Community discussions

MikroTik App

Search found 14 matches

by ovidiu
Tue Dec 28, 2021 11:07 pm
Forum: General
Topic: RoMON function
Replies: 6
Views: 2821

Re: RoMON function

Problem solved! In the beginning I had only one 1920s in the net but in time we got other 3 so the problem could not be avoided. I had to do something. Starting from nickshore's remark and manual I start digging on how to allow other protocols on the switch. We have to allow EtherType 0x88bf and dst...
by ovidiu
Thu Nov 19, 2020 1:49 pm
Forum: General
Topic: RoMON function
Replies: 6
Views: 2821

Re: RoMON function

Same problem, tested on 2 switches 1920s 24 port, both with same problem blocking ROMON. Older 1920 pass OK.
by ovidiu
Mon May 04, 2020 4:28 pm
Forum: General
Topic: PPP profile ***-filter parametes
Replies: 4
Views: 3023

Re: PPP profile ***-filter parametes

Not working well. Jumping "all ppp" interface to ppp chain means all new connections from other ppp connections that are not using filter will jump too to ppp chain. Adding return would fix this problem but ... any new dynamically added jump-target=test will be added as a last rule in the ...
by ovidiu
Tue Nov 12, 2019 9:35 pm
Forum: General
Topic: Step by step IKEv2 for Android and Windows 10
Replies: 5
Views: 15514

Re: Step by step IKEv2 for Android and Windows 10

/system ntp client set primary-ntp=[:resolve 1.pool.ntp.org] secondary-ntp=[:resolve 2.pool.ntp.org] enabled=yes /ip pool add name=pool-IKEv2 ranges=192.168.43.101-192.168.43.199 /ip ipsec mode-config add name=cfg-IKEv2 responder=yes address-pool=pool-IKEv2 address-prefix-length=32 \ split-include=0...
by ovidiu
Tue Nov 12, 2019 9:27 pm
Forum: General
Topic: Step by step IKEv2 for Android and Windows 10
Replies: 5
Views: 15514

Step by step IKEv2 for Android and Windows 10

I am posting this topic hoping to help other people to setup a simple VPN server accepting connections from Windows 10 clients and Android. I run this on hAP ac, RouterBOARD 962UiGS-5HacT2HnT. Between Romania and Greece, speedtest dot net running on windows reported about 25,5Mbps with aes-256 and a...
by ovidiu
Fri Nov 08, 2019 9:07 pm
Forum: Virtualization
Topic: adding eoip interface to bridge breaks internet
Replies: 2
Views: 5006

Re: adding eoip interface to bridge breaks internet

I had similar problem and I solve it changing MTU=1500 for the EOIP tunnel
See this post: viewtopic.php?f=2&t=106730&p=759517#p759517
by ovidiu
Fri Nov 08, 2019 9:01 pm
Forum: General
Topic: What is wrong with bridges and eoip?
Replies: 18
Views: 6049

Re: What is wrong with bridges and eoip?

I would bet that your MTU changed when you added the EOIP interface to the bridge. While your LAN PC's are using 1500, your bridge likely shrunk to 1480 or less. This will cause almost all https sites to break, and many normal sites. This was my problem. I set MTU to 1500 for the EOIP interface and...
by ovidiu
Sun Sep 29, 2019 3:19 pm
Forum: General
Topic: [BUG] Watchdog timer does not disable properly
Replies: 4
Views: 3275

Re: [BUG] Watchdog timer does not disable properly

6.45.3 I have this problem too
by ovidiu
Tue Mar 06, 2018 8:54 am
Forum: General
Topic: Suggestion: Completely virtual router based on two physical routers
Replies: 186
Views: 57030

Re: Suggestion: Completely virtual router based on two physical routers

No problem not using CCRs, they are definitely expensive for many deployments. I just wanted to let you know that you are the first one that I know of to test alternative platforms, so good for all of us. I would like to hear how well it works for you after you run for a while. The boot delay sound...
by ovidiu
Mon Feb 05, 2018 7:25 pm
Forum: General
Topic: Suggestion: Completely virtual router based on two physical routers
Replies: 186
Views: 57030

Re: Suggestion: Completely virtual router based on two physical routers

Yes Nathan, I'm sure will be fine for long time. I will let you know when I will put them into production (now I run them at my home). I have to implement some VPN solution and hope to find a way to allow access only from some countries, geoip. After that I will plug them into the rack. Some other f...
by ovidiu
Mon Feb 05, 2018 6:42 pm
Forum: General
Topic: Suggestion: Completely virtual router based on two physical routers
Replies: 186
Views: 57030

Re: Suggestion: Completely virtual router based on two physical routers

Hi Nathan, No, i used RB925ui-5ac2nD just for lab tests without activating wifi. They will be connected to the redundant RB3011UiAS-RM Please understand that we are talking about a very small office with only about 15-16 people + some visitors quite often. There is no point to buy CCR. I agree that ...
by ovidiu
Mon Feb 05, 2018 4:40 pm
Forum: General
Topic: Suggestion: Completely virtual router based on two physical routers
Replies: 186
Views: 57030

Re: Suggestion: Completely virtual router based on two physical routers

Many thanks to Nathan1 for this solution. I tested first on a pair of small RB925ui-5ac2nD. Didn't succeed at first try because lack of instructions, but after 2 hours the pair was working as intended. Then I installed the script on a pair of RB3011UiAS-RM and looks fine. It is still in my lab but n...
by ovidiu
Sat Feb 03, 2018 1:55 pm
Forum: Beginner Basics
Topic: How to block traffic between vlans?
Replies: 15
Views: 32683

Re: How to block traffic between vlans?

My vlan2 is for wifi guests. But they should be able to see the public NATed ports, so I blocked routing but allow NAT between the 2 networks
add chain=forward action=drop comment="Block guest to LAN" connection-nat-state=!srcnat,dstnat dst-address=192.168.0.0/24 src-address=10.1.102.0/24
by ovidiu
Sun Jan 15, 2017 9:40 am
Forum: Wireless Networking
Topic: Net Prohibited issue
Replies: 7
Views: 24330

Re: Net Prohibited issue

Little late but maybe my post will help others. I have same issue after I created a new hotspot server and trying to add a second routerboard wifi connected to the main hotspot. I solved this problem creating a firewall rule to accept connections on vlan interface of hotspot's server on input chain....