Community discussions

Search found 459 matches

  • 1
  • 2
  • 3
  • 4
  • 5
  • 10
by k6ccc
Tue Jun 25, 2019 12:28 am
Forum: General
Topic: PoE 802.3 on two pair cable with CRS328-24P-4S+RM
Replies: 1
Views: 128

Re: PoE 802.3 on two pair cable with CRS328-24P-4S+RM

From the product page for the CRS328-24P-4S+RM:
PoE-Out is passed over mode B pins (4,5+)(7,8-).
That won't work on your 2 pair cable.
by k6ccc
Mon Jun 24, 2019 8:34 pm
Forum: General
Topic: Block Teamviewer
Replies: 24
Views: 17328

Re: Block Teamviewer

The very first rule in the Forward chain. Made it about as simple as I could: add action=passthrough chain=forward comment=\ "Counter for outbound to 188.172.217.0/24 - test for Teamviewer" \ connection-state="" dst-address=188.172.217.0/24 No connections listed to 188.172.217.xxx either.
by k6ccc
Mon Jun 24, 2019 6:02 pm
Forum: General
Topic: Block Teamviewer
Replies: 24
Views: 17328

Re: Block Teamviewer

So I did some digging and saw that TeamViewer Connect to a domain, 188.172.217.0/24 To test that, I created a passthrough firewall rule as a counter as the first rule in my forward chain. Any traffic to 188.172.217.0/24 should show up in the counter. There are two computers inside my firewall that ...
by k6ccc
Fri Jun 21, 2019 8:05 pm
Forum: General
Topic: Block Teamviewer
Replies: 24
Views: 17328

Re: Block Teamviewer

I would love to be able to block TeamViewer - but my situation is a little different. In my case, I am the TeamViewer user, but I want to be able to block TeamViewer unless I specifically allow it at the time - for example with a port knock to the router. For example, the computer at home can't norm...
by k6ccc
Thu Jun 20, 2019 1:48 am
Forum: SwOS
Topic: RB260 speed falls do 100M
Replies: 7
Views: 527

Re: RB260 speed falls do 100M

I'm sorry, but I thought it was simple to understand that the two RB260 Ether1 are connected together with a 50cm patch cable, so where is the cable problem? It was not simple to understand because you did not tell that in your original post. For all we know, you were trying to run gigabit over a k...
by k6ccc
Fri Jun 14, 2019 5:56 pm
Forum: Beginner Basics
Topic: CCR1016-12S-1S+ CPU 100% Every Day
Replies: 2
Views: 221

Re: CCR1016-12S-1S+ CPU 100% Every Day

You have given us almost no information to work with. What is this device doing? What's connected to it? How is it being used? Post your configuration.
by k6ccc
Thu Jun 13, 2019 7:09 pm
Forum: SwOS
Topic: CSS106 (RB260) VLANs between multiples swicthes and Hybrid port [SOLVED]
Replies: 3
Views: 600

Re: CSS106 (RB260) VLANs between multiples swicthes and Hybrid port [SOLVED]

I just wish that Mikrotik would standardize the interface between the different switches. I have one RB260, one CSS106, one CRS326 (running SwitchOS), and two CSS326s and it's annoying that the UI is so different between them.
by k6ccc
Sat Jun 08, 2019 7:19 am
Forum: Beginner Basics
Topic: DHCP reservation in or out of Pool/Scope?
Replies: 7
Views: 409

Re: DHCP reservation in or out of Pool/Scope?

I'm the same as all the rest here. All known DHCP clients are given a DHCP reservation outside of the IP Pool. Most of the pools are only 10 IPs (and in reality, I could normally get away with one or two).
by k6ccc
Fri Jun 07, 2019 4:53 pm
Forum: General
Topic: Time Based firewaal rules
Replies: 12
Views: 535

Re: Time Based firewaal rules

I figured it out!! You have to specify the time and day or days that you want the rule to be applied and then you have to press reset all counters to reset everything and allow the new rule to be applied. I checked it 3-4 times and it worked fine. Thank you all!!!! I definitely did not have to rese...
by k6ccc
Fri Jun 07, 2019 12:55 am
Forum: SwOS
Topic: Do CRS305&309 support other brands' RJ45 SFP module?
Replies: 3
Views: 461

Re: Do CRS305&309 support other brands' RJ45 SFP module?

Simple solution. I buy the Mikrotik SFPs that are specified to work with the device.
by k6ccc
Fri Jun 07, 2019 12:18 am
Forum: General
Topic: Time Based firewaal rules
Replies: 12
Views: 535

Re: Time Based firewaal rules

I have never had any time based firewall rules, but because of this thread, I created one for a test. The rule was a simple rule to drop all ICMP packets from the internet at the beginning of my Input chain with no time restriction. I am not at the location of this router, so my access is only via t...
by k6ccc
Thu Jun 06, 2019 7:30 am
Forum: SwOS
Topic: CRS326 Port security
Replies: 3
Views: 306

Re: CRS326 Port security

Never used a bridge, so can't help you there. However your firewall rules look OK - I think.
by k6ccc
Wed Jun 05, 2019 8:05 pm
Forum: SwOS
Topic: CRS326 Port security
Replies: 3
Views: 306

Re: CRS326 Port security

Off hand, I don't see a way to specify a MAC on a specific port, but you can enable port lock which locks the port to the first MAC that is connected. See the Forwarding tab.
by k6ccc
Mon Jun 03, 2019 5:08 am
Forum: SwOS
Topic: I am confused with Port Isolation on CSS326-24G Switch [SOLVED]
Replies: 5
Views: 536

Re: I am confused with Port Isolation on CSS326-24G Switch [SOLVED]

The check marks are the ports that the CAN be communicated with. For example, in your screen capture, port 1 can communicate with all other ports.
by k6ccc
Mon May 27, 2019 8:52 pm
Forum: SwOS
Topic: Difficulty with configuring CSS106-1G-4P-1S
Replies: 2
Views: 340

Re: Difficulty with configuring CSS106-1G-4P-1S

I still could not read your screen captures, but here are a couple of mine. Ports one and two are doing exactly what you want to do. Each of those is a Multi-SSID WiFi access point. Each is getting several VLANs that will each become a different SSID and also an untagged LAN that is used for cloud m...
by k6ccc
Mon May 27, 2019 7:29 pm
Forum: SwOS
Topic: Difficulty with configuring CSS106-1G-4P-1S
Replies: 2
Views: 340

Re: Difficulty with configuring CSS106-1G-4P-1S

I can’t read your images on my $&@#% iPhone, but I am doing exactly what you want to do on my CSS106. When I get to a computer, I’ll take a look.



Sent from a $&@#% iPhone using Tapatalk
by k6ccc
Sun May 26, 2019 4:57 am
Forum: Beginner Basics
Topic: RB750: firmware upgrade or not?
Replies: 5
Views: 483

Re: RB750: firmware upgrade or not?

I always upgrade mine.
by k6ccc
Wed May 22, 2019 6:00 pm
Forum: General
Topic: CRS328-24P-4S+ Speed issue
Replies: 2
Views: 167

Re: CRS328-24P-4S+ Speed issue

It might be interesting to connect the two computers in question directly to each other. I would speculate that what you are seeing is more related to the performance of the computers involved and not the switches. Part of that statement is the difference in performance between upload and download. ...
by k6ccc
Mon May 20, 2019 12:30 am
Forum: General
Topic: USB port + HUB summary amperage
Replies: 3
Views: 190

Re: USB port + HUB summary amperage

Powered USB hubs usually don't draw power from upstream USB port ...
Correct. That's why I recommend them for fixed applications. Has solved many problems over the years.
by k6ccc
Sun May 19, 2019 10:15 pm
Forum: General
Topic: USB port + HUB summary amperage
Replies: 3
Views: 190

Re: USB port + HUB summary amperage

I don't have an answer to your specific question, but my general recommendation is any time you are using a USB hub in a fixed situation, use a powered hub. That solves the current limit issue. Since you are proposing to use a USB hub connected to a router, I assume it will be in a fixed installatio...
by k6ccc
Sun May 19, 2019 9:51 pm
Forum: SwOS
Topic: SWOS or ROUTEROS: Confused
Replies: 3
Views: 364

Re: SWOS or ROUTEROS: Confused

This is likely more opinion rather than hard facts. There are some on the forum that hate SwitchOS and have nothing but problems, and there are some that have no issues with SwitchOS at all. Personally I am in the second camp. I have a CRS326-24G-2S, two CSS326-24G-2S, a CSS106-5G-1S, and a RB260GS ...
by k6ccc
Wed May 15, 2019 5:30 pm
Forum: Beginner Basics
Topic: Open all ports on all devises [SOLVED]
Replies: 6
Views: 408

Re: Open all ports on all devises [SOLVED]

I clearly have no understanding of what he is trying to do. However I have never had any interest in on line gaming, so no idea how those kind of things work. I've never heard of a client / server type system where the server initiates the connection (which is why normal consumer routers work for mo...
by k6ccc
Wed May 15, 2019 5:21 am
Forum: Beginner Basics
Topic: Open all ports on all devises [SOLVED]
Replies: 6
Views: 408

Re: Open all ports on all devises [SOLVED]

It does not work that way. A NAT forwards to a target IP. However in most situations, if the game is talking to a server somewhere else, the client initiates the connection and the router will forward responses to the IP that originated the request. No special setup is normally required. If you are ...
by k6ccc
Mon May 13, 2019 4:02 pm
Forum: Beginner Basics
Topic: Open all ports on all devises [SOLVED]
Replies: 6
Views: 408

Re: Open all ports on all devises [SOLVED]

You have given us so little information to go on. For starters, either give us more details on how your three routers are connected to each other, the internet, and your devices - or better yet, a drawing. Second, export your config on all three routers and post here so we can see what you are doing...
by k6ccc
Thu May 09, 2019 12:01 am
Forum: Beginner Basics
Topic: DhCP server for each port
Replies: 11
Views: 510

Re: DhCP server for each port

I see mkx beat me to the L2 vs L3 parts, so I'm not going to repeat that. You do not need to use bridges to create a DHCP server. However as noted above, IF an interface is a member of a bridge, then the DHCP server must be assigned to the Bridge - not the member interfaces. At least that's the way ...
by k6ccc
Wed May 08, 2019 5:25 pm
Forum: Beginner Basics
Topic: DhCP server for each port
Replies: 11
Views: 510

Re: DhCP server for each port

Let's see if I have this right. Every single port will be a separate LAN with it's own DHCP server. So the router is being used exclusively as a router and not as a switch. If this is the case, why are you creating bridges? This is the way I use my routers. I have managed switches connected to the r...
by k6ccc
Fri May 03, 2019 8:35 pm
Forum: Beginner Basics
Topic: Share WiFi and LAN DHCP
Replies: 2
Views: 191

Re: Share WiFi and LAN DHCP

I don't know anything about the TP Link equipment, but it sounds like you want the TP Link to operate only as a WiFi access point and NOT have any router functions. You likely can make this work by turning off the DHCP server functionality in the TP Link and then connecting one of the LAN ports (NOT...
by k6ccc
Thu May 02, 2019 3:36 pm
Forum: SwOS
Topic: CSS326-24G slow inter-VLAN transfers
Replies: 3
Views: 458

Re: CSS326-24G slow inter-VLAN transfers

You asked this question in the SwitchOS section of the forum and your subject specifies the CSS326 switch. However, since you are seeing an inter-VLAN issue, the problem almost certainly exists in the router and not the switch - since switches don’t route between VLANs. You did not give us much deta...
by k6ccc
Wed May 01, 2019 5:16 pm
Forum: SwOS
Topic: Mikrotik CSS326-24G VLANS [SOLVED]
Replies: 8
Views: 671

Re: Mikrotik CSS326-24G VLANS [SOLVED]

As for your DHCP servers, from your drawing, they are some device that is untagged. Simply put them on a switch port that is untagged on the correct VLAN. Same concept as my Cable Modem on port 1. In my case that is untagged on VLAN 100, but the concept is the same.
by k6ccc
Sat Apr 27, 2019 3:40 am
Forum: SwOS
Topic: Problems with S+RJ10
Replies: 8
Views: 832

Re: Problems with S+RJ10

My first question is if the issue it with the SFP or the Ethernet per in the computer - it could be either one. Can you plug the Cat-6 into another port on the switch (such as one of the gig-E ports on the switch). Let the computer go to sleep and see if the problem happens in that configuration. Ot...
by k6ccc
Thu Apr 25, 2019 12:12 am
Forum: SwOS
Topic: Mikrotik CSS326-24G VLANS [SOLVED]
Replies: 8
Views: 671

Re: Mikrotik CSS326-24G VLANS [SOLVED]

Here are some screen captures from one of CSS326 switches located in my family room. Most of the ports don't really matter, but I will point out a few. Along with a bunch of end devices in the house, both internet modems connect to this switch (port 1 for the cable and port 9 for the DSL). Port 3 is...
by k6ccc
Wed Apr 24, 2019 5:33 pm
Forum: SwOS
Topic: Mikrotik CSS326-24G VLANS [SOLVED]
Replies: 8
Views: 671

Re: Mikrotik CSS326-24G VLANS [SOLVED]

One other thing you could easily test. Configure a user PC port to VLAN 20 instead of VLAN 10 and confirm that the PC gets a DHCP address from DHCP server 2. That will confirm that your DHCP and switch to switch links are OK. Part two - Are you sure that your WiFi APs are configured properly for the...
by k6ccc
Wed Apr 24, 2019 5:28 pm
Forum: SwOS
Topic: Mikrotik CSS326-24G VLANS [SOLVED]
Replies: 8
Views: 671

Re: Mikrotik CSS326-24G VLANS [SOLVED]

Your configuration is really pretty simple. The trunks between the three switches needs to have VLANs 10 & 20. Assuming that the WiFi APs know that SSID 1 connects to VLAN 10 and SSID 2 connects to VLAN 20, then the switch ports connected to the three Unifi APs will be just like the switch to switch...
by k6ccc
Tue Apr 23, 2019 7:10 am
Forum: General
Topic: Port Knocking, avoid scan-caused false positives?
Replies: 17
Views: 770

Re: Port Knocking, avoid scan-caused false positives?

Why not just a set of firewall rules to catch port scanners. Those are well documented and work well. If the port scanner triggers, then the port knock never sees the triggers.
by k6ccc
Sun Apr 21, 2019 3:30 am
Forum: Beginner Basics
Topic: RouterOS - NAT problem (dst-nat)
Replies: 23
Views: 974

Re: RouterOS - NAT problem (dst-nat)

First guess is that you did not open a hole in the firewall for your NAT. Unlike many consumer routers, RouterOS does not do that automatically.
by k6ccc
Fri Apr 19, 2019 7:50 pm
Forum: Beginner Basics
Topic: Multiple VLANs with one Router as Default Gateway in each VLAN
Replies: 7
Views: 514

Re: Multiple VLANs with one Router as Default Gateway in each VLAN

What you are doing is very similar to what I am doing and it's not at all complicated. I am curious why you want two VLANs if part of your statement is that devices on one VLAN can communicate with devices on the other VLAN. If everything on both VLANs can communicate with each other, why separate t...
by k6ccc
Fri Apr 19, 2019 6:44 pm
Forum: Beginner Basics
Topic: wyze cam port forwarding
Replies: 8
Views: 766

Re: wyze cam port forwarding

I can absolutely assure you that the Wyze cameras do NOT require anything "special" to be opened on a reasonably normal router configuration. As long as a LAN device can get to the internet and responses get back to it, it will connect just fine. I have 13 Wyze cameras (2 Pans and 11 V2). Other than...
by k6ccc
Tue Apr 16, 2019 4:19 pm
Forum: Beginner Basics
Topic: One website blocked
Replies: 4
Views: 298

Re: One website blocked

First of all, you are right - they don't respond to a ping. However that proves absolutely nothing since some network admins drop pings as some people consider it a security hole. If it really is on your end, please post your config, so we can see what you have. In order to export your config, follo...
by k6ccc
Mon Apr 15, 2019 5:25 pm
Forum: Beginner Basics
Topic: VLAN with multiple switches
Replies: 6
Views: 484

Re: VLAN with multiple switches

I'm going to let someone else answer the setup in RouterOS as I have NEVER used a bridge in ROS. I know there are some particulars about setting up VLANs in a bridge, but I don't know details.
by k6ccc
Thu Apr 11, 2019 9:32 pm
Forum: Beginner Basics
Topic: VLAN with multiple switches
Replies: 6
Views: 484

Re: VLAN with multiple switches

SwitchOS is strictly a switching OS whereas RouterOS is router OS that can play switch (but is optimized as a router). SwitchOS is far more limited, but if you only need switching, it works. There are a couple documented issues with the current version of SwitchOS - check out the SwitchOS section of...
by k6ccc
Thu Apr 11, 2019 12:50 am
Forum: Beginner Basics
Topic: VLAN with multiple switches
Replies: 6
Views: 484

Re: VLAN with multiple switches

I think sebus got your config incorrect. Please confirm that the CCR1009 has one link to the CRS125 and one link to the CRS326 (not that the two switches are daisy chained). Second, are you running the CRS125 and CRS326 in RouterOS or SwitchOS? What you are doing is easy, but we better need to under...
by k6ccc
Sat Apr 06, 2019 5:09 am
Forum: Beginner Basics
Topic: How to go back to dynamic IP in DHCP server [SOLVED]
Replies: 7
Views: 408

Re: How to go back to dynamic IP in DHCP server [SOLVED]

Just delete the lease and next time the device requests an address, it will get one from the regular pool.
by k6ccc
Thu Apr 04, 2019 6:33 pm
Forum: General
Topic: WAN Notifications
Replies: 6
Views: 357

Re: WAN Notifications

I was not suggesting that you monitor it for them, but rather that they set up a free account with UpTimeRobot.com and UTR will notify them when something fails.
by k6ccc
Wed Apr 03, 2019 5:46 pm
Forum: General
Topic: How to configure 4 Up-Links on same WAN with 4 vLANs
Replies: 12
Views: 568

Re: How to configure 4 Up-Links on same WAN with 4 vLANs

Yes. add action=src-nat chain=srcnat comment="Outgoing NAT from .201 LAN" \ disabled=no out-interface=E1-p10_DSL_Internet src-address=\ 192.168.201.0/24 to-addresses=208.127.104.77 add action=src-nat chain=srcnat comment="Outgoing NAT from .202 LAN" \ disabled=no out-interface=E1-p10_DSL_Internet sr...
by k6ccc
Wed Apr 03, 2019 1:04 am
Forum: General
Topic: How to configure 4 Up-Links on same WAN with 4 vLANs
Replies: 12
Views: 568

Re: How to configure 4 Up-Links on same WAN with 4 vLANs

@ivanobuffa
They were all part of a /24 network from my IP. I had eight addresses scattered through the range.
I will pull up my script later this evening. It was quite easy...
by k6ccc
Tue Apr 02, 2019 10:46 pm
Forum: SwOS
Topic: Unable to update firmware CSS 326-24G-2S+RM
Replies: 4
Views: 585

Re: Unable to update firmware CSS 326-24G-2S+RM

Does the switch have internet connectivity ?



Sent from a $&@#% iPhone using Tapatalk
by k6ccc
Tue Apr 02, 2019 9:15 pm
Forum: General
Topic: How to configure 4 Up-Links on same WAN with 4 vLANs
Replies: 12
Views: 568

Re: How to configure 4 Up-Links on same WAN with 4 vLANs

@k6ccc So are you like a suburb of LA? Seems like your on the cusp of Mountains, must be beautiful and close to ski hills? (prevalent raging forest fires in that area)? Correct. Glendora is about 20 miles east and slightly north of downtown Los Angeles. The city moto is "Pride of the Foothills". Th...
by k6ccc
Tue Apr 02, 2019 7:55 pm
Forum: General
Topic: How to configure 4 Up-Links on same WAN with 4 vLANs
Replies: 12
Views: 568

Re: How to configure 4 Up-Links on same WAN with 4 vLANs

I've been doing this for years. Until very recently my RB750r2 had one DSL connection with five static IPs. There were different LANs (mostly via VLAN) that each routed traffic out the same DSL, but via different IP addresses. All it takes is a simple outgoing NAT statement to get the outgoing traff...
by k6ccc
Tue Apr 02, 2019 4:45 am
Forum: General
Topic: WAN Notifications
Replies: 6
Views: 357

Re: WAN Notifications

There are two perspectives here. One is to have the router detect a failure and alert you. The other is to determine if the router is visible from the internet. For part two, I suggest UpTimeRobot.com They can monitor specific ports, a normal ping, a website, and various other things. They can notif...
by k6ccc
Sat Mar 30, 2019 4:43 am
Forum: Beginner Basics
Topic: Static DNS issues
Replies: 1
Views: 200

Re: Static DNS issues

Someone on the internet is trying to connect to presumably a web server on your internet address on port 8080. Why do you think this has anything to do with your DNS?
  • 1
  • 2
  • 3
  • 4
  • 5
  • 10