list=blocked_web add address=whatever.com list=blocked_web etc continue the list from your e...
by ivicask
Sat Dec 30, 2017 8:01 pm
Forum: Wireless Networking
Topic: SXTsq 5 ac. WTF? It doesn't work.
Replies: 80
Views: 15674

Re: SXTsq 5 ac. WTF? It doesn't work.

So it's official that
SXT SQ AC cannot function properly under NV2 protocol?
Could You paste what support replyed to You?
IM using them with nv2 and they work fine.
by ivicask
Fri Dec 29, 2017 11:31 am
Forum: Wireless Networking
Topic: SXTsq 5 ac. WTF? It doesn't work.
Replies: 80
Views: 15674

Re: SXTsq 5 ac. WTF? It doesn't work.

Maybe he created loop on network, happend to me once while doing initial configuration of new APs, i connected 2 of APs on same switch and after connecting them together via their wireless which is bridged to lan ports your basically creating loop on switch same as you connected LAN cable bewtween p...
by ivicask
Fri Dec 29, 2017 10:38 am
Forum: Wireless Networking
Topic: SXTsq 5 ac. WTF? It doesn't work.
Replies: 80
Views: 15674

Re: SXTsq 5 ac. WTF? It doesn't work.

-28dB signal is much too much. Get it down to -55 or something. -28dB signal is much too much. Get it down to -55 or something. I've given an example of test in office. Problem doesn't depend of signal strength. Iv read your entire posts and i cant even understand whats your problem. I have just fr...
by ivicask
Mon Oct 23, 2017 5:26 pm
Forum: Wireless Networking
Topic: wAP LTE Kit EU - Slow LTE speed
Replies: 68
Views: 12434

Re: wAP LTE Kit EU - Slow LTE speed

Can you do one test for me?Meassure the speed as normal, than try disabling onboard WIFI and repeat the test again over lan. Do you see any noticeable difference? Dont have unit anymore to test for my self Yes, i would do. But it needs to connect again. Sadly if i do changes on LTE interface (like ...
by ivicask
Mon Oct 23, 2017 3:37 pm
Forum: Wireless Networking
Topic: wAP LTE Kit EU - Slow LTE speed
Replies: 68
Views: 12434

Re: wAP LTE Kit EU - Slow LTE speed

I've compared SXT-LTE and wAP LTE, and seems to me, the SXT-LTE is much faster (if supported band is available). At home, SXT-LTE could do ~80/35mbps almost any time, but wAP LTE only the half (~35/18mbps) on band3, 20MHz. Also, it would be really helpful, if scan would display not only one provide...
by ivicask
Mon Oct 23, 2017 1:43 pm
Forum: Wireless Networking
Topic: wAP LTE Kit EU - Slow LTE speed
Replies: 68
Views: 12434

Re: wAP LTE Kit EU - Slow LTE speed

In future we plan to introduce CAT6 or faster LTE category products but I can't provide any ETA on such products.
Hope it will be soon because i prefer to use Mikrotik always :)

Thanks.
by ivicask
Mon Oct 23, 2017 1:34 pm
Forum: Wireless Networking
Topic: wAP LTE Kit EU - Slow LTE speed
Replies: 68
Views: 12434

Re: wAP LTE Kit EU - Slow LTE speed

what speed you are getting from the wap lte and from the usb modem? What LTE category your USB modem supports? Try to compare which band each unit uses as maybe the wap lte connected to different bands or cell tower. Got similar question here, with ZTE MF286 modem that provider gives on same spot i...
by ivicask
Mon Oct 23, 2017 12:18 pm
Forum: Wireless Networking
Topic: wAP LTE Kit EU - Slow LTE speed
Replies: 68
Views: 12434

Re: wAP LTE Kit EU - Slow LTE speed

what speed you are getting from the wap lte and from the usb modem? What LTE category your USB modem supports? Try to compare which band each unit uses as maybe the wap lte connected to different bands or cell tower. Got similar question here, with ZTE MF286 modem that provider gives on same spot i...
by ivicask
Mon Oct 09, 2017 10:18 am
Forum: Announcements
Topic: v6.41rc [release candidate] is released! New bridge implementation!
Replies: 561
Views: 123700

Re: v6.41rc [release candidate] is released! New bridge implementation!

Hello, after upgrading RBwAPR-2nD & R11e-LTE to version 6.41rc38 , I received a critical error after which the router has been permanently rebooting . if you want a relative version older than that, you need to log in with a static IP address, quickly roll over the main package, and quickly downgra...
by ivicask
Fri Oct 06, 2017 10:41 pm
Forum: General
Topic: WAP LTE Sim not working
Replies: 1
Views: 1014

WAP LTE Sim not working

New AP, fresh setup no other settings(Tried factory reset).I cant get SIM to work, i input proper APN and pin but nothing is working, if i press scan under LTE interface i get Modem not configured, what possible im doing wrong?The sim it self its form TELE 2 provider in Croatia and works in another ...
by ivicask
Mon Sep 25, 2017 2:56 pm
Forum: Wireless Networking
Topic: Caps selecting same channel
Replies: 31
Views: 7295

Re: Caps selecting same channel

Now I've replicated this issue at home. Took a brand new hAPac and a new wAPac, ros 6.40.3, copied system identity, capsman, caps, bridge, vlan, switch and IP settings from the customer. They are connected to each other with a 30cm cable, and they select same channel for both radios. I live at at p...
by ivicask
Mon Sep 25, 2017 9:24 am
Forum: General
Topic: Avg rate exceeds Max Limit
Replies: 0
Views: 318

Avg rate exceeds Max Limit

I noticed often internet starts lag badly, even netwatch script i made to ping google servers and play a tone on net down activates as net was down just because of this. Upload is getting choked on DSL modem but i set rate below our maximum DSL upload speed (around 10% less) But see screenshot/s, up...
by ivicask
Fri Sep 22, 2017 9:20 am
Forum: Announcements
Topic: Newsletter 78 with 1GBPS WIRELESS PRODUCT ANNOUNCEMENT!
Replies: 109
Views: 29304

Re: Newsletter 78 with 1GBPS WIRELESS PRODUCT ANNOUNCEMENT!

@normis can RBwAPG-60ad be used in multipoint connections?Or its limited to single AP?
by ivicask
Tue Aug 29, 2017 1:28 pm
Forum: Announcements
Topic: v6.41rc [release candidate] is released! New bridge implementation!
Replies: 561
Views: 123700

Re: v6.41rc [release candidate] is released! New bridge implementation!

So how is this new bridge HW offload supposed to work?I upgraded my WAP AC and than I printed my bridges after upgrade and they all say hw=no, tried creating new bridge, still says no. Also I see there is new option Bridge Fast forward, what does it do?I tried ticking it again i see no differences a...
by ivicask
Sun Aug 13, 2017 12:25 pm
Forum: General
Topic: Cant get 3389 port forward only on single PC
Replies: 13
Views: 2111

Re: Cant get 3389 port forward only on single PC

@k6ccc just to report back, all working fine now, it was never problem in Mikrotik, that user had some 3d party terminal server on Windows 7, and that software was in some weird state and only connections from local lan worked.They reinstalled that software and now all works fine. Thanks for help ag...
by ivicask
Mon Aug 07, 2017 1:26 pm
Forum: General
Topic: Cant get 3389 port forward only on single PC
Replies: 13
Views: 2111

Re: Cant get 3389 port forward only on single PC

if 2 pc works but only one is not with same settings... 1. anycase try to make src-nat add action=dst-nat chain=dstnat dst-port=4001 in-interface=WAN protocol=tcp to-addresses=192.168.2.205 to-ports=3389 add action=src-nat chain=srcnat dst-address=192.168.2.205 dst-port=3389 protocol=tcp to-address...
by ivicask
Fri Aug 04, 2017 7:12 pm
Forum: General
Topic: Cant get 3389 port forward only on single PC
Replies: 13
Views: 2111

Re: Cant get 3389 port forward only on single PC

It goes establishing connection for 1-2 sec, than it pops "internal error" That does not sound like a firewall error to me. A firewall issue would just fail to connect. Stupid question. You are trying to connect to your external address and port 4001 (since that's the port you are forwarding)? You ...
by ivicask
Fri Aug 04, 2017 5:36 pm
Forum: General
Topic: Cant get 3389 port forward only on single PC
Replies: 13
Views: 2111

Re: Cant get 3389 port forward only on single PC

To make things wierder, I forgot to mention, it worked first day I set it at customer than it stoped working next day , mikrotik or isp router wasn't touched.

I will try your suggestions tomorow, thanks for now.
by ivicask
Fri Aug 04, 2017 5:01 pm
Forum: General
Topic: Cant get 3389 port forward only on single PC
Replies: 13
Views: 2111

Re: Cant get 3389 port forward only on single PC

1. windows firewall can restrict to access while you are from different net https://technet.microsoft.com/en-us/library/dd421713(v=ws.10).aspx Block edge traversal (default) Prevent applications from receiving unsolicited traffic from the Internet through a NAT edge device. 1b don't shutdown firewa...
by ivicask
Fri Aug 04, 2017 2:36 pm
Forum: General
Topic: Cant get 3389 port forward only on single PC
Replies: 13
Views: 2111

Re: Cant get 3389 port forward only on single PC

1. check your pc's firewall again, check gateway on pc 2. make src-nat add action=src-nat chain=srcnat dst-address=192.168.2.205 dst-port=3389 protocol=tcp to-addresses=192.168.2.X Remote works from local network, so its no firewall (and firewall is currently full off) And that 2, makes no sense to...
by ivicask
Fri Aug 04, 2017 9:23 am
Forum: General
Topic: Cant get 3389 port forward only on single PC
Replies: 13
Views: 2111

Cant get 3389 port forward only on single PC

I have weird issue at one customer, and im out if ideas how else to debug it. They have LTE router from their ISP and i put DMZ zone on Mikrotik behind it(HAP AC.I did several port forwards, few servers, video server etc and they all work just fine. But there is this single PC i cant RDC from outsid...
by ivicask
Wed Jun 21, 2017 9:45 am
Forum: General
Topic: Skype blocked after firmware update
Replies: 9
Views: 1234

Re: Skype blocked after firmware update

Its not mikrotik problem, they have huge outage and services go randomly up/down
by ivicask
Sun Jun 11, 2017 3:00 pm
Forum: Beginner Basics
Topic: Upload problem Queue Tree+PCQ
Replies: 18
Views: 3814

Re: Upload problem Queue Tree+PCQ

Hi!, Yes, I noticed that and changed. Is better now (last post). Regards QoS will not work with two different queue structures set to the same parent interface - instead of one on bridge and one on ether1 you now have two on the bridge and two on ether1, this won't work. ivicask's solution uses the...
by ivicask
Thu Jun 08, 2017 9:41 am
Forum: Beginner Basics
Topic: Upload problem Queue Tree+PCQ
Replies: 18
Views: 3814

Re: Upload problem Queue Tree+PCQ

I had same problems as you, only way to properly fix it, is to leave some reservation for your on-line games and make more parent queues to put in control unwanted traffic that slows the important one As you can see in this example i made for you. 1.PNG You can also make more parent queues like this...
by ivicask
Fri May 26, 2017 9:09 pm
Forum: Announcements
Topic: v6.40rc [release candidate] is released!
Replies: 231
Views: 45803

Re: v6.40rc [release candidate] is released!

Hm, i upgraded my WAP AC to RC 13 and i cant connect to router anymore via HTTP or WINBOX via IP, i can only connect via WINBOX via MAC address.Also router it self doesn't have access to internet anymore(cant check for new version, connection timed out)Other than that everything else works, internet...
by ivicask
Mon May 15, 2017 9:59 am
Forum: General
Topic: Feature request: CAPsManager - roaming
Replies: 79
Views: 23239

Re: Feature request: CAPsManager - roaming

Just wanted to say for everyone asking for roaming implementation like Ubiquiti has, did anyone actually tried it so far? I have several of this UniFI APs at one customer, and i tried zero hand off feature and made everything so much worse and unstable that i had to turn it off, it simple doesn't w...
by ivicask
Sun May 14, 2017 9:21 pm
Forum: General
Topic: Feature request: CAPsManager - roaming
Replies: 79
Views: 23239

Re: Feature request: CAPsManager - roaming

Just wanted to say for everyone asking for roaming implementation like Ubiquiti has, did anyone actually tried it so far? I have several of this UniFI APs at one customer, and i tried zero hand off feature and made everything so much worse and unstable that i had to turn it off, it simple doesn't wo...
by ivicask
Thu May 11, 2017 3:16 pm
Forum: General
Topic: Firewall rules only using one CPU
Replies: 8
Views: 1014

Re: Firewall rules only using one CPU

Good day, Recently our upstream provider has been threatening to terminate our service because they have started to receive a metric Sh!t ton of abuse mails from because internet users on the network is downloading illegal torrents, with 5000 customers that's no surprise. So i started to setup a me...
by ivicask
Mon May 08, 2017 2:01 pm
Forum: Wireless Networking
Topic: SXT 5 AC bandwith problem
Replies: 28
Views: 2271

Re: SXT 5 AC bandwith problem

Internal test and real test tell same. I tried copy data over link and speed is 400 and 300mbps. Depend on way.
Maybe you have some network in close proximity to that other side on same/near frequencies?
Try running frequencies usage scan on both sides and set it to lowest used channel.
by ivicask
Mon May 08, 2017 10:42 am
Forum: Wireless Networking
Topic: SXT 5 AC bandwith problem
Replies: 28
Views: 2271

Re: SXT 5 AC bandwith problem

Yes I try changeing wireless protocol, but best performance I have on 802.11.
400mbps one way, 300mbps opposite way.
If you get 400mbps real throughput than where is the problem?Dont expect to get 600+, thats just link speeds you will never reach that.
by ivicask
Mon May 08, 2017 10:12 am
Forum: Wireless Networking
Topic: SXT 5 AC bandwith problem
Replies: 28
Views: 2271

Re: SXT 5 AC bandwith problem

CCQ is around 80-95%.
Did you try changing wireless protocol?For me nv2 nstreme works the best, i have older SXT 5gz and im getting 130mbit speeds over 1KM link.
by ivicask
Mon May 08, 2017 10:05 am
Forum: Wireless Networking
Topic: Lock client to specific CAPsMAN interface?
Replies: 5
Views: 1509

Re: Lock client to specific CAPsMAN interface?

Im running a CAPsMAN server on an RB962. The wifi on the device is controlled by CAPsMAN with an additional waP AC. This makes me get 4 interface total 2 x 2.4 and 2 x 5GHz. I want to lock some clients to one of this 4 interfaces because of the range to get the best possible signal. Tried many diff...
by ivicask
Sat May 06, 2017 5:12 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

what is the port 1723 dstnat rule for. Surely you dont need to dstnat to your router. I have much more in my firewall and nat than you have on a HAP lite never see CPU going above 10% total with simple queues. never see any issues. I would look out for an error here or a loop or some sort of attack...
by ivicask
Sat May 06, 2017 12:48 am
Forum: Wireless Networking
Topic: RouterBoard hAP AC Slow wireless performance.
Replies: 35
Views: 10789

Re: RouterBoard hAP AC Slow wireless performance.

Apple tech spec for all 2015 Macbook Air shows https://www.apple.com/macbook-air/features/ 1300 Mbps ! Chipset : Broadcom BCM43xx Well it's strange, because mine air book clearely showed dual band ac under device manager sorry dont have it anymore around to check anything or tell you anything more ...
by ivicask
Sat May 06, 2017 12:33 am
Forum: Wireless Networking
Topic: RouterBoard hAP AC Slow wireless performance.
Replies: 35
Views: 10789

Re: RouterBoard hAP AC Slow wireless performance.

I know where to check my MacOS device wifi spec, but I don't see over there this dual or triple wording.
Well tell me what wifi chip model it has, simple Google will reveal its specs..
by ivicask
Sat May 06, 2017 12:28 am
Forum: Wireless Networking
Topic: RouterBoard hAP AC Slow wireless performance.
Replies: 35
Views: 10789

Re: RouterBoard hAP AC Slow wireless performance.

That is interesting. Friend of mine has same model same time and got 1200-1300 connection from Netgear 5G Router. I just wondering where can I find this information in mac about WiFi card dual/triple ? Check model specifications for wifi, not sure how to check under OSX, I installed windows as cust...
by ivicask
Fri May 05, 2017 11:27 pm
Forum: Wireless Networking
Topic: RouterBoard hAP AC Slow wireless performance.
Replies: 35
Views: 10789

Re: RouterBoard hAP AC Slow wireless performance.

Still only 867 Mb. How to fix setup up to 1200-1300Mb ? @IntrusDave how to get Channel 100 on Mikrotik wAP ac ? I'm not too much into mac but as far I know Mac Air doesn't have triple chain wifi, I had new Mac Air yesterday at work and it showed as dual chain in device manager, also connected 867mbit
by ivicask
Fri May 05, 2017 2:22 pm
Forum: Wireless Networking
Topic: CAPsMAN not working on 2.4GHz, 5GHz OK
Replies: 13
Views: 3002

Re: CAPsMAN not working on 2.4GHz, 5GHz OK

Thanks for your reply. Below are my configurations. I noticed, that the CAPsMAN forwarding channel shuts down if I connect to the 2.4GHz network. When I connect to 5GHz, the channel works and the display "channel: 2412/20-Ce/gn(20dBm), SSID: MTIK-24, CAPsMAN forwarding" and "channel: 5180/20-Ceee/a...
by ivicask
Fri May 05, 2017 2:07 pm
Forum: General
Topic: Expert needed for remote paid support
Replies: 3
Views: 507

Re: Expert needed for remote paid support

Hi R1CH, and thank you for your prompt response. I will try this solution since I am thinking that many of the clients will connect to 5Ghz, because many devices have support for 5Ghz nowadays. But I am still having some things that are not so clear. Indeed, the 2.4Ghz band is very crowded, but why...
by ivicask
Fri May 05, 2017 1:59 pm
Forum: Announcements
Topic: v6.40rc [release candidate] is released!
Replies: 231
Views: 45803

Re: v6.40rc [release candidate] is released!

*) dns - made loading thousands of static entries faster;

Thank you MIkrotik for this, my routers starts/restart so much faster now (around 10k DNS entries)
by ivicask
Fri May 05, 2017 1:57 pm
Forum: Wireless Networking
Topic: RouterBoard hAP AC Slow wireless performance.
Replies: 35
Views: 10789

Re: RouterBoard hAP AC Slow wireless performance.

Please help me how to configure my wAP ac (RBwAPG-5HacT2HnD-BE) to run this same 1300 Mb (MAcBook) speed like in mentoned by IntrusDave? Is this country Switzerland. 5240/20-eeeC/ac/P(20dBm)??? The default config for the wireless should be pretty good. The only thing I changed on my hAP AC is locki...
by ivicask
Fri May 05, 2017 1:44 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

Can you post your nat and mangle rules. /ip firewall nat add action=masquerade chain=srcnat comment="defconf: masquerade" out-interface=pppoe-out1 add action=masquerade chain=srcnat out-interface=WAN_IZLAZ add action=masquerade chain=srcnat out-interface=DISZG_GOST_BRIDGE add action=dst-nat chain=d...
by ivicask
Thu May 04, 2017 11:04 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

are you not under some sort of attack. I find it weird your router is hitting 28% on firewall as well as queues. confirm how many clients you have running off this. can you do export on your firewall. During tests there was like 3 clients.Nobody was active, because i would see traffic on pppoe conn...
by ivicask
Thu May 04, 2017 1:22 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

This may sound silly, but do you really need the Simple queues? I'm using Queue tree, this is just example so someone doesn't tell me how mangle or Queue tree rules are bad ,or how i should change that or that, thats why i disabled all rules for test. Performance issue happens with both Queue tree ...
by ivicask
Thu May 04, 2017 12:35 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

Here we go again, problem is back, nothing was touched in configuration, i tried again disabling all firewall, mangle, Queue tree rules. I set single simple queue rule, limit it to 500/500mbit, i get top 170mbit on speedest I disable simple rule i get 250mbit again. Comparing to my previos screensho...
by ivicask
Tue May 02, 2017 7:46 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

Do test: in this simple queue, try to use queue type = sfq. (create new one or simply use wireless-default) and check again.
I did try that! Now its pointless as i dont have problem!
by ivicask
Tue May 02, 2017 6:35 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

i see firewall use about twice resources than qos. So, probably you can try to optimize your firewall rules (mangle) Well i have simple mangle rules, and as long everything works and CPU isnt crossing even 50% total i dont want to touch anything.. But as i said original problem was with ALL firewal...
by ivicask
Tue May 02, 2017 4:20 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

@ivicask: what others are saying is that in multi-cpu boards (like your hEX or my CCR) some processes that don't use multi-threading can consume a single core to 100% but what you see in total (that one you see in winbox) is a fraction of percent. Given that you have a dual-cpu system, if one goes ...
by ivicask
Tue May 02, 2017 3:49 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

Can you click on system -- >settings ---> resources Then click on CPU and run your test again. You will see this will show each of the CPU cores and you can see if one is maxing out. You can then click Tools Profile to see the name of the process that is using all your resources. I believe that onl...
by ivicask
Tue May 02, 2017 3:13 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

On a different scenario but I have the same problem. Many simple queues on a CCR1009, CPU is fine (<50%) but throughput is really limited. Disabling queues makes it flow without issues. I don't know what to do. Yep seams same issue as me, and i just got replay from MT, here is what they replied: "H...
by ivicask
Tue May 02, 2017 9:38 am
Forum: Beginner Basics
Topic: printer scanner very slow on capsman
Replies: 13
Views: 1308

Re: printer scanner very slow on capsman

Hi vital Sorry for the wrong info, I wanted to write that the RX signal of the printer is -55 and TX rate is about 58Mbps. Regards.a What exactly do you expect out of wireless connection? USB 2,0 goes up to 480Mb/sec, while wireless even under AC speeds cant realistically top that. If you are looki...
by ivicask
Mon May 01, 2017 1:08 pm
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Re: Huge performance drop with mangle + queue tree rules, CPU 50% max

So not a single idea from anyone about this?No response from Mikrotik support in 4 days also..
by ivicask
Thu Apr 27, 2017 3:46 pm
Forum: General
Topic: v6.39rc80 [release candidate] is released!
Replies: 63
Views: 10996

Re: v6.39rc80 [release candidate] is released!

Any one else getting WiFi poor performance, high latency, low Sinal quality, or even disconnecting offen, using capsman? I started to notice this behavior since >rc70 Update: I just received reports from my colleagues that user complain about massive disconnection and authentication problems => Bac...
by ivicask
Thu Apr 27, 2017 10:05 am
Forum: General
Topic: CAPsMAN auto frequency
Replies: 39
Views: 27429

Re: CAPsMAN auto frequency

As far as I can tell, there no way to select different channels on capsman. How this could be possible?
Why not?Create as many channels you want and assign them to different aps.
by ivicask
Thu Apr 27, 2017 9:30 am
Forum: General
Topic: Huge performance drop with mangle + queue tree rules, CPU 50% max
Replies: 22
Views: 4611

Huge performance drop with mangle + queue tree rules, CPU 50% max

Hey hope someone could point me what i could be doing wrong.I have some basic QOS rules i created for few routers i use for my customers, now first time i installed new HEX3 and on fast optical link going up to 250mbit / 150mbit im having speed issues. I copy pasted rules i use on 10 other rotuers w...
by ivicask
Wed Apr 26, 2017 8:15 pm
Forum: Wireless Networking
Topic: CAPsMAN constant problems with performance
Replies: 16
Views: 4507

Re: CAPsMAN constant problems with performance

For me local forwarding is only working at my caps when i have a bridge with ether1. When i enable local forwarding it automatics add wlan1 to that bridge. I have to set also that bridge in cap menu. I just bridged Wlan and Lan on CAPS, on CAPsMAN i havent created any birdge at all and it works pro...
by ivicask
Wed Apr 26, 2017 5:38 pm
Forum: Wireless Networking
Topic: CAPsMAN constant problems with performance
Replies: 16
Views: 4507

Re: CAPsMAN constant problems with performance

I use capsman forwarding for other guest network, if you want to use local forwarding for other networks also than you need to manually set bridges on Caps
by ivicask
Wed Apr 26, 2017 5:29 pm
Forum: Wireless Networking
Topic: CAPsMAN constant problems with performance
Replies: 16
Views: 4507

Re: CAPsMAN constant problems with performance

EDIT:Seeing from your setup it seams i did near 100% identical one! Try removing bridge from your datapath for that main SSID, also make sure none of CAP interfaces which are set to local forwarding are also NOT in any bridge. You mean completely remove bridge from the main configuration? How would...
by ivicask
Wed Apr 26, 2017 5:00 pm
Forum: Wireless Networking
Topic: CAPsMAN constant problems with performance
Replies: 16
Views: 4507

Re: CAPsMAN constant problems with performance

Thank you for that, I think we will try setting up CAPsMAN again in a few months. We need to give some time for the client to have a rest after a bunch of problems with their wireless network :D BartoszP - is there any direct contact to you? I am from Poland as well :) Yes, read above i edited my p...
by ivicask
Wed Apr 26, 2017 4:51 pm
Forum: Wireless Networking
Topic: CAPsMAN constant problems with performance
Replies: 16
Views: 4507

Re: CAPsMAN constant problems with performance

I have installed 4x WAP AC with HEX3 as CAPsMAN controller with local forwarding for main SSID and capsman forwarding for guest SSID, and im getting around 200mbit in both cases(5ghz AC). Aps are installed in corridors on each floor. But i must say i also had performance issues initially, was gettin...
by ivicask
Tue Apr 25, 2017 10:25 am
Forum: Beginner Basics
Topic: Someone claimed that he hacked RouterOS
Replies: 19
Views: 12201

Re: Someone claimed that he hacked RouterOS

http://mig4vip.3abber.com/post/339997 From what i see this is not even a hacking tool, its just a alternative management software for mikrotik devices and printing some kind of cards as much i can understand from google translate Think someone just over-hyped this because they dont understand whats ...
by ivicask
Wed Apr 12, 2017 9:39 am
Forum: Wireless Networking
Topic: Wireless disconnection messages explained!
Replies: 85
Views: 77712

Re: Wireless disconnection messages explained!

Hi normis, I have upgrade from 6.34.6 to 6.37.5 my RB951G-2HnD. I have disabled wireless-fp package before restart and upgrade RouterOS. I have one wireless package and it was already activated (I think that installation is fine!) But When I activate wireless...few second later I got this log messa...
by ivicask
Tue Apr 11, 2017 5:00 pm
Forum: Wireless Networking
Topic: HAP AC 2.4Ghz Wireless not working
Replies: 9
Views: 3909

Re: HAP AC 2.4Ghz Wireless not working

Same problems with wAP ac + CAPsMAN. 5ghz working fine, but 2ghz work one of two wAP (some time cap1, sometime cap2 permit connect). Always second CAP drop connect with logs: 1) disconnected, 4-way handshake timeout 2) disconnected, received disassoc unspecified Just first time settings few WAP ACs...
by ivicask
Tue Apr 11, 2017 11:12 am
Forum: RouterBOARD hardware
Topic: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power
Replies: 18
Views: 4892

Re: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power

hAP ac has less than 5dBi antenna, so can't really compare Thats the point of this thread i guess, hope MT reconsidered and gives us models like hAP AC with external antennas and just make everyone happy. The original post says nothing about antenna. The OP asks to have more transmit power in the w...
by ivicask
Tue Apr 11, 2017 11:03 am
Forum: RouterBOARD hardware
Topic: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power
Replies: 18
Views: 4892

Re: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power

hAP ac has less than 5dBi antenna, so can't really compare
Thats the point of this thread i guess, hope MT reconsidered and gives us models like hAP AC with external antennas and just make everyone happy.
by ivicask
Tue Apr 11, 2017 10:49 am
Forum: RouterBOARD hardware
Topic: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power
Replies: 18
Views: 4892

Re: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power

There could be some other issue at play. Either there is a hardware problem with your device, or something else. Usually these devices work perfectly even well outside the home and some distance across the street. They do work good, and i have several hAP ACs and WAP ACs, and they work perfect on c...
by ivicask
Tue Apr 11, 2017 10:26 am
Forum: RouterBOARD hardware
Topic: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power
Replies: 18
Views: 4892

Re: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power

In this case hAP AC is bottleneck when it comes to signal, its not problem with my phone/laptop if it will be able to "talk" back to AP, its the AP that cant talk to my phone, even freaking laptop has larger antennas(builtin into screen edges) than hAP AC.. hAP ac has a very strong amplifier and go...
by ivicask
Tue Apr 11, 2017 10:22 am
Forum: RouterBOARD hardware
Topic: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power
Replies: 18
Views: 4892

Re: hAP ac (RB962UiGS-5HacT2HnT) - very weak TX power

mistry is right. high output power is not something to be proud of. better have good antenna and high sensitivity card. installing an amplifier will just amplify noise. also, your home devices will be able to "see" your AP, but will not be able to talk back to it. high power is not something that i...
by ivicask
Wed Mar 15, 2017 4:42 pm
Forum: Wireless Networking
Topic: Considering setting up ptp link between my parents house to my house, any advice?
Replies: 13
Views: 1316

Re: RE: Re: RE: Re: RE: Re: RE: Re: Consider setting up ptp link between my parents house to my house, any advice?

You cant get more than 100mbit on any SXT LITE because they have 100mbit ethernet ports, on that distance you will cap at 100mbit speeds due lan limitation, even tho you may get 300mbit wireless speeds on that distance. If you want more than 100mbit get regular SXT which have gigabit ports, you sho...
by ivicask
Wed Mar 15, 2017 9:18 am
Forum: Wireless Networking
Topic: Considering setting up ptp link between my parents house to my house, any advice?
Replies: 13
Views: 1316

Re: RE: Re: RE: Re: RE: Re: Consider setting up ptp link between my parents house to my house, any advice?

You cant get more than 100mbit on any SXT LITE because they have 100mbit ethernet ports, on that distance you will cap at 100mbit speeds due lan limitation, even tho you may get 300mbit wireless speeds on that distance. If you want more than 100mbit get regular SXT which have gigabit ports, you sho...
by ivicask
Tue Mar 14, 2017 5:02 pm
Forum: Wireless Networking
Topic: Considering setting up ptp link between my parents house to my house, any advice?
Replies: 13
Views: 1316

Re: RE: Re: RE: Re: Consider setting up ptp link between my parents house to my house, any advice?

No, that is not correct. Lite models can work for point to point links. Non-Lite models are only needed for multiple clients. One client is enough here, so even two SXT Lite 5 would be good enough. 5GHz is always better, because there is less interference in this band. Especially if there is clear ...
by ivicask
Tue Mar 14, 2017 3:11 pm
Forum: Wireless Networking
Topic: Considering setting up ptp link between my parents house to my house, any advice?
Replies: 13
Views: 1316

Re: RE: Re: Consider setting up ptp link between my parents house to my house, any advice?

No, that is not correct. Lite models can work for point to point links. Non-Lite models are only needed for multiple clients. One client is enough here, so even two SXT Lite 5 would be good enough. 5GHz is always better, because there is less interference in this band. Especially if there is clear ...
by ivicask
Tue Mar 14, 2017 3:05 pm
Forum: Wireless Networking
Topic: Considering setting up ptp link between my parents house to my house, any advice?
Replies: 13
Views: 1316

Re: Consider setting up ptp link between my parents house to my house, any advice?

I am considering setting a point to point link between my house to my parents house. Line of sight between these 2 houses is about 400-500 meters. This link will be a wan source from my place and lan line between 2 premises. Will 2 of sxt lite5 suffice for my purpose? Whats the difference between s...
by ivicask
Wed Feb 15, 2017 10:10 am
Forum: General
Topic: I sometimes face this PPPoE status Terminating... -failed to authenticate ourselves to peer.
Replies: 5
Views: 3014

Re: I sometimes face this PPPoE status Terminating... -failed to authenticate ourselves to peer.

Yes, it takes up to 30 sec to reconnect, thats why i have this Scheduler script runing at 3 at night when nobody is using internet.

interface pppoe-client disable pppoe-out1 ;
interface pppoe-client enable pppoe-out1 ;

So you will be care free during day so that your ISP doesn't disconnect your net.
by ivicask
Tue Feb 14, 2017 1:23 pm
Forum: Wireless Networking
Topic: 6.5km 1000mbps full duplex design
Replies: 11
Views: 2082

Re: 6.5km 1000mbps full duplex design

Why bother with those additional wlan cards, just get 4x RB922UAGS-5HPacT-NM, 2 on each side, connect antenas as you previously mentioned, than do interface bonding.You will get 2000mbps link.If you want guarantee 1000 mbps both ways you can set up some Queue to limit it to 1000mbit one way, or do e...
by ivicask
Mon Feb 13, 2017 11:06 am
Forum: General
Topic: I sometimes face this PPPoE status Terminating... -failed to authenticate ourselves to peer.
Replies: 5
Views: 3014

Re: I sometimes face this PPPoE status Terminating... -failed to authenticate ourselves to peer.

Thats normal, im getting the same, its your ISP disconnecting the line each 24 hours to give you new IP address, at least thats how it works here.
by ivicask
Wed Feb 08, 2017 5:04 pm
Forum: General
Topic: bridge only for wireless
Replies: 14
Views: 2131

Re: bridge only for wireless

I have the exactly same setup, and how i done it is very simple. PORT1 = WAN connected to my provider ADSL modem PORT2 = -> Connected to switch and gives internet output to rest of the network PORT3= bridged wth WLAN interface on router and also this PORT3 is connected to same switch. Does you have...
by ivicask
Mon Feb 06, 2017 12:23 pm
Forum: General
Topic: bridge only for wireless
Replies: 14
Views: 2131

Re: bridge only for wireless

I have the exactly same setup, and how i done it is very simple.
PORT1 = WAN connected to my provider ADSL modem
PORT2 = -> Connected to switch and gives internet output to rest of the network
PORT3= bridged wth WLAN interface on router and also this PORT3 is connected to same switch.
by ivicask
Thu Jan 12, 2017 10:00 am
Forum: Wireless Networking
Topic: Disconnect Extensive Data Loss copying large files
Replies: 6
Views: 1088

Re: Disconnect Extensive Data Loss copying large files

I havent had time to debug this, soon ill have several WAP AC units and few fast AC enabled laptops with super fast SSDs than ill do more testing.
by ivicask
Wed Dec 14, 2016 11:28 am
Forum: RouterBOARD hardware
Topic: HAP AC
Replies: 540
Views: 134389

Re: HAP AC

The error indicates poor signal. You can make a new logging topic to file (hAP ac has the space for this) Like this: screen 4.jpg screen 5.jpg Your answer makes no sense, how would i achieve 400mbit per sec(up to 50MB per sec) transfer in low signal? Im 3-4m form router, CCQ is near 100%, signal an...
by ivicask
Wed Dec 14, 2016 11:15 am
Forum: RouterBOARD hardware
Topic: HAP AC
Replies: 540
Views: 134389

Re: HAP AC

None of these temperatures should pose any risks to the device. It works fine even up to 65C ambient temperature. How about device it self?What temperatures are safe as i said i saw mine going to 70c(Room temperature below 25C) and than im getting wireless disconnects.. 55C is completely normal for...
by ivicask
Wed Dec 14, 2016 10:48 am
Forum: RouterBOARD hardware
Topic: HAP AC
Replies: 540
Views: 134389

Re: HAP AC

None of these temperatures should pose any risks to the device. It works fine even up to 65C ambient temperature.
How about device it self?What temperatures are safe as i said i saw mine going to 70c(Room temperature below 25C) and than im getting wireless disconnects..
by ivicask
Wed Dec 14, 2016 10:17 am
Forum: Scripting
Topic: random wifi password
Replies: 17
Views: 13506

Re: random wifi password

Could anyone help with script, it doesnt work for me only thing i get is Sector writes since reboot in log, i copy pasted script as it is for test i just changed
:local wifiprofile homeguest
to match my security profile name, but it doesnt seam to work at all (6.38rc25)
by ivicask
Wed Dec 14, 2016 9:34 am
Forum: RouterBOARD hardware
Topic: HAP AC
Replies: 540
Views: 134389

Re: HAP AC

My hAP AC idles at 59 degrees Celsius in a room that is around 21. Is this normal?
Same here, and during high throughput transfers on 5Ghz it goes up to 70, and i get wifi disconnects than after 10-15mins..
by ivicask
Mon Dec 12, 2016 10:07 am
Forum: Wireless Networking
Topic: Built in Wi-Fi vs cAP performance speed difference
Replies: 10
Views: 1460

Re: Built in Wi-Fi vs cAP performance speed difference

I had also horrific speeds from cAP, only thing that helped was setting it to G/N only mode.
by ivicask
Wed Dec 07, 2016 11:05 am
Forum: Wireless Networking
Topic: Disconnect Extensive Data Loss copying large files
Replies: 6
Views: 1088

Re: Disconnect Extensive Data Loss copying large files

make sure you use a separate SSID for 2,4 and 5 GHz. So you know exactly that you are connected to the 2,4 GHz. Or just disable the 5 GHz card. It doesnt break on 2.4ghz, but also it doesnt break 5ghz if slower client is connected(up to 300mbit).Issue only occurs on fast AC(dual chain 780mbit) equi...
by ivicask
Wed Dec 07, 2016 10:31 am
Forum: Wireless Networking
Topic: hAP AC throughput
Replies: 32
Views: 6391

Re: hAP AC throughput

As a WAP... I did get 340. But its troubling to see it (Mikrotik) beat buy UniFi--k gear. I have written them off for a list of reason. Guess I need to break them back out again and run more tests. Exactly around 350Mbit is what i get from hAP AC(connection on laptop shows 780mbit, dual-chain), run...
by ivicask
Tue Dec 06, 2016 4:25 pm
Forum: Wireless Networking
Topic: Disconnect Extensive Data Loss copying large files
Replies: 6
Views: 1088

Re: Disconnect Extensive Data Loss copying large files

Can you try the same, but use the 2,4 GHz band? Just to rule out the router setup.
I will try tomorrow, but as i said, i factory reset tested this without even entering router or setting any of settings in it.

Soon ill have one WAP AC ill test the same with it..
by ivicask
Mon Dec 05, 2016 9:55 am
Forum: Wireless Networking
Topic: Disconnect Extensive Data Loss copying large files
Replies: 6
Views: 1088

Disconnect Extensive Data Loss copying large files

Just noticed that during large file copy over network on hAP AC on 5ghz interface file transfer breaks after around 10 mins and than all clients gets disconnected and are unable to connect back for like 2mins. I tried resting router to factory settings without touching any settings just plugin Ether...
by ivicask
Wed Nov 16, 2016 2:04 pm
Forum: Wireless Networking
Topic: WAP AC 2.4GHz issue
Replies: 3
Views: 901

Re: WAP AC 2.4GHz issue

I have opposite problem with this device, 2,4GHZ works perfect while 5ghz has so much weaker signal that on same spot you get like 3 bars on mobile phone on 2,4 but 5GHz isnt even in range.
And we tested this even outside with no obstacles, and there are NO other 5GHz networks in range...
by ivicask
Mon Nov 14, 2016 2:47 pm
Forum: Beginner Basics
Topic: [advice] Configuration RBwAP2nD
Replies: 16
Views: 3984

Re: [advice] Configuration RBwAP2nD

Did you put your computer lan into same range as mikrotik?

So put manual IP address on your PC like 192.168.88.5, you will be able to access router than.
by ivicask
Mon Oct 24, 2016 9:41 am
Forum: General
Topic: How i block google or other ads
Replies: 10
Views: 8925

Re: How i block google or other ads

http://stopad.generate.club/

Works wonders for me
by ivicask
Mon Oct 17, 2016 3:51 pm
Forum: Announcements
Topic: v6.38rc [release candidate] is released
Replies: 331
Views: 75210

Re: v6.38rc [release candidate] is released

Hello support! We are having a lot of problems here with Mikrotik Queues X Windows 10 Updates. When a customer have one PC downloading Windows 10 updates, his queue is 100% used, most of the time is impossible to do anything else, even open an web page. So, I was reading about it and I could see th...
by ivicask
Mon Oct 17, 2016 11:54 am
Forum: General
Topic: Web Proxy
Replies: 4
Views: 746

Re: Web Proxy

Your better than with running squid proxy as it also caches HTTPS traffic, you wont get much benefits from Mikrotik one, but yes, it does work much better on more powerful hardware..
by ivicask
Tue Oct 11, 2016 1:00 pm
Forum: General
Topic: Web Proxy
Replies: 4
Views: 746

Re: Web Proxy

For me web proxy with caching is totally un-usable any mikrotik routers, at least cheaper ones i tired, got HAP AC, and opening just single page like 9gag on single computer without any other traffic causes 100% CPU hit form proxy, same thing happens if you download things, at the end it slows web s...
by ivicask
Mon Oct 03, 2016 10:36 am
Forum: General
Topic: Port forward stops working when transparent proxy enabled
Replies: 1
Views: 356

Re: Port forward stops working when transparent proxy enabled

Hm, if i tick Anonymous option inside WEB proxy options all port forward starts working again, but proxy stops caching content.. EDIT:It actually works all properly just by ticking Anonymous option in web proxy. Now, im worried by performance of proxy on Mikrotik, i just have ONE pc, and moment i op...
by ivicask
Mon Oct 03, 2016 10:16 am
Forum: General
Topic: Port forward stops working when transparent proxy enabled
Replies: 1
Views: 356

Port forward stops working when transparent proxy enabled

I cant figure how to fix this, so i have several ports forwarded via standard dstnat rules and they work just fine.Problem is moment i add dstnat redirect rule to redirect transparent proxy traffic ports 80 to 8080 all my previous dstnat rules stops working and ports to those computers are closed. W...
by ivicask
Sun Oct 02, 2016 12:32 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

Just to report back, after few hours on phone with our ISP they finally managed to switch their router in bridge mode and i created ppoe on mikrotik and now finally performance issues are solved as far this part is concerned. But now im facing another issue that is as bad as before.I want transparen...
by ivicask
Tue Sep 27, 2016 3:38 pm
Forum: General
Topic: Feature request for v7.x
Replies: 269
Views: 63659

Re: Feature request for v7.x

Would be possible to implement option to enable IP firewall per bridge? So BRIDGE A has ip firewall enabled and i can control fully its traffic (for example controlling ADSL traffic between bridget ports 1-2) And for example BRIDGE B which would just pass traffic between LAN port3 and WIFI interface...
by ivicask
Tue Sep 27, 2016 3:27 pm
Forum: General
Topic: Using Ethernet on Wireless Repeater
Replies: 3
Views: 1790

Re: Using Ethernet on Wireless Repeater

Maybe try creating 2 WIFI interfaces one station other AP, than bridge all together, you will have internet on LAN port, and you can also create another WIFI network with same SSID which would act as it was repeated.
by ivicask
Fri Sep 23, 2016 1:50 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

I can imagine that it is a hustle if you need to forward a whole bunch of ports, but are you really in that situation? How many ports do you need to forward? I don't know your ISP supplied router, but maybe it is possible to forward a range. Nah i cant add range, but i got around 15 rules its not t...
by ivicask
Wed Sep 21, 2016 4:11 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

Why not use a different IP segment behind your hEX? How can i port forward than?ISP router blocks all the traffic, and i can only port forward from him and in that 192.168.1.0/24 range, usualy i put mikrotik IP in DMZ zone on ISP router, than all ports are open on mirkotik and i firewall and port f...
by ivicask
Wed Sep 21, 2016 3:51 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

Why not use a different IP segment behind your hEX? How can i port forward than?ISP router blocks all the traffic, and i can only port forward from him and in that 192.168.1.0/24 range, usualy i put mikrotik IP in DMZ zone on ISP router, than all ports are open on mirkotik and i firewall and port f...
by ivicask
Wed Sep 21, 2016 2:15 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

So conclusion, i took one hEX lite for test, i factory reset it, i plug ETH1 port into my ADSL router and one test laptop to ETH2. ETH1 gets ip from ADSL router 192.168.1.0/24 range ETH2 get ip from mikrotik's DHCP 192.168.88.0/24 range. Internet works fine on laptop. Now i change ETH2 range to from...
by ivicask
Sat Sep 10, 2016 3:46 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

Hey thanks for your info. Well now i figured why i used Bridge IP filter even in a first place. Im unable to mangle download traffic on BRIDGE without it, only upload works. Is is possible to separate download from upload (for queues) on bridge which is passing internet from router to rest of the ne...
by ivicask
Fri Sep 09, 2016 11:16 am
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

I dont need QOS or Filtering of LAN, i just need QOS for WAN, But i guess i have some general flaw in my configurations, i dont know how else to create QOS without bridge?And ip Filter enabled. What i need is for simplest example. LAN1 > CONNECTED TO ADSL ROUTER LAN2 > OUTPUT TO MAIN SWTICH I need Q...
by ivicask
Thu Sep 08, 2016 8:23 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

Split the networks both on layer3 and layers, don't put them on the same bridge and switch of bridge firewall. Put blocking rules in ip firewall instead. Ip firewall is the one causing slowdowns, i didint add anything in bridge firewall :) And as i mention rules means nothing, IP firewall once acti...
by ivicask
Thu Sep 08, 2016 7:59 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

Do you surely need firewall on bridge level? If you use it, it was not clear from the export... How else I can create guest wifi network for example with another dhcp range from main wifi and this 2 networks must be isolated from each other? Other than that, I also need queues or one pc downloads W...
by ivicask
Thu Sep 08, 2016 4:21 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

At our company iv set HAP AC as main router and have some basic firewall and mangle rules with QUEUES. Sorry, but this config is far away from a "basic" one, you seem to have touched every imaginable knob available in the OS, so the possible variables are endless, making troubleshooting a shot in t...
by ivicask
Thu Sep 08, 2016 12:42 am
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

Doubt this export will solve anything, basically just taking fresh rested router, creating simple wifi connectin with bridge and enabling IP filter will cause 100% CPU load and almost 4x times less performance making the router uselss for some basic expected functions.. In case someone going to say ...
by ivicask
Wed Sep 07, 2016 7:15 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

Re: 100 CPU on any mikrotik router using basic rules

Why cant i directly bridge one LAN port with WLAN interface bypassing all ip firewall thats active on other bridge port?Why is this not possible to do on Mikrotik router? Is perfectly possible... check that "Use IP Firewall" isn't ticked on Bridge > Settings Upgrade it to ROS 6.36.3, checking Syste...
by ivicask
Wed Sep 07, 2016 4:16 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 6273

100 CPU on any mikrotik router using basic rules

So im battling this problem for some time. At our company iv set HAP AC as main router and have some basic firewall and mangle rules with QUEUES. (around 30 all togther). We have 40mbit ADSL line and CPU already hits 100% often when PCSs on network download windows update or torrents. TO make things...
by ivicask
Tue Aug 16, 2016 10:42 am
Forum: RouterBOARD hardware
Topic: cAP very bad wireless perfomance
Replies: 9
Views: 1696

Re: cAP very bad wireless perfomance

Well im getting 20-30mbps in 40Mhz on this router, well anyways, after switching it to g/n only its geting stable 20-30mbit(out of 40mbit ADSL speed) and customer is happy now, as before it couldn't even watch youtube in 1080 or stream movies as it would buffer/lag randomly.. I dont have time to inv...
by ivicask
Fri Aug 12, 2016 8:53 pm
Forum: RouterBOARD hardware
Topic: cAP very bad wireless perfomance
Replies: 9
Views: 1696

Re: cAP very bad wireless perfomance

After talking to support, forcing router to only g/n helepd a bit, its stable around 20mbit now. At home i got metal 2SHPn and i get over 100mbit without problem(connection rate shows 150mbit) So whats the actual deal?If what your saying is true, why is this router even showing 150mbit on my phone i...
by ivicask
Fri Aug 12, 2016 1:59 pm
Forum: RouterBOARD hardware
Topic: cAP very bad wireless perfomance
Replies: 9
Views: 1696

Re: cAP very bad wireless perfomance

Connection states 150mbit connection, and if you see my screneshot it shows around 120mbit throughout, i got many other 150mbit routers around here from various manufcaturers and when i connect them i can get up to 100mbit speeds without problem. Also there is only one another 2,4ghz network in rang...
by ivicask
Fri Aug 12, 2016 11:35 am
Forum: RouterBOARD hardware
Topic: cAP very bad wireless perfomance
Replies: 9
Views: 1696

cAP very bad wireless perfomance

So we got one of this for an customer, but i cant get any good performanse out of it, in best case i can get around 30mbit on speedtest from this router, i tried reseting it to factory, upgrade latest software but nothing helps.In most occasions we get around 5-10mbit, doesnt matter if im near route...
by ivicask
Tue Aug 09, 2016 2:21 pm
Forum: General
Topic: Huge UDP17 to 5355 spam to all devices on network
Replies: 4
Views: 814

Re: Huge UDP17 to 5355 spam to all devices on network

Oh, i was looking at wrong place(ip firewall)->bridge filter!Thanks man! I was unable to add first rule, as dst-adress is greyed out, also doesn't alow me to add via command line. But anyways, i disabled all multicast AFIK dont need it. All this weird packets to my phone and other devices stooped, a...
by ivicask
Tue Aug 09, 2016 1:50 pm
Forum: General
Topic: Huge UDP17 to 5355 spam to all devices on network
Replies: 4
Views: 814

Re: Huge UDP17 to 5355 spam to all devices on network

It spams all devices, so i need to block it on Router, but please tell me HOW!?

I tried adding general drop rule to my phone IP without any exclusions, and packets still go thru and keep device awake, im unable to block this!
by ivicask
Tue Aug 09, 2016 12:37 pm
Forum: General
Topic: Huge UDP17 to 5355 spam to all devices on network
Replies: 4
Views: 814

Huge UDP17 to 5355 spam to all devices on network

Could someone please help me solve this, i have this huge spam on my mikrotik, and it keeps mobile phones awake, it constantly sends this packets to basically all devices on network, but i cant figure whats causing it or how to block it (blocking this ports doesnt help) This is screenshots of torch ...
by ivicask
Mon May 16, 2016 10:10 am
Forum: RouterBOARD hardware
Topic: cAP 2n POE compatibility with Dlink DES-1210-28P
Replies: 0
Views: 690

cAP 2n POE compatibility with Dlink DES-1210-28P

Im preparing to build a WIFI netowrk using 12 of this APs, i just wanted to ask if someone knows, or can just confirm me if this http://www.dlink.com/uk/en/support/product/des-1210-series-fast-ethernet-smart-switches swtich should work properly with this AP and power them properly via POE?Specificat...
by ivicask
Tue Apr 05, 2016 9:59 pm
Forum: General
Topic: pppoe wrong MTU size after swithing to bridge mode and mikrotik
Replies: 5
Views: 1102

Re: pppoe wrong MTU size after swithing to bridge mode and mikrotik

Ok that is recent...
Maybe you can do a trace to see what is going wrong.
In my case I have MTU 1500 because the provider supports RFC4638 and the modem (Draytek 130) too.
Sorry, what exactly you mean by trace?
by ivicask
Tue Apr 05, 2016 9:34 pm
Forum: General
Topic: pppoe wrong MTU size after swithing to bridge mode and mikrotik
Replies: 5
Views: 1102

Re: pppoe wrong MTU size after swithing to bridge mode and mikrotik

What RouterOS version do you have?
There have been bugs like this but I think they are all solved now.
6,35RC42
by ivicask
Tue Apr 05, 2016 2:14 pm
Forum: General
Topic: pppoe wrong MTU size after swithing to bridge mode and mikrotik
Replies: 5
Views: 1102

pppoe wrong MTU size after swithing to bridge mode and mikrotik

Hey, i have question regarding MTU size for pppoe connection.Before i put my ADSL router in bridge mode, i know i had MTU of 1492 (done a cmd test ping ) ping google.com -f -l 1472 etc for example. Now after i mikrotik dials connection, i see MTU shows 1492 for 2 sec, than drops to 1480, while MRU i...
by ivicask
Tue Apr 05, 2016 12:49 pm
Forum: Wireless Networking
Topic: Metal 2SHPn bricked after software downgrade
Replies: 11
Views: 1222

Re: Metal 2SHPn bricked after software downgrade

Try wireless-cm2. did you check firmware? If problem persists, and giving the history of events you mentioned, I'd generate a supout while problem is happening and send an email to support detailing everything you have done, or referring to this post. Thanks for all your help, i didint had much mor...
by ivicask
Sun Apr 03, 2016 3:19 pm
Forum: Wireless Networking
Topic: Metal 2SHPn bricked after software downgrade
Replies: 11
Views: 1222

Re: Metal 2SHPn bricked after software downgrade

Which wireless package are you using?
Standard wireless-fp
by ivicask
Sun Apr 03, 2016 3:05 pm
Forum: Wireless Networking
Topic: Metal 2SHPn bricked after software downgrade
Replies: 11
Views: 1222

Re: Metal 2SHPn bricked after software downgrade

Is its System > Routerboard firmware up to date? Check its ethernet port (Overall, Tx, Rx, Status) tabs on Interface menu. Check with a different Poe injector. Check the cable. HTTPs traffic (youtube, gmail, facebook, etc) struggling is usually a sign of Layer2 problems; so far wireless connection ...
by ivicask
Sun Apr 03, 2016 2:48 pm
Forum: Wireless Networking
Topic: Metal 2SHPn bricked after software downgrade
Replies: 11
Views: 1222

Re: Metal 2SHPn bricked after software downgrade

Could you conclude that is actually HTTPs the most affected by this? Post a wireless > registration screenshot. Enable Tx/Rx CCQ (%) column field (use the leftmost button with a downright pointing triangle at the column bar to enable it) Are you using this unit with a omni antenna? Standard omni th...
by ivicask
Sun Apr 03, 2016 2:26 pm
Forum: Wireless Networking
Topic: Metal 2SHPn bricked after software downgrade
Replies: 11
Views: 1222

Re: Metal 2SHPn bricked after software downgrade

Okay, i managed to revive it with routeros-mipsbe-6.34.4, but again i have same issue as before, i created the most basic setup WIFI, but speeds are bad on clients, YouTube is buffering like on slow link, but when i run speedtest it shows 23MBIT which is my full internet speed, im goging crazy cant ...
by ivicask
Sun Apr 03, 2016 1:32 pm
Forum: Wireless Networking
Topic: Metal 2SHPn bricked after software downgrade
Replies: 11
Views: 1222

Re: Metal 2SHPn bricked after software downgrade

Try netinstalling to latest current, 6.34.4
Ill try, but thats the one that i installed and it caused this semi-brick..
by ivicask
Sun Apr 03, 2016 1:17 pm
Forum: Wireless Networking
Topic: Metal 2SHPn bricked after software downgrade
Replies: 11
Views: 1222

Metal 2SHPn bricked after software downgrade

So, i started having weird wifi perfomance issues with this router, for example youtube on my phone would load long time, pages would take long time to refresh, if u ran Speedtest it would show my full internet speed, but finding best server would take 30 sec!!! So i supsected it may be something ba...
by ivicask
Mon Mar 21, 2016 11:30 am
Forum: Announcements
Topic: v6.35rc [release candidate] is released, new wireless package!
Replies: 537
Views: 105750

Re: v6.35rc [release candidate] is released, new wireless package!

I too am having wireless client issues since running 6.35rc33. Using a hAP AC in CAPsMAN mode and my clients keep loosing their connection to the network, connection stays up, but not traffic locally or to internet possible anymore. Reconnect of the wireless link immediately solves it. Running 6.35...
by ivicask
Wed Feb 17, 2016 11:03 pm
Forum: Announcements
Topic: v6.35rc [release candidate] is released, new wireless package!
Replies: 537
Views: 105750

Re: v6.35rc [release candidate] is released, new wireless package!

no g-n.png
[
I can't find this, in 2,4 ghz device and not in 5,8 ghz (6.35rc10)
wireless-rep - added 802.11g/n only band;

802.11b or 802.11g is working on 2.4GHz not 5GHz look the wikipedia https://en.wikipedia.org/wiki/IEEE_802.11
Yes same here
by ivicask
Mon Feb 01, 2016 10:18 pm
Forum: Announcements
Topic: v6.35rc [release candidate] is released, new wireless package!
Replies: 537
Views: 105750

Re: v6.35rc is released, new wireless package!

background scan and repeater function can only work when wireless interface is running 802.11 wireless protocol.
I was running 802.11, background scan works for me, but im unable to connect to another WIFI AP while its set to AP mode, or dont know how to..
by ivicask
Mon Feb 01, 2016 10:05 pm
Forum: Announcements
Topic: v6.35rc [release candidate] is released, new wireless package!
Replies: 537
Views: 105750

Re: v6.35rc is released, new wireless package!

The repeater mode allows you to make a client and an AP both on the same physical interface. You don't need two interfaces. That is the best about this new feature. It seems some of the above posters missed that. Hi Normis, What is required to have this work? Should only Virtual interfaces be used?...
by ivicask
Mon Feb 01, 2016 9:00 pm
Forum: Announcements
Topic: v6.35rc [release candidate] is released, new wireless package!
Replies: 537
Views: 105750

Re: v6.35rc is released, new wireless package!

@ivicask It is in AP bridge mode... I tried with setting it as station, with nv2 and nstreme, tried to connect to them from different winbox/ PC... the same thing happens. Don't think I've any 2SHPN in my network to test it (99% equipment in our network does work on 5GHz band, the rest are old R52s...
by ivicask
Mon Feb 01, 2016 6:27 pm
Forum: Announcements
Topic: v6.35rc [release candidate] is released, new wireless package!
Replies: 537
Views: 105750

Re: v6.35rc is released, new wireless package!

@ ivicask Yes, that doesn't work for me on two different AP... 1st step - open wlan and click "Scan..." button (i've tried it on QRT-5 and RB433AH with UB5 wlan card) 2nd step - "regular" scan runs automatically and all clients loose connection to AP 3rd step - I stop scan by clicking on "Stop" but...
by ivicask
Mon Feb 01, 2016 4:52 pm
Forum: Announcements
Topic: v6.35rc [release candidate] is released, new wireless package!
Replies: 537
Views: 105750

Re: v6.35rc is released, new wireless package!

Version 6.35rc2 has been released. Changes since 6.35rc1: *) chr - fixed high rate limitation; *) ippool6 - fix potential crash; *) routing - fixed rare kernel failure on different dynamic routing configurations; *) wireless-rep - fix nv2 protocol. - nv2 protocol seems to work now (clients can conn...
by ivicask
Mon Feb 01, 2016 2:47 pm
Forum: Announcements
Topic: v6.35rc [release candidate] is released, new wireless package!
Replies: 537
Views: 105750

Re: v6.35rc is released, new wireless package!

The repeater mode allows you to make a client and an AP both on the same physical interface. You don't need two interfaces. That is the best about this new feature. It seems some of the above posters missed that. Can you give some more details how to exactly setup this, i tried entering just /inter...
by ivicask
Fri Oct 09, 2015 7:45 pm
Forum: Beginner Basics
Topic: Transparent proxy + HTTP traffic queue not working
Replies: 1
Views: 832

Re: Transparent proxy + HTTP traffic queue not working

Okay i managed to do it but its very dirty implementation. I created another bridge, than i moved all my copmuters to it leaving only wan and 1 LAN port on bridge1. Than i connected one LAN port on bridge1 via LAN cable physically to another lan port on bridge2 so i get communication between(dont kn...
by ivicask
Thu Oct 08, 2015 5:41 pm
Forum: Beginner Basics
Topic: Transparent proxy + HTTP traffic queue not working
Replies: 1
Views: 832

Transparent proxy + HTTP traffic queue not working

So just to quickly explain, i have perfectly good working simple queues to control various stuff i use including HTTP traffic, i have 2 rules for it, one for web surfing and one for downloads. Now i created transparent Proxy and that part also works just fine! Now problem is as i created transparent...
by ivicask
Tue Jul 07, 2015 3:07 pm
Forum: General
Topic: Queue tree priorities dont work, slow pages opening, winbox freezing
Replies: 1
Views: 490

Queue tree priorities dont work, slow pages opening, winbox freezing

So i purchased hex lite in order to get my ADSL traffic in order.Iv set up several mangle rules for different traffic types (http, ftp, p2p, radi streams, web pages) and iv set a Queue Tree with separated download and upload and iv set limits and priorities to my likening.At first glance everything ...