Community discussions

Search found 14 matches

by elico
Wed Aug 14, 2019 7:59 pm
Forum: Beginner Basics
Topic: RB2011 slow internet even with fasttrack
Replies: 99
Views: 14533

Re: RB2011 slow internet even with fasttrack

EDIT: It appears that the browser on client cannot reach higher speed then 500 ~ Mbps on the HTTP SpeedTest. So I tried again with iperf and found out the next: via RB2011 using iperf with or without NAT I am able to reach 750 ~ Mbps. However when I am disabling route cache I am reaching a limit of:...
by elico
Mon Aug 05, 2019 2:03 am
Forum: Scripting
Topic: How to ***really*** block invalid TCP and UDP packet
Replies: 43
Views: 36645

Re: How to ***really*** block invalid TCP and UDP packet

I am missing a full "fasttracked" rule-set with these protection rules. I assume that the ESTABLISHED,RELATED and INVALID (ACCEPT, FASTTRACK and DORP) can be matched before these filtering rules. Even if some of the TCP packets are malformed I am assuming the attacked side would not accept these as ...
by elico
Mon Jul 29, 2019 2:53 am
Forum: Beginner Basics
Topic: RB2011 slow internet even with fasttrack
Replies: 99
Views: 14533

Re: RB2011 slow internet even with fasttrack

I have a local RB2011 (FW 6.44.3)with 2 LAN segments: LAN - 10.0.0.138/24 SERVERS - 192.168.89.1/24 Client: 10.0.0.65 LAN SpeedTest Server: 10.0.0.79/10.0.0.13 SERVERS SpeedTest Server: 192.168.89.42 It works for a very long time now but always with the same max routing speed of 250-280 Mbps from on...
by elico
Mon Jul 29, 2019 1:11 am
Forum: Beginner Basics
Topic: Significant Speed Issues with MikroTik [SOLVED]
Replies: 18
Views: 1673

Re: Significant Speed Issues with MikroTik [SOLVED]

I have couple RB750Gr3 but none of them were able to reach more then 300 Mbps for file transfer in routing only mode (No NAT). To test this issue try to use the "Bandwidth Test" tool of mikrotik. Take a look at this post: https://forum.mikrotik.com/viewtopic.php?t=104266 It has ip addresses and user...
by elico
Tue Feb 26, 2019 3:08 am
Forum: Wireless Networking
Topic: Hap ac2 TX power tables info missing
Replies: 8
Views: 2078

Re: Hap ac2 TX power tables info missing

Hi normis, can this "issue" or "feature" can be published in the product wireless chip spec so I and others can see it while evaluating the product?
(this post is good enough for me but if it was on the specs I wouldn't be required to search the forum)
Sounds fair?
by elico
Mon Oct 15, 2018 5:38 pm
Forum: General
Topic: Limitations on Maximum Available Routing Marks?
Replies: 3
Views: 1095

Re: Limitations on Maximum Available Routing Marks?

<r>Depends on the OS forced limit and also the CPU arch. Iptables mark can be up to very very high ie from: https://www.frozentux.net/iptables-tutorial/chunkyhtml/x2702.html section "10.3.10. Mark match" it seems that the mark themselves can be much higher then 250. The next link give some more deta...
by elico
Mon Oct 15, 2018 9:31 am
Forum: General
Topic: Random Reboots
Replies: 7
Views: 910

Re: Random Reboots

What about memory?
by elico
Sun Nov 26, 2017 3:00 am
Forum: General
Topic: Serving static files from a usb on HAP devices
Replies: 0
Views: 227

Serving static files from a usb on HAP devices

I have a bunch(20+) HAP and RB750G devices which has a USB port. I have a USB Disk On Key with static html files that I want to be accessible via the network. The way I did that until now is using SMB and a public read-only share. I was wondering if it's possible to serve static files on a specific ...
by elico
Fri Jun 09, 2017 6:59 am
Forum: General
Topic: Problem with Squid Server Cache
Replies: 1
Views: 1102

Re: Problem with Squid Server Cache

Was this answered?
I can write a tutorial on how to make a Linux squid work with mikrotik.
I have been working on som daemon that will throw rules to the edge router about what IP's to intercept and to what proxy forward the traffic.
by elico
Sun May 21, 2017 3:00 am
Forum: General
Topic: Configuring RouterOS devices with ansible?
Replies: 1
Views: 1794

Configuring RouterOS devices with ansible?

Anyone tried to configure RouterOS devices with ansible? Basically it's based on ssh so it should be doable and maybe in some way Anisble can be used as the "controller" for a RouterOS cluster. It would be similar to a "Control Plane" which is a cli\scripting\webui that sends commands or full config...
by elico
Sun May 21, 2017 2:34 am
Forum: General
Topic: Features Request: SYNPROXY
Replies: 2
Views: 1035

Re: Features Request: SYNPROXY

You can use FastNetMon for DDoS Sync attack. It has support for rOS.

https://github.com/pavel-odintsov/fastnetmon

M.
When taking a peek at the FastNetMon github issues I have seen that there is an open issue about a specific issue and it's yet clear to me if it was fixed or not.
by elico
Mon Feb 13, 2017 9:05 am
Forum: General
Topic: [RESOLVED]PBR to and L2TP over PPOE
Replies: 0
Views: 265

[RESOLVED]PBR to and L2TP over PPOE

I am connected to work over a PPPOE connection but to some systems I am required to have a L2TP tunnel. I tried to follow the next tutorials: http://wiki.mikrotik.com/wiki/Policy_Base_Routing http://wiki.mikrotik.com/wiki/PBR_PTP_IPIP In order to implement PBR for specific hosts on my network. The f...
by elico
Sat Dec 10, 2016 12:22 pm
Forum: General
Topic: New feature Loop Protect - how it works
Replies: 6
Views: 8003

Re: New feature Loop Protect - how it works

Will it only work for routers or also for SWOS?
by elico
Mon Nov 07, 2016 9:52 pm
Forum: Announcements
Topic: SwOS version 1.17 released
Replies: 14
Views: 7142

Re: SwOS version 1.17 released

I tried to upgrade a 260GSP using firefox and it required me to rely on a the wiki article: http://wiki.mikrotik.com/wiki/SwOS#Reinstall_SwOS_firmware But on a rb750gr2 the defaults are to have 192.168.88.0/24 I had to use the combination of the article and use the existing address-pool instead of c...