Community discussions

MikroTik App

Search found 609 matches

by rickfrey
Mon Feb 17, 2014 7:37 pm
Forum: General
Topic: ISP cpe getting ip address with radius and dhcp server
Replies: 10
Views: 3573

Re: ISP cpe getting ip address with radius and dhcp server

Ok, I understand what you are trying to do now. To answer your question, I don't know. It would seem that it should be possible if the RADIUS server was capable of it. You would likely have to have one that uses the MikroTik API, but I don't know of one that works quite that way. Several will compli...
by rickfrey
Mon Feb 17, 2014 7:32 pm
Forum: General
Topic: Problem on WAN failover without scripting
Replies: 4
Views: 2855

Re: Problem on WAN failover without scripting

Even if you use check gateway ping option, as long as the gateway IP is up but its internet connection is down, your automatic failover will not work.
That's true. Personally, I would netwatch to resolve that problem, but he doesn't want to do that. How would you configure it?
by rickfrey
Mon Feb 17, 2014 7:30 pm
Forum: General
Topic: L2TP Tunnel Authentication without using IPSec
Replies: 3
Views: 2396

Re: L2TP Tunnel Authentication without using IPSec

I've help setup a few, but I haven't use one as a customer to be able to recommend one with confidence. I do know that there are several of those services in Europe. Can anyone else recommend one?
by rickfrey
Mon Feb 17, 2014 7:27 pm
Forum: General
Topic: Help needed to setup L2TP with IPSEC
Replies: 12
Views: 3225

Re: Help needed to setup L2TP with IPSEC

Goto the LAN interface and in the ARP section, choose proxy-arp.
by rickfrey
Mon Feb 17, 2014 9:26 am
Forum: Wireless Networking
Topic: Metal 2shpn question
Replies: 1
Views: 1021

Re: Metal 2shpn question

by rickfrey
Mon Feb 17, 2014 9:24 am
Forum: General
Topic: creating users via custom program
Replies: 1
Views: 706

Re: creating users via custom program

Look into User Manager. If your able to program in PHP, you won't have too much trouble after that.
by rickfrey
Mon Feb 17, 2014 9:20 am
Forum: RouterBOARD hardware
Topic: Verizon compatible mini PCIe com modem for RB411UAHR
Replies: 1
Views: 1176

Re: Verizon compatible mini PCIe com modem for RB411UAHR

This is still partially true. At ROS 6.9, it will work as a 3G device, but not as an LTE device. Its not a great choice for 3G device.
by rickfrey
Mon Feb 17, 2014 9:15 am
Forum: General
Topic: Winbox CCR1036 - Cannot connect via MAC
Replies: 1
Views: 1178

Re: Winbox CCR1036 - Cannot connect via MAC

Do you have your Windows firewall turned off? What about the UAC settings?
by rickfrey
Mon Feb 17, 2014 9:10 am
Forum: General
Topic: eoip ipsec problem
Replies: 1
Views: 1186

Re: eoip ipsec problem

What are the rest of your settings?
by rickfrey
Mon Feb 17, 2014 9:05 am
Forum: General
Topic: HTTP/HTTPS Port Forwarding/Load Balancing Newbie Question
Replies: 1
Views: 1673

Re: HTTP/HTTPS Port Forwarding/Load Balancing Newbie Questio

The port forwarding is simply a matter of adding the public IP address to the router and then adding a NAT to the affect of: chain=dst-nat dst-address=x.x.x.x dst-port=80 action=dst-nat to-address=y.y.y.y to-ports=80 The load balancing would probably best accomplished with a load balanceing applianc...
by rickfrey
Mon Feb 17, 2014 8:57 am
Forum: General
Topic: DNS Catch not working
Replies: 1
Views: 1081

Re: DNS Catch not working

Try changing the action to redirect.
by rickfrey
Mon Feb 17, 2014 8:54 am
Forum: General
Topic: only-one is ignored when radius auth is used
Replies: 2
Views: 1050

Re: only-one is ignored when radius auth is used

What ROS version are you using?
by rickfrey
Mon Feb 17, 2014 8:50 am
Forum: Beginner Basics
Topic: Beginner needs help simple queue.
Replies: 1
Views: 912

Re: Beginner needs help simple queue.

Did you resolve this problem with a latter version of ROS or do you still need help with it?
by rickfrey
Mon Feb 17, 2014 8:49 am
Forum: Wireless Networking
Topic: Hotspot Splash Page Redirection
Replies: 1
Views: 857

Re: Hotspot Splash Page Redirection

Can you post your config settings?
by rickfrey
Mon Feb 17, 2014 8:48 am
Forum: Wireless Networking
Topic: RB450G Strange Problem
Replies: 1
Views: 1139

Re: RB450G Strange Problem

Please, post your config.
by rickfrey
Mon Feb 17, 2014 8:47 am
Forum: Wireless Networking
Topic: Routing a proxy server connection to match clients routing
Replies: 1
Views: 1190

Re: Routing a proxy server connection to match clients routi

You can redirect that traffic based on routing/ packet marks.
by rickfrey
Mon Feb 17, 2014 8:46 am
Forum: Beginner Basics
Topic: SXT Lite5 auto reconnect to Omnitik
Replies: 3
Views: 1381

Re: SXT Lite5 auto reconnect to Omnitik

Please, post your configs?
by rickfrey
Mon Feb 17, 2014 8:45 am
Forum: General
Topic: Two external pptp + two internal networks - UPNP?
Replies: 1
Views: 989

Re: Two external pptp + two internal networks - UPNP?

ROS doesn't have that feature, but depending how you are using your WAN connections, you may be able to use meta router as a work around.
by rickfrey
Mon Feb 17, 2014 8:37 am
Forum: General
Topic: ccr 1016 ROS 6.4 OVPN/PPTP issue
Replies: 3
Views: 1320

Re: ccr 1016 ROS 6.4 OVPN/PPTP issue

Did this problem go away with latter ROS versions?
by rickfrey
Mon Feb 17, 2014 8:35 am
Forum: Wireless Networking
Topic: hotspot in virtual ap problem
Replies: 3
Views: 1383

Re: hotspot in virtual ap problem

Can you post your config?
by rickfrey
Mon Feb 17, 2014 8:29 am
Forum: Beginner Basics
Topic: Outound IP does not match NAT IP
Replies: 1
Views: 801

Re: Outound IP does not match NAT IP

Can you post your IP -> address and IP -> Firewall -> NAT settings, please. Is your masquerade rule at the bottom?
by rickfrey
Mon Feb 17, 2014 8:27 am
Forum: Wireless Networking
Topic: Walled Garden not working for google.com, yahoo.com
Replies: 1
Views: 1123

Re: Walled Garden not working for google.com, yahoo.com

Can you post your walled garden settings? Are you using a wild card?
by rickfrey
Mon Feb 17, 2014 8:26 am
Forum: General
Topic: Hotspot: Accept Terms->WalledGarden->Login - advise needed
Replies: 2
Views: 2454

Re: Hotspot: Accept Terms->WalledGarden->Login - advise need

#2 can be done with the web proxy.
#3 might be able to be accomplished with the web proxy or might have to be scripted.
by rickfrey
Mon Feb 17, 2014 8:23 am
Forum: RouterBOARD hardware
Topic: Enable Jumper Reset - CCR1016
Replies: 1
Views: 1620

Re: Enable Jumper Reset - CCR1016

What ROS version are you using?
by rickfrey
Mon Feb 17, 2014 8:22 am
Forum: General
Topic: DNS cache - find source client
Replies: 1
Views: 920

Re: DNS cache - find source client

How is your network setup and how are the clients communicating with you?
by rickfrey
Mon Feb 17, 2014 8:16 am
Forum: The User Manager
Topic: User Login Invalid after leaving a few days
Replies: 1
Views: 1595

Re: User Login Invalid after leaving a few days

It sounds like a problem with the cookies on their computer. Try flushing their cookies and logging back in.
by rickfrey
Mon Feb 17, 2014 8:09 am
Forum: Scripting
Topic: Mikrotik SSH Backup - my solution
Replies: 15
Views: 8807

Re: Mikrotik SSH Backup - my solution

Very nice! Thank you!
by rickfrey
Mon Feb 17, 2014 8:05 am
Forum: General
Topic: NAT Packet Loss
Replies: 2
Views: 1420

Re: NAT Packet Loss

Can you post your config, please?
by rickfrey
Mon Feb 17, 2014 8:04 am
Forum: General
Topic: PCI Modem user commands
Replies: 1
Views: 835

Re: PCI Modem user commands

Are they just AT commands? What type of physical interface is the modem showing up as?
by rickfrey
Mon Feb 17, 2014 8:02 am
Forum: General
Topic: ccr1036-12g-4s
Replies: 1
Views: 1334

Re: ccr1036-12g-4s

The first thing you should do is upgrade the OS to the latest version. You may not have a problem after that, but if you do then, please, post your config.
by rickfrey
Mon Feb 17, 2014 7:56 am
Forum: General
Topic: Help needed to setup L2TP with IPSEC
Replies: 12
Views: 3225

Re: Help needed to setup L2TP with IPSEC

Did you enable proxy arp on the LAN interface?
by rickfrey
Mon Feb 17, 2014 7:54 am
Forum: Wireless Networking
Topic: Hotspot Issues
Replies: 1
Views: 782

Re: Hotspot Issues

Can you post your settings? Have you tried to use a different web browser on the 2nd PC?
by rickfrey
Mon Feb 17, 2014 7:50 am
Forum: General
Topic: Multicast using EoiP over IPSec Help Needed
Replies: 1
Views: 1785

Re: Multicast using EoiP over IPSec Help Needed

Its really very easy if you are going to build a bridge with EOIP as one of the ports. You won't need any routing or NAT rules. Just create the EOIP interface on either side and use the IP Sec permitted addresses for each router.
by rickfrey
Mon Feb 17, 2014 7:45 am
Forum: General
Topic: Dropbox and webproxy
Replies: 1
Views: 1152

Re: Dropbox and webproxy

With dropbox even if I give the client full https access they still cannot connect, any ideas?

Are you redirecting 80 & 443?
by rickfrey
Mon Feb 17, 2014 7:43 am
Forum: General
Topic: uploading-limmited
Replies: 1
Views: 800

Re: uploading-limmited

Can you post your config?
by rickfrey
Mon Feb 17, 2014 7:42 am
Forum: General
Topic: 751G-2HnD keeps locking up
Replies: 2
Views: 1058

Re: 751G-2HnD keeps locking up

Have you tried re-installing the OS with netinstall? You may simply, just have a bad router.
by rickfrey
Mon Feb 17, 2014 7:41 am
Forum: General
Topic: Ask: How to check bandwidth from ISP ?
Replies: 1
Views: 1794

Re: Ask: How to check bandwidth from ISP ?

When you are downloading a file from across the Internet, you are also introducing unknowns into the equation. The best thing would be to test to something that is also connected to your ISP, but who has more B/W than you. This will give you a pretty good idea, but its not perfect either. The B/W te...
by rickfrey
Mon Feb 17, 2014 7:37 am
Forum: General
Topic: Source address for Updates and NTP
Replies: 1
Views: 873

Re: Source address for Updates and NTP

Have you tried using 1:1 NAT?
by rickfrey
Mon Feb 17, 2014 7:36 am
Forum: General
Topic: How to mark SRC Connection to Deliver from that
Replies: 1
Views: 786

Re: How to mark SRC Connection to Deliver from that

You are going to need to set up policy based routing for that. If you look at the PCC wiki page, there is an example in there that you can modify to your needs.
by rickfrey
Mon Feb 17, 2014 7:34 am
Forum: General
Topic: Source address for Updates and NTP
Replies: 8
Views: 3961

Re: Source address for Updates and NTP

Can you post your config, please?
by rickfrey
Mon Feb 17, 2014 7:30 am
Forum: General
Topic: x86, 5.24 random lockups
Replies: 1
Views: 1364

Re: x86, 5.24 random lockups

How many CPUs show up in resources? We had a similar problem with multi-threading and we had to upgrade to the last ROS version to make it more stable.
by rickfrey
Mon Feb 17, 2014 7:25 am
Forum: General
Topic: PPTP interface misses the brige
Replies: 1
Views: 980

Re: PPTP interface misses the brige

Are both side MikroTik? This feature will only work dynamically if both sides are MikroTik. If the other side is some other vendor you are going to have to add the appropriate ports to the bridge.
by rickfrey
Mon Feb 17, 2014 7:22 am
Forum: Scripting
Topic: help in Traffic shaping by radius attributes
Replies: 4
Views: 2631

Re: help in Traffic shaping by radius attributes

I've set that up before and it was a little complicated at first, but it worked well after we got it working. If you would like to email me, I can put in touch with someone who can share that configuration with you.
by rickfrey
Mon Feb 17, 2014 7:19 am
Forum: Scripting
Topic: help in Traffic shaping by radius attributes
Replies: 4
Views: 2631

Re: help in Traffic shaping by radius attributes

Radius Manager allows you to script that process, so, yes, you can do it. It will be done on that the RADIUS side though.
by rickfrey
Mon Feb 17, 2014 7:17 am
Forum: Beginner Basics
Topic: Redierect hotspot expired users to an information page
Replies: 9
Views: 5598

Re: Redierect hotspot expired users to an information page

Many of the RADIUS/ Billing solutions have this ability. How are you authenticating your users?
by rickfrey
Mon Feb 17, 2014 7:15 am
Forum: Beginner Basics
Topic: Multicast (airprint) between subnets
Replies: 1
Views: 2290

Re: Multicast (airprint) between subnets

In your setup, would it be possible to bridge the two Ethernet ports so that you maintain one broadcast domain? That would solve the problem. If you need help with the multicast our company can help you with that.
by rickfrey
Mon Feb 17, 2014 7:09 am
Forum: General
Topic: DHCP server problem
Replies: 2
Views: 1123

Re: DHCP server problem

Can you export your settings and post them?
by rickfrey
Mon Feb 17, 2014 7:07 am
Forum: General
Topic: Non-Mikrotik based remote hotspot and billing server
Replies: 2
Views: 1255

Re: Non-Mikrotik based remote hotspot and billing server

RADIUS is going to have to fit in there some how. What exactly are you tying to connect to? That will help answer the question.
by rickfrey
Mon Feb 17, 2014 7:04 am
Forum: The User Manager
Topic: changing keep live timeout for users
Replies: 1
Views: 1898

Re: changing keep live timeout for users

/ip hotspot
set number=0 idle-timeout=10m
by rickfrey
Mon Feb 17, 2014 7:02 am
Forum: Beginner Basics
Topic: PROBLEM PPPOE SERVER - peer is not responding
Replies: 1
Views: 3444

Re: PROBLEM PPPOE SERVER - peer is not responding

Can you post your configuration settings?
by rickfrey
Mon Feb 17, 2014 7:01 am
Forum: Forwarding Protocols
Topic: [SOLVED] Issues with access to router within OSPF and PCC
Replies: 1
Views: 1865

Re: [SOLVED] Issues with access to router within OSPF and PC

Do you have loopbacks setup and are you trying to access the routers via the loopbacks?
by rickfrey
Mon Feb 17, 2014 7:00 am
Forum: General
Topic: can we map ip address with a specific user? not with mac add
Replies: 1
Views: 874

Re: can we map ip address with a specific user? not with mac

You are going to have to be more specific. You really did not explain the setup at all.
by rickfrey
Mon Feb 17, 2014 6:58 am
Forum: General
Topic: IPSEC & Xauth & juniper
Replies: 1
Views: 1863

Re: IPSEC & Xauth & juniper

I think you are going to have to post both sides to validate that. What version of Juniper are you using?
by rickfrey
Mon Feb 17, 2014 6:54 am
Forum: General
Topic: EOIP
Replies: 1
Views: 827

Re: EOIP

Can you post your configs?
by rickfrey
Mon Feb 17, 2014 6:49 am
Forum: General
Topic: Good Wireless Connectivity but Crapy Internet
Replies: 1
Views: 890

Re: Good Wireless Connectivity but Crapy Internet

Can you post your config?
by rickfrey
Mon Feb 17, 2014 6:46 am
Forum: RouterBOARD hardware
Topic: RB911G-2HPnD frequency chart?
Replies: 1
Views: 1543

Re: RB911G-2HPnD frequency chart?

2ghz-b-channels=2312:0,2317:0,2322:0,2327:0,2332:0,2337:0,2342:0,2347:0, 2352:0,2357:0,2362:0,2367:0,2372:0,2377:0,2382:0,2387:0,2392:0, 2397:0,2402:0,2407:0,2412:0,2417:0,2422:0,2427:0,2432:0,2437:0, 2442:0,2447:0,2452:0,2457:0,2462:0,2467:0,2472:0,2477:0,2482:0, 2487:0,2492:0,2497:0,2502:0,2507:0,...
by rickfrey
Mon Feb 17, 2014 6:43 am
Forum: General
Topic: AT&T Sierra Elevate or Novatel MiFi Liberate WAN connection
Replies: 1
Views: 1010

Re: AT&T Sierra Elevate or Novatel MiFi Liberate WAN connect

I haven't tried those, but I have successfully used a Sierra MC8705 with ROS 6.9. It has a miniPCIe form factor, but it does work well after ROS 6.9.
by rickfrey
Mon Feb 17, 2014 6:34 am
Forum: Beginner Basics
Topic: Mikrotik Scnario
Replies: 3
Views: 1197

Re: Mikrotik Scnario

by rickfrey
Mon Feb 17, 2014 6:33 am
Forum: General
Topic: authentication using pptp server behind a router
Replies: 1
Views: 887

Re: authentication using pptp server behind a router

Its possible, but it doesn't make a lot of sense. Why is the CMTS not talking directly to the RADIUS server? Many of the CTMS servers I have encountered did have a "bridge" mode. Have you contacted your vendor and asked them about it? PPPoE makes more sense in this case. I'd dig more into ...
by rickfrey
Mon Feb 17, 2014 6:26 am
Forum: General
Topic: Large number of writes to the flash
Replies: 1
Views: 968

Re: Large number of writes to the flash

That's not anything to worry about. Its not a unusually high number. The number below it is a little high... still you don't have any bad blocks and if you are not seeing strange problems, its probably not anything to worry about.
by rickfrey
Mon Feb 17, 2014 6:23 am
Forum: The User Manager
Topic: Problems with RADIUS/USER MANAGER
Replies: 1
Views: 2071

Re: Problems with RADIUS/USER MANAGER

Are the devices that are calling into the PPPoE server UBNT devices?
by rickfrey
Mon Feb 17, 2014 6:21 am
Forum: General
Topic: Web request failure from a server - Nat,web proxy confiqure
Replies: 1
Views: 712

Re: Web request failure from a server - Nat,web proxy confiq

What are the settings you are using now? Are you using the router just as a switch/ bridge? Are your firewall rules turned off?
by rickfrey
Mon Feb 17, 2014 6:19 am
Forum: RouterBOARD hardware
Topic: 2 WAN, 1 x PPPOE server
Replies: 1
Views: 1461

Re: 2 WAN, 1 x PPPOE server

If you post what you have, we can make suggestions on what you need to modify. :D
by rickfrey
Mon Feb 17, 2014 6:17 am
Forum: The User Manager
Topic: Day/Night Bandwidth Configure in User Manager
Replies: 9
Views: 9382

Re: Day/Night Bandwidth Configure in User Manager

Because the RADIUS token had already been validated. You might want to try using scheduler to script this process.
by rickfrey
Mon Feb 17, 2014 6:14 am
Forum: General
Topic: pppoe server problem in BRIDGES, BUG BCP??? tested all versi
Replies: 1
Views: 982

Re: pppoe server problem in BRIDGES, BUG BCP??? tested all v

Just out of curiosity, have you connected a few devices of other flavors besides UBNT to see if they behave that way? What are your PPP settings?
by rickfrey
Mon Feb 17, 2014 6:09 am
Forum: General
Topic: problem upgrading from 5.x to 6.x
Replies: 1
Views: 1061

Re: problem upgrading from 5.x to 6.x

I am using the exact same router at a lot of locations and ROS 6.7 is what we currently run on most production units. We have never had this problem. However, I have had multiple RB900 series that needed a fresh OS install using netinstall. I don't know why, but that has cleared some of the bizarre ...
by rickfrey
Mon Feb 17, 2014 6:03 am
Forum: Beginner Basics
Topic: multiple public IPs with local network
Replies: 4
Views: 1545

Re: multiple public IPs with local network

Yes, its possible. If you start out with the default config for that router, all you going to have to do is add each of the Public IP addresses to the router. Then in IP -> Firewall -> Nat you are going to create rules for each one. Here is how you set up 1:1 NAT: http://wiki.mikrotik.com/wiki/Manua...
by rickfrey
Mon Feb 17, 2014 6:00 am
Forum: General
Topic: Bonding Query/Options
Replies: 3
Views: 1390

Re: Bonding Query/Options

Its generally accepted that you should not use VLAN tag 1 the same way you use other tags, so not that's not really broken. Have you tried maxing out the MTU?
by rickfrey
Mon Feb 17, 2014 5:55 am
Forum: General
Topic: RB 1200 sometimes freeze when reboot
Replies: 1
Views: 891

Re: RB 1200 sometimes freeze when reboot

Here are a couple of things to try. A) upgrade your ROS, B) if that is not an option, re-install the OS with netinstall, C) connect a serial terminal to it to log what is going on when it reboots. Chances are re installing the OS will fix that. Have you submitted the support file to MikroTik?
by rickfrey
Mon Feb 17, 2014 5:53 am
Forum: Forwarding Protocols
Topic: Strange behavior with static routing
Replies: 1
Views: 993

Re: Strange behavior with static routing

Can you post your NAT settings from both routers, please.
by rickfrey
Mon Feb 17, 2014 5:51 am
Forum: General
Topic: Set Reset defaults for CPE senario?
Replies: 2
Views: 1282

Re: Set Reset defaults for CPE senario?

Not exactly, but... I know someone who did something that I was really impressed with. The white labeled the router and then they had a very simple program that ran on the customer's computer. It would go out and find the router and make all the changes to it. You could even save settings for that s...
by rickfrey
Mon Feb 17, 2014 5:45 am
Forum: Beginner Basics
Topic: load balance pcc and (1 isp service provider or multi isp )
Replies: 1
Views: 948

Re: load balance pcc and (1 isp service provider or multi is

I'm not sure what you're asking for. Are you asking how to do it or are you asking have any of us done it successfully? Yes, I have done it successfully. No, it does not work the way I would have thought it was going to work before I tried it. I highly recommend you play with PCC and understand it b...
by rickfrey
Mon Feb 17, 2014 5:38 am
Forum: General
Topic: ipsec to cisco-Mikrotik is behind NAT. Tun is up no traffic
Replies: 1
Views: 1281

Re: ipsec to cisco-Mikrotik is behind NAT. Tun is up no traf

You are going to have to use a VPN that calls home like PPtP. Then your IPSEC tunnel will get established between the private IP addresses of the 1st tunnel. You'll be able to get it to work that way, but you make have to adjust the MTUs depending on which tunnel combination you use.
by rickfrey
Mon Feb 17, 2014 5:35 am
Forum: RouterBOARD hardware
Topic: 2 poe-in port SXT and other outdoor CPE units
Replies: 1
Views: 1168

Re: 2 poe-in port SXT and other outdoor CPE units

That's really not a bad idea. :)
by rickfrey
Mon Feb 17, 2014 5:33 am
Forum: General
Topic: Need help with a redirect loop
Replies: 6
Views: 2735

Re: Need help with a redirect loop

Can you be more specific about your problem, please? Can you post the config that you are current using?
by rickfrey
Mon Feb 17, 2014 5:31 am
Forum: Beginner Basics
Topic: using mikrotik to monitor data usage
Replies: 1
Views: 1351

Re: using mikrotik to monitor data usage

I'm not quite sure what your specific scenario is, but many WISPs insist that the customer uses their MikroTik wireless router. Some even go so far as to call it a CPE or a modem of some sort. Having in an inexpensive RouterBoard there can be very advantageous. I'm assuming from what you wrote that ...
by rickfrey
Mon Feb 17, 2014 2:27 am
Forum: General
Topic: DNS - very slow
Replies: 4
Views: 3291

Re: DNS - very slow

I've run into that problem also. You can try using scheduler to flush the cache periodically. That will help considerably. In some cases, we have had to offload DNS completely. I doesn't behave quite right with a large number of users.
by rickfrey
Mon Feb 17, 2014 2:22 am
Forum: Beginner Basics
Topic: RouterOS Console Cheat Sheet
Replies: 4
Views: 5016

Re: RouterOS Console Cheat Sheet

Oustanding! Thank you for posting this! :D
by rickfrey
Mon Feb 17, 2014 1:51 am
Forum: Beginner Basics
Topic: Graphing question
Replies: 8
Views: 2169

Re: Graphing question

That's a good idea, Payday, thanks!
by rickfrey
Mon Feb 17, 2014 1:46 am
Forum: General
Topic: High CPU load 100 % on RB 133
Replies: 16
Views: 5716

Re: High CPU load 100 % on RB 133

So, if you turn your queues and firewall rules off does the CPU load go back down? Have you considered upgrading to another router? Running a hotspot on an RB-133 won't allow too many host anyway.
by rickfrey
Mon Feb 17, 2014 1:39 am
Forum: General
Topic: UDP attack
Replies: 5
Views: 2607

Re: UDP attack

If the packets are being spoofed changing IP -> Settings RP Filter to "strict" will help also. You can read more about that here:
http://wiki.mikrotik.com/wiki/Manual:IP/Settings
by rickfrey
Mon Feb 17, 2014 1:33 am
Forum: Beginner Basics
Topic: forward and management VPN
Replies: 11
Views: 3546

Re: forward and management VPN

Can you explain your question a little more, please?
by rickfrey
Mon Feb 17, 2014 1:31 am
Forum: General
Topic: IPSEC State Sequence Errors
Replies: 4
Views: 4452

Re: IPSEC State Sequence Errors

Can you post your config?
by rickfrey
Sun Feb 16, 2014 10:42 pm
Forum: General
Topic: Can I manually add drivers to Router OS
Replies: 6
Views: 5191

Re: Can I manually add drivers to Router OS

Thank you for finding that for me :D
by rickfrey
Sun Feb 16, 2014 10:40 pm
Forum: RouterBOARD hardware
Topic: usb serial console on CCR
Replies: 5
Views: 3147

Re: usb serial console on CCR

Awesome, thank you very much!
by rickfrey
Sun Feb 16, 2014 10:38 pm
Forum: Wireless Networking
Topic: Ping speed test weird results
Replies: 32
Views: 7103

Re: Ping speed test weird results

Anyway what do you think about this?
http://www.balticnetworks.com/ubtiktm-5 ... ennas.html
That would be a great choice :D
by rickfrey
Sun Feb 16, 2014 8:05 am
Forum: Beginner Basics
Topic: Two WAN routers on one LAN
Replies: 2
Views: 1439

Re: Two WAN routers on one LAN

by rickfrey
Sun Feb 16, 2014 8:03 am
Forum: Beginner Basics
Topic: Hairpin conflicts with VPN vice versa
Replies: 5
Views: 3492

Re: Hairpin conflicts with VPN vice versa

We will need to know what the rest of the settings are to be able to help with this.
by rickfrey
Sun Feb 16, 2014 8:02 am
Forum: Beginner Basics
Topic: check lan of groove away with another groove
Replies: 1
Views: 748

Re: check lan of groove away with another groove

Have you tried the Dude? That is a great solution all around.
by rickfrey
Sun Feb 16, 2014 7:47 am
Forum: General
Topic: Neighbor Discovery
Replies: 2
Views: 1072

Re: Neighbor Discovery

Not really. In both instances, you have to be on the same broadcast domain in order to receive the discovery packets.
by rickfrey
Sun Feb 16, 2014 7:45 am
Forum: RouterBOARD hardware
Topic: Cloud Core Router fastpath
Replies: 1
Views: 1410

Re: Cloud Core Router fastpath

Check out the section on IP4 handler, since that is the section that probably applies to your question.

http://wiki.mikrotik.com/wiki/Manual:Fast_Path
by rickfrey
Sun Feb 16, 2014 7:40 am
Forum: General
Topic: types of devices connected
Replies: 1
Views: 1012

Re: types of devices connected

No, you really can do that, but what you can do is create a script that looks at the host names in the DHCP leases. That would allow to identify some things. You could use MAC addresses, but that would be a maintenance nightmare. Over all, I don't think you are going to be able to do it in a manner ...
by rickfrey
Sun Feb 16, 2014 7:39 am
Forum: General
Topic: CF microdrive for RB500 series
Replies: 1
Views: 929

Re: CF microdrive for RB500 series

Here is the MikroTik hardware compatibility list. There are some micro drives listed here:
http://wiki.mikrotik.com/index.php?titl ... mory_cards
by rickfrey
Sun Feb 16, 2014 7:35 am
Forum: General
Topic: Problem on WAN failover without scripting
Replies: 4
Views: 2855

Re: Problem on WAN failover without scripting

Its really less complicated than that. All you really need to do is add two default gateways. One will have a higher distance than the other. Both will have Check gateway by ping enabled. Then you will also need two NAT rules. That will work perfectly and without any problems.
by rickfrey
Sun Feb 16, 2014 7:29 am
Forum: General
Topic: Trunk Cisco Swti - RB750
Replies: 1
Views: 1172

Re: Trunk Cisco Swti - RB750

You can find more info on the VLANs and Trunking here:
http://wiki.mikrotik.com/wiki/Manual:Interface/VLAN

What you're trying to do is pretty simple. I'm sure that when you read through this wiki page it will make more sense to you. If not, feel free to ask more questions :D
by rickfrey
Sun Feb 16, 2014 7:19 am
Forum: General
Topic: PPPoE modem connect to the server
Replies: 1
Views: 871

Re: PPPoE modem connect to the server

Can you post your settings from both devices?
by rickfrey
Sun Feb 16, 2014 7:18 am
Forum: General
Topic: Feature request for v7.x
Replies: 296
Views: 107593

Re: Feature request for v7.x

Directions for changing the settings for the log can be found here: http://wiki.mikrotik.com/wiki/Manual:System/Log Unfortunately, you can move the log to a USB device and that is documented here: http://wiki.mikrotik.com/wiki/Manual:Store You can move the log to a remote log server and you can use ...
by rickfrey
Sun Feb 16, 2014 7:12 am
Forum: Beginner Basics
Topic: Graphing question
Replies: 8
Views: 2169

Re: Graphing question

No, the graphing feature will only graph certain specific parts of the host router.
by rickfrey
Sun Feb 16, 2014 7:07 am
Forum: Beginner Basics
Topic: Blocking of http traffic to router via public ip
Replies: 2
Views: 1715

Re: Blocking of http traffic to router via public ip

There are a couple of different ways to do this. You can goto IP -> settings and disable the www (and www-ssl) section or specify a LAN address that it can be reached by. You can also create a firewall filter rule in the input chain that says drop anything on port 80. You can also turn the graphs of...
by rickfrey
Sun Feb 16, 2014 7:02 am
Forum: General
Topic: Bypass simple queue for a single ip
Replies: 2
Views: 2655

Re: Bypass simple queue for a single ip

If you are also using the hotspot with the RADIUS you can do it this way. You will have to create that user a simple queue that is unlimited. Then create them a new profile in hotspot that is separate from everyone else's profile. In there profile you can tell it to use that new queue.
by rickfrey
Sun Feb 16, 2014 6:50 am
Forum: The User Manager
Topic: UserManager not work after installing a CF card
Replies: 1
Views: 1705

Re: UserManager not work after installing a CF card

Can you export your system store list, please?
by rickfrey
Sun Feb 16, 2014 6:49 am
Forum: General
Topic: pppoe on interface bridge
Replies: 1
Views: 1525

Re: pppoe on interface bridge

The bridge is now the master interface so you will change the NAT rule to read out-interface=bridge.
by rickfrey
Sun Feb 16, 2014 6:21 am
Forum: Scripting
Topic: SIP ALG & NAT (I must reset SIP connections when IP changes)
Replies: 1
Views: 2507

Re: SIP ALG & NAT (I must reset SIP connections when IP chan

Goto IP -> Firewall -> Connections and click on the Tracking button. There you can change the values for how long it maintains a connection. You might lower those values incrementally until you find a set that work for your application. You might also read up on the IP -> Settings and verify/ adjust...
by rickfrey
Sun Feb 16, 2014 6:16 am
Forum: General
Topic: ISP cpe getting ip address with radius and dhcp server
Replies: 10
Views: 3573

Re: ISP cpe getting ip address with radius and dhcp server

The PPPoE will hand out IP address within Pools and the Radius will handle that without a problem. Is that what you need help with? I don't understand why you want to do PPPoE and DHCP to the same client. Can you explain that a little better, please?
by rickfrey
Sun Feb 16, 2014 6:10 am
Forum: General
Topic: TPLINK WN722n
Replies: 1
Views: 1061

Re: TPLINK WN722n

That product only have Windows drivers:
System Requirements Windows 7(32/64bits), Windows Vista(32/64bits), Windows XP(32/64bits), Windows 2000
If it doesn't show up as an interface, its probably not going to work at all.
by rickfrey
Sun Feb 16, 2014 6:05 am
Forum: Beginner Basics
Topic: Balancing traffic between two VPN, through a single gateway.
Replies: 1
Views: 829

Re: Balancing traffic between two VPN, through a single gate

Yes it is possible. You can use PCC, which will work ok, but is not with out problems. You can use ECMP or OSPF to make it behave like a single connection. You can also use BGP, but ECMP and PCC are probably your only realistic options.
by rickfrey
Sun Feb 16, 2014 5:50 am
Forum: General
Topic: RB951G-2HnD: PPPoE Connection terminating, etc - DNS Changed
Replies: 6
Views: 4800

Re: RB951G-2HnD: PPPoE Connection terminating, etc - DNS Cha

No, it not normal for the PPPoE connection to constantly drop. That is something that you should troubleshoot. I didn't see anything in your config that really stood out as possibly being the culprit. You're ISP may be having problems. If you have a Windows computers, you can set it up as a PPPoE cl...
by rickfrey
Sun Feb 16, 2014 5:44 am
Forum: General
Topic: Misunderstanding of profile
Replies: 1
Views: 872

Re: Misunderstanding of profile

Both references point to your profile. You profile allows you to make "global" polices" for those instances. They are extremely useful when managing hundreds or thousands of connections. Most everything in the PPP section looks to the profile to see if those values are specified there...
by rickfrey
Sun Feb 16, 2014 5:37 am
Forum: RouterBOARD hardware
Topic: usb serial console on CCR
Replies: 5
Views: 3147

Re: usb serial console on CCR

That's an excellent idea! How well did it work for you? Would you mind posting your settings?
by rickfrey
Sun Feb 16, 2014 5:34 am
Forum: RouterBOARD hardware
Topic: Making LCD useful.
Replies: 19
Views: 7987

Re: Making LCD useful.

I really like that idea too!
by rickfrey
Sun Feb 16, 2014 5:33 am
Forum: General
Topic: changing default route weird behavior (simple question)
Replies: 10
Views: 2697

Re: changing default route weird behavior (simple question)

When you figure it our, please let us know. I'm sure we are not the only ones that have seen that :-)
by rickfrey
Sun Feb 16, 2014 5:28 am
Forum: General
Topic: How To Limit P2P Using Simple Queue And Layer 7 ?
Replies: 4
Views: 9258

Re: How To Limit P2P Using Simple Queue And Layer 7 ?

Thank you for posting that :D
by rickfrey
Sun Feb 16, 2014 5:24 am
Forum: General
Topic: Can I manually add drivers to Router OS
Replies: 6
Views: 5191

Re: Can I manually add drivers to Router OS

Thanks for the answer. Have you tried this yourself? I would like to learn more about it. For instance, would I be correct in assuming that the drivers should be compiled on Debian and then copied over? If anyone has done this, I would be very interested in learning more :D
by rickfrey
Sun Feb 16, 2014 5:19 am
Forum: Wireless Networking
Topic: Ping speed test weird results
Replies: 32
Views: 7103

Re: Ping speed test weird results

The DFS mode was something that was insisted upon by people who could not even imagine what wireless networking was going to become. If you are legally able to turn it off, I would recommend turning it off at both the CPE and the AP. That will provide a much more stable link. BTW, you can keep the A...
by rickfrey
Sat Feb 15, 2014 7:12 am
Forum: General
Topic: routing you tube to another wan
Replies: 1
Views: 788

Re: routing you tube to another wan

Can you post your config?
by rickfrey
Sat Feb 15, 2014 7:06 am
Forum: General
Topic: changing default route weird behavior (simple question)
Replies: 10
Views: 2697

Re: changing default route weird behavior (simple question)

I've run into that as well. I have suspected the LAN configuration (i.e. switching or bridging the LAN ports). I haven't noticed a consistent behavior yet. Do you have multiple LAN interfaces and if so, how are they set up? How do you have your NAT configured?
by rickfrey
Sat Feb 15, 2014 6:58 am
Forum: General
Topic: Remote Connection and more
Replies: 5
Views: 2005

Re: Remote Connection and more

1) You should never copy a backup from one router to another. Some times that does appear to work OK, but it will always cause problems in the long run. The best way is use the export feature to copy settings back and forth. The backup file does copy MAC address and that can very problematic. You're...
by rickfrey
Sat Feb 15, 2014 6:44 am
Forum: Beginner Basics
Topic: Block external Ip access to a pppoe customer
Replies: 7
Views: 4195

Re: Block external Ip access to a pppoe customer

Awesome, glad I could help :D
by rickfrey
Sat Feb 15, 2014 6:43 am
Forum: Wireless Networking
Topic: Ping speed test weird results
Replies: 32
Views: 7103

Re: Ping speed test weird results

What Karina had to say is a very good point. From what you have said and looking at the pings, my first guess, assuming the hardware is good, is interference. Pings like that are very typical of interference, but Karina is right, you need to ping the AP and do a trace-route to verify where in the pa...
by rickfrey
Sat Feb 15, 2014 12:18 am
Forum: Beginner Basics
Topic: MLPPP on CRS125-24G-1S-2HnD-IN
Replies: 2
Views: 1563

Re: MLPPP on CRS125-24G-1S-2HnD-IN

Those instructions won't really help for this. If you can provide a network drawing with IP addresses, it would be easy to walk you through this.
by rickfrey
Sat Feb 15, 2014 12:14 am
Forum: Wireless Networking
Topic: Ping speed test weird results
Replies: 32
Views: 7103

Re: Ping speed test weird results

Is this related to your other post? The pic all by itself does't give anybody anything to work with. We would need to know what your configuration is to be able to help?
by rickfrey
Fri Feb 14, 2014 11:23 pm
Forum: Wireless Networking
Topic: Mikrotik WISPs: Where?
Replies: 94
Views: 158611

Re: Mikrotik WISPs: Where?

yes we no longer have a single cisco within the network anywhere, its a good feeling isnt it :)
lmao :lol:
by rickfrey
Fri Feb 14, 2014 11:19 pm
Forum: General
Topic: Remote Connection and more
Replies: 5
Views: 2005

Re: Remote Connection and more

To answer question#1 I prefer to create separate user accounts for each tunnel, just to solve that problem. Each router will be identified by its user account. That's really the easiest and best way I've found. As far as which tunnel to use, that depends on your needs, but I use OVPN when I have the...
by rickfrey
Fri Feb 14, 2014 11:08 pm
Forum: General
Topic: Display error for users using WEB server
Replies: 4
Views: 1165

Re: Display error for users using WEB server

Why do you have all of the "not" (!) symbols in the export? The rule looks correct except for the !, which shouldn't be there.
by rickfrey
Fri Feb 14, 2014 11:03 pm
Forum: General
Topic: How To Limit P2P Using Simple Queue And Layer 7 ?
Replies: 4
Views: 9258

Re: How To Limit P2P Using Simple Queue And Layer 7 ?

No, the code will not block any P2P, but it will block those that it can match. You will not be able to match and block the encrypted streams. As far as the dynamic hotspot queues, you are going to have to go into the user profiles and change the settings in there. That will allow you to get that tr...
by rickfrey
Fri Feb 14, 2014 10:33 pm
Forum: RouterBOARD hardware
Topic: Making LCD useful.
Replies: 19
Views: 7987

Re: Making LCD useful.

I like that idea, but I would also want to have it scroll through multiple images.
by rickfrey
Fri Feb 14, 2014 10:28 pm
Forum: The Dude
Topic: Problem with RB2011UiAS-IN & The Dude [npk]
Replies: 8
Views: 4325

Re: Problem with RB2011UiAS-IN & The Dude [npk]

Can you post a copy of your config, please?
by rickfrey
Fri Feb 14, 2014 10:25 pm
Forum: General
Topic: QOS Prioritization on PPPoE Server
Replies: 2
Views: 5317

Re: QOS Prioritization on PPPoE Server

I usually start out using pre-routing, while I'm building it (Just habit, I don't have a good reason for it.) Then you have to take a step back and see how that affects everything as a whole. Things like marking the priority are going to be in pre-routing, which you did. You handled the in and out c...
by rickfrey
Fri Feb 14, 2014 10:17 pm
Forum: Scripting
Topic: Console output by email
Replies: 3
Views: 1448

Re: Console output by email

I don't know how to the ip-scan one, but with system resource print you can use the get command:
get value-name=xyz
by rickfrey
Fri Feb 14, 2014 10:12 pm
Forum: Wireless Networking
Topic: Send email without stunnel
Replies: 1
Views: 1140

Re: Send email without stunnel

Thanks
by rickfrey
Fri Feb 14, 2014 10:10 pm
Forum: General
Topic: SMB-Samba
Replies: 1
Views: 911

Re: SMB-Samba

I don't believe so, but that would be a really useful feature!
by rickfrey
Fri Feb 14, 2014 10:07 pm
Forum: Beginner Basics
Topic: 450G and tl-mr3220 connection problem
Replies: 7
Views: 2135

Re: 450G and tl-mr3220 connection problem

Your network diagram looks great! :D Are you trying to share the bandwidth or use it solely for fail over? If you are wanting to "combine" them the easiest methods are ECMP, policy based routeing, and PCC. All have pros and cons. None of them will truly aggregate the bandwidth. There are M...
by rickfrey
Fri Feb 14, 2014 9:57 pm
Forum: Beginner Basics
Topic: Low Priority: problems forwarding
Replies: 4
Views: 1301

Re: Low Priority: problems forwarding

Try specifying the dst-address on the general tab for each rule. That will probably resolve the problem.
by rickfrey
Fri Feb 14, 2014 8:43 pm
Forum: RouterBOARD hardware
Topic: subject:- heavy ping
Replies: 1
Views: 1540

Re: subject:- heavy ping

What device and ROS are you using?
by rickfrey
Fri Feb 14, 2014 8:42 pm
Forum: General
Topic: L2TP Tunnel Authentication without using IPSec
Replies: 3
Views: 2396

Re: L2TP Tunnel Authentication without using IPSec

Does your configuration look like this? /interface l2tp-client add add-default-route=yes connect-to=196.30.121.50 name=l2tp-out1 password=\ test profile=default user=test You can't add the DHCP-client directly to a L2TP clients. Just FYI, there are other similar services, which will allow you to con...
by rickfrey
Fri Feb 14, 2014 8:30 pm
Forum: General
Topic: RouterOS Export Anonymizer Script
Replies: 2
Views: 1163

Re: RouterOS Export Anonymizer Script

That could be very handy, thank you!
by rickfrey
Fri Feb 14, 2014 8:27 pm
Forum: Wireless Networking
Topic: Integration of Hotspot into WiSP Setup
Replies: 2
Views: 1089

Re: Integration of Hotspot into WiSP Setup

Actually.... if you use the API... you could script the RADIUS to dynamically create access lists. That way you could move the customer off of one AP and onto to another AP (a VAP with the same SSID, maybe hidden) that was pointed in the direction you want them to go. It wouldn't be 100% problem fre...
by rickfrey
Fri Feb 14, 2014 8:14 pm
Forum: Wireless Networking
Topic: Integration of Hotspot into WiSP Setup
Replies: 2
Views: 1089

Re: Integration of Hotspot into WiSP Setup

No, there is not a clean way to do that. At least, not that I know of. You could script both the RADIUS and Mikrotik, but the trade off would be service interruptions for the normal customers. You could create a Virtual AP that directed customers like that. Hope that helps :D
by rickfrey
Fri Feb 14, 2014 8:08 pm
Forum: General
Topic: Metal only accessible via Telnet on another RouterBoard
Replies: 3
Views: 1937

Re: Metal only accessible via Telnet on another RouterBoard

The metal is missing the default route. Add:
/ip route
add gateway=192.168.222.1
It should work once you do that.
by rickfrey
Fri Feb 14, 2014 8:02 pm
Forum: Wireless Networking
Topic: hardware recommendation
Replies: 1
Views: 739

Re: hardware recommendation

That will work. Unless you have a specific requirement to use 2.4GHz, I would switch it over to 5GHz. You could use the groves for all of them and remove the RB-951 so that it can be 5GHz... ,but you may have other reasons for using the RB-951 as well.
by rickfrey
Fri Feb 14, 2014 7:58 pm
Forum: Beginner Basics
Topic: Block external Ip access to a pppoe customer
Replies: 7
Views: 4195

Re: Block external Ip access to a pppoe customer

Try two things; first remove the in-interface and second move that rule all the way to the top and let us know if that works. I would also, very highly, recommend upgrading to at least 6.7 if not 6.10. 6.1 was frequently buggy.
by rickfrey
Fri Feb 14, 2014 6:32 pm
Forum: General
Topic: Can I manually add drivers to Router OS
Replies: 6
Views: 5191

Re: Can I manually add drivers to Router OS

I noticed that the newer ROS version refer to a "firmware" folder (system -> ports -> Firmware). How is this used?
by rickfrey
Fri Feb 14, 2014 6:24 pm
Forum: General
Topic: Basic Configuration - Mikrotik Routerboard 1100 AHX2
Replies: 5
Views: 6132

Re: Basic Configuration - Mikrotik Routerboard 1100 AHX2

Your configuration is pretty typical if you are receiving a DHCP address from your ISP and NAT'ing that/ those addresses to the hosts on the LAN. That doesn't sound like it is what you are trying to do. Are you wanting to route the IP addresses to your hosts? Are you trying to bridge them to the host?
by rickfrey
Fri Feb 14, 2014 4:31 am
Forum: General
Topic: Proxy and Firewall Rules
Replies: 19
Views: 5120

Re: Proxy and Firewall Rules

Just create a new scheduler instance and copy that text into the window. Replace the MAC address with the one you are going to use. Set it to run every 10 minutes or so and you should be all set. Unfortunately, I don't really know of a good tutorial that would cover this. The more you use the CLI th...
by rickfrey
Fri Feb 14, 2014 4:28 am
Forum: Beginner Basics
Topic: Block external Ip access to a pppoe customer
Replies: 7
Views: 4195

Re: Block external Ip access to a pppoe customer

Please, post your config
by rickfrey
Fri Feb 14, 2014 1:03 am
Forum: General
Topic: https problem on hotspot
Replies: 97
Views: 122441

Re: https problem on hotspot

If the hotspot is not re-directing that traffic correctly then there may be something wrong with the dynamic rules that get created. Look in the firewall, under NAT, and see if there are rules for port 80 and port 443. They should be dynamically created. Make sure that there are not any static NAT r...
by rickfrey
Fri Feb 14, 2014 12:57 am
Forum: RouterBOARD hardware
Topic: 3G on RB411U
Replies: 5
Views: 2429

Re: 3G on RB411U

Thank you for sharing that! Which cellular network is running on?
by rickfrey
Fri Feb 14, 2014 12:53 am
Forum: General
Topic: Redistribute LAN ip's
Replies: 3
Views: 1172

Re: Redistribute LAN ip's

If I understand this correctly, all you have to do is add the IP address on the B/W MGMNT Server and then add a route to the BGP router. If the other subnet is already configured on the BGP router,then you will not have to make a change there. What type of device is the B/W MGMNT Server? Here is an ...
by rickfrey
Fri Feb 14, 2014 12:45 am
Forum: Beginner Basics
Topic: Odd IP blocking
Replies: 4
Views: 1632

Re: Odd IP blocking

Can you post the rest of your settings? Just to clarify, the port scan is against the router?
by rickfrey
Fri Feb 14, 2014 12:42 am
Forum: General
Topic: How to setup OpenVPN?
Replies: 1
Views: 791

Re: How to setup OpenVPN?

Here is the link to the manual http://wiki.mikrotik.com/wiki/Manual:Interface/OVPN. There are also some examples on the Wiki and there is a ton of information in the forums.
by rickfrey
Fri Feb 14, 2014 12:12 am
Forum: Scripting
Topic: script to read lte interface status
Replies: 1
Views: 2366

Re: script to read lte interface status

I noticed you were using the MC8705. How well does it seem to work for you? I have recently begun testing one and I have had it up for 3 days without a problem, but it sounds like you are having the this problem often enough to warrant the script. Which ROS version are you using?
by rickfrey
Thu Feb 13, 2014 7:02 pm
Forum: General
Topic: Natting
Replies: 7
Views: 2183

Re: Natting

Can you post an example of what you are trying to do? When you say: i'm trying to do a source nat for a TOS number or connection or packet Are you suggesting that anyone of those three things can be the means to identify the traffic to be NAT'd? From the host, through the router, and out to the Inte...
by rickfrey
Thu Feb 13, 2014 6:50 pm
Forum: RouterBOARD hardware
Topic: R52Hn compatibility with R52H
Replies: 2
Views: 1620

Re: R52Hn compatibility with R52H

Both cards are compatible within the 802.11a/b/g realm as well as with nstreme related protocols. They, of course, are not 802.11n compatible. There is a significant power difference between the two of them as well. Why don't you post the settings you are using for both cards?
by rickfrey
Thu Feb 13, 2014 6:47 pm
Forum: General
Topic: Proxy and Firewall Rules
Replies: 19
Views: 5120

Re: Proxy and Firewall Rules

Try running this in scheduler: ip proxy direct set numbers=0 src-address=[ /ip arp get value-name=address number=[find mac-address=00:08:5D:2D:Df:79 ]] You will have to create the web proxy rule by hand the first time, but after that this simple script will update the address for you as often as you...
by rickfrey
Thu Feb 13, 2014 6:25 pm
Forum: Beginner Basics
Topic: Block external Ip access to a pppoe customer
Replies: 7
Views: 4195

Re: Block external Ip access to a pppoe customer

What chain were you using? The rule should look like this:
 /ip firewall filter
add chain=forward src-address=(the IP you are trying to block) action=drop
If that doesn't work then will need to post the specifics of your configuration.
by rickfrey
Thu Feb 13, 2014 6:02 pm
Forum: Forwarding Protocols
Topic: Question about OSPF + MPLS
Replies: 3
Views: 1307

Re: Question about OSPF + MPLS

No problem :D
by rickfrey
Thu Feb 13, 2014 6:00 pm
Forum: General
Topic: why in os 6.x dynamic queue above my queue
Replies: 1
Views: 1085

Re: why in os 6.x dynamic queue above my queue

My pleasure :D
by rickfrey
Wed Feb 12, 2014 7:01 pm
Forum: The Dude
Topic: send email without stunnel [RESOLVED]
Replies: 3
Views: 3006

Re: send email without stunnel [RESOLVED]

Thanks! :-)
by rickfrey
Wed Feb 12, 2014 6:52 pm
Forum: Beginner Basics
Topic: PPPoE config with ADSL modem... beginner questions
Replies: 2
Views: 2347

Re: PPPoE config with ADSL modem... beginner questions

The PPPoE client settings look right and you said you were online, so they are probably fine. The firewall does not help you get online, but if you don't understand it can cause problems. Your firewall rules are pretty basic and they basically say protect the router and allow traffic that the LAN in...
by rickfrey
Wed Feb 12, 2014 6:31 pm
Forum: General
Topic: why in os 6.x dynamic queue above my queue
Replies: 1
Views: 1085

Re: why in os 6.x dynamic queue above my queue

You can determine what queue/ BW shaping option the hotspot uses in the User Profile.
by rickfrey
Wed Feb 12, 2014 6:27 pm
Forum: General
Topic: PPPoe Very Slow
Replies: 2
Views: 1691

Re: PPPoe Very Slow

Can you post your configs for both routers?
by rickfrey
Wed Feb 12, 2014 6:24 pm
Forum: General
Topic: VPN over wifi, network setup, some help needed
Replies: 1
Views: 805

Re: VPN over wifi, network setup, some help needed

Yes, all of that can be done. It's a little involved because there are multiple pieces there, but its easy enough to do. A company like our's can help you do it, or if you want to do it on your own, I would suggest using GNS3 to model the whole scenario before you go live with it. The HA and load ba...
by rickfrey
Wed Feb 12, 2014 5:51 pm
Forum: Wireless Networking
Topic: one wifi client with low signal causing network slow
Replies: 8
Views: 3368

Re: one wifi client with low signal causing network slow

Can you post your configs?
by rickfrey
Wed Feb 12, 2014 5:49 pm
Forum: General
Topic: carrier grade NAT
Replies: 3
Views: 3370

Re: carrier grade NAT

Can you be a little more specific, please? The answer is going to be yes, but I need more info on what you are wanting to do to answer the "how" part.
by rickfrey
Wed Feb 12, 2014 5:47 pm
Forum: Beginner Basics
Topic: Limit download/upload speed per IP
Replies: 12
Views: 118458

Re: Limit download/upload speed per IP

Assuming, that you can handle the bridge and other peices, here is the queue piece. This will work on ROS 6.7:

/queue simple
add max-limit=10M/10M name=Example queue=pcq-upload-default/pcq-download-default target=10.0.0.0/24
by rickfrey
Wed Feb 12, 2014 5:42 pm
Forum: Beginner Basics
Topic: mikrotik and GNS3
Replies: 2
Views: 1890

Re: mikrotik and GNS3

In GNS3 0.8.6, using Virtulbox for the ROS portion, you will have to configure "Host Only Adapters." You do this through Virtualbox. First draw out what you want your setup to be. Then go into VB and for every set of connections you will have to create a Host Adapter by going to File -> Pr...
by rickfrey
Wed Feb 05, 2014 11:35 pm
Forum: Virtualization
Topic: Scanner
Replies: 1
Views: 3530

Re: Scanner

Neighbor is also available here http://www.mikrotik.com/download/neighbour.zip
by rickfrey
Wed Feb 05, 2014 11:15 pm
Forum: General
Topic: Tracking down malware targeting google
Replies: 1
Views: 1157

Re: Tracking down malware targeting google

If you check out ARIN and put "google" in the search, you'll see just how many IP addresses you would have to block/ match against in North America alone. If you are trying to match that traffic via Layer 7, its going to drive the CPU though the roof. Everything calls out to Google. It wou...
by rickfrey
Wed Feb 05, 2014 10:49 pm
Forum: RouterBOARD hardware
Topic: rb951-2n future suggestion ?
Replies: 4
Views: 3333

Re: rb951-2n future suggestion ?

:-D
by rickfrey
Tue Feb 04, 2014 10:00 pm
Forum: General
Topic: Wireless disconnected for all users, extensive data loss
Replies: 1
Views: 1611

Re: Wireless disconnected for all users, extensive data loss

That can be caused by several different things, but its frequently a sign of a wireless card going out. IF ... nothing has changed and the problem just started all of the sudden... then I would try replacing the wireless device. Otherwise, why don't you try to get a packet capture of what is happeni...
by rickfrey
Tue Feb 04, 2014 9:53 pm
Forum: Forwarding Protocols
Topic: Question about OSPF + MPLS
Replies: 3
Views: 1307

Re: Question about OSPF + MPLS

Did you adjust the MTU values? Having the wrongs MTUs will cause the problem you are describing. Try pinging from one router to the next. Start with a Packet Size of 1500 and then work your way down until it starts pinging. If it won't ping at 1500, that's a dead giveaway.
by rickfrey
Fri Jan 24, 2014 8:11 pm
Forum: General
Topic: (solved) block traffic between subnets
Replies: 7
Views: 2715

Re: block traffic between subnets

No, problem, glad I could help :)
by rickfrey
Fri Jan 24, 2014 10:09 am
Forum: General
Topic: Help with NATed VPN Config
Replies: 3
Views: 1295

Re: Help with NATed VPN Config

Hi James, You lost me with the bridge settings. There was not enough detail to understand how it fits in, but here is the answer to the NAT problem: LAN1 Subnet-----NAT--------------Tunnel--------------NAT-------LAN2 Subnet or or Subnet presented to other side Subnet presented to other side Dependin...
by rickfrey
Fri Jan 24, 2014 9:55 am
Forum: General
Topic: (solved) block traffic between subnets
Replies: 7
Views: 2715

Re: block traffic between subnets

Yes, use the src and dst address lists
by rickfrey
Fri Jan 24, 2014 6:47 am
Forum: Wireless Networking
Topic: Internet access or network down customer notification
Replies: 9
Views: 4197

Re: Internet access or network down customer notification

You can also enable the SMB Settings and redirect them to a local share.
by rickfrey
Fri Jan 24, 2014 6:30 am
Forum: Wireless Networking
Topic: Internet access or network down customer notification
Replies: 9
Views: 4197

Re: Internet access or network down customer notification

When you enable the Webproxy, there will be a directory in the Files folder called "webproxy". The webpage "error.html" is editable. I created a very simple webpage as an example of one to replace it with, but this is just for proof of concept. The webpage that is attached here s...
by rickfrey
Tue Jan 21, 2014 9:39 pm
Forum: Beginner Basics
Topic: DSL failover question
Replies: 1
Views: 858

Re: DSL failover question

Yes, create the PPPoE client. On the Advanced Tab check "use default router" and the change the distance to 2 or whatever you like. That will give you the same result as the example you cited. Don't forget that you need to NAT rules, one for each connection.
by rickfrey
Tue Jan 21, 2014 9:35 pm
Forum: Wireless Networking
Topic: Internet access or network down customer notification
Replies: 9
Views: 4197

Re: Internet access or network down customer notification

Use can use Netwatch and web-proxy on the CPE. That would be a pretty easy and lightweight solution. There are some great webpages on the Internet that have "Network Up/ Down" that you could use as a template.
by rickfrey
Tue Jan 21, 2014 8:30 pm
Forum: Beginner Basics
Topic: Creating web proxy logs
Replies: 1
Views: 850

Re: Creating web proxy logs

Goto System -> Logging and create a new rule. There is a web-proxy topic that you can choose.
by rickfrey
Tue Jan 21, 2014 8:24 pm
Forum: General
Topic: torch stop on mikrotik 5.26 after 10 second
Replies: 1
Views: 994

Re: torch stop on mikrotik 5.26 after 10 second

Hi arbabnazar,
Which Routerboard/ type of device are you using? Most of my networks are currently using 5.26 and I have not seen that problem.
by rickfrey
Sun Jan 12, 2014 8:58 pm
Forum: Wireless Networking
Topic: Need Helpp plz
Replies: 1
Views: 961

Re: Need Helpp plz

Can you post a copy of your config and the log files?
by rickfrey
Fri Dec 13, 2013 9:04 pm
Forum: Wireless Networking
Topic: 802.1x Wifi Authentication Timeout
Replies: 3
Views: 5424

Re: 802.1x Wifi Authentication Timeout

What is your RADIUS timeout value in the MikroTik? The default is 300ms, so you may want to change to some much higher.
by rickfrey
Fri Dec 13, 2013 9:00 pm
Forum: Wireless Networking
Topic: Various RB433 on same network as Wireless AP problem!
Replies: 1
Views: 894

Re: Various RB433 on same network as Wireless AP problem!

It could be interference, but this sounds more like a configuration problem. If you are using Windows clients, or most any client for that matter, they should reconnect all by themselves even if there are frequent disruptions in their service. Can you post the settings you are using in the MikroTik ...
by rickfrey
Fri Dec 13, 2013 6:26 pm
Forum: General
Topic: Dual Wan - PPPoE forwarding traffic to a specific WAN port
Replies: 3
Views: 1713

Re: Dual Wan - PPPoE forwarding traffic to a specific WAN po

I'm not sure what your envisioning, but with Policy Based Routing, you use Mangle to identify and mark traffic. For example, you might identify the traffic based on IP Address List and mark the connection. The next rule would mark the packet and the third rule would make the routeing. Remember that ...
by rickfrey
Fri Dec 13, 2013 6:18 pm
Forum: RouterBOARD hardware
Topic: rb14 on x86 with routeros 5.25 cant see cm9 minipci card
Replies: 4
Views: 1636

Re: rb14 on x86 with routeros 5.25 cant see cm9 minipci card

:) I hadn't really realized it until you asked the question, but I never really see the lights on any on the PCI to miniPCI boards that I have used. I'll leave that one alone so that I'm not giving you bad info. However, the low voltage comment brought to mind something that I had tried. At one poin...
by rickfrey
Fri Dec 13, 2013 6:10 pm
Forum: General
Topic: best tunnel type?
Replies: 3
Views: 2621

Re: best tunnel type?

That's hard to answer because Cisco doesn't have just one way to do IPSEC. All tunnels have some overhead and all tunnels have the potential to slow down a connection. IPSEC, as it relates to MikroTik, does perform differently on different Routerboards and with different RouterOS versions. We freque...
by rickfrey
Fri Dec 13, 2013 5:58 pm
Forum: Forwarding Protocols
Topic: Mikrotik queue script
Replies: 3
Views: 2786

Re: Mikrotik queue script

You're Welcome :D
by rickfrey
Fri Dec 13, 2013 5:55 pm
Forum: The Dude
Topic: Dude on RB1100
Replies: 4
Views: 5871

Re: Dude on RB1100

You may need to downgrade the RouterOS version, get the Dude working, and then try to upgrade the RouterOS version. Sometimes, it just comes down to finding a the right combination of hardware and software for what you are trying to do. If 6.7 is not required for your project, go ahead and downgrade...
by rickfrey
Sun Dec 08, 2013 8:36 am
Forum: General
Topic: ip address configuration
Replies: 1
Views: 648

Re: ip address configuration

You really need professional consulting on this. This particular question is too open ended for the forum. How you distribute IP addresses has everything to do with how your network is designed. There are multiple ways to accomplish it, but no one will be able to answer it for this scenario without ...
by rickfrey
Sun Dec 08, 2013 8:35 am
Forum: General
Topic: Public ip address distribution
Replies: 1
Views: 1227

Re: Public ip address distribution

You really need professional consulting on this. This particular question is too open ended for the forum. How you distribute IP addresses has everything to do with how your network is designed. There are multiple ways to accomplish it, but no one will be able to answer it for this scenario without ...
by rickfrey
Sun Dec 08, 2013 8:23 am
Forum: Forwarding Protocols
Topic: Mikrotik queue script
Replies: 3
Views: 2786

Re: Mikrotik queue script

RouterOS changes the values to use the "k" Flags: X - disabled, I - invalid, D - dynamic 0 name="queue1" target-addresses=10.10.10.1/32 interface=all parent=none packet-marks="" direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=256k/320k...
by rickfrey
Sun Dec 08, 2013 7:36 am
Forum: General
Topic: Dual Wan - PPPoE forwarding traffic to a specific WAN port
Replies: 3
Views: 1713

Re: Dual Wan - PPPoE forwarding traffic to a specific WAN po

You can use RADIUS to give them the same IP address each time. That will allow you to do the Policy Based Routing that your trying to do. You could also create a script to match the MAC address to the current IP address.
by rickfrey
Sun Dec 08, 2013 7:33 am
Forum: General
Topic: best tunnel type?
Replies: 3
Views: 2621

Re: best tunnel type?

Your best bet will be IPSEC or IPSEC with IPIP or similar.
by rickfrey
Sat Dec 07, 2013 8:26 am
Forum: Beginner Basics
Topic: Simple Wireless Repeater for existing Wireless Signal
Replies: 5
Views: 2090

Re: Simple Wireless Repeater for existing Wireless Signal

You are not currently able to extend the signal of a non-MikroTik AP with a MikroTik AP. The closest you can come to it to use to wireless cards.
by rickfrey
Sat Dec 07, 2013 8:17 am
Forum: RouterBOARD hardware
Topic: rb14 on x86 with routeros 5.25 cant see cm9 minipci card
Replies: 4
Views: 1636

Re: rb14 on x86 with routeros 5.25 cant see cm9 minipci card

The CM9 has been one of my favorite wireless cards of the years :-). If RouterOS is not seeing it, then you have one of four problems. One the CM9 is bad, two the RB-14 is bad, three the motherboard is bad, or four the software is bad. Try reinstalling RouterOS if you feel confident the card is good...
by rickfrey
Thu Nov 21, 2013 5:01 pm
Forum: Beginner Basics
Topic: Dhcp client continues searching on docsis 3.0 based cable mo
Replies: 8
Views: 3021

Re: Dhcp client continues searching on docsis 3.0 based cabl

There have been a few times when I have been connecting a MikroTik router to a cable modem that I have had the same sort of experience. For no logical reason at all, it just wouldn't pull and address. There have been three things I have done to overcome this. This first was upgrading the software. S...
by rickfrey
Thu Nov 21, 2013 4:54 pm
Forum: Beginner Basics
Topic: RB2011 dual LAN routing?
Replies: 10
Views: 7041

Re: RB2011 dual LAN routing?

Your more than welcome and thank you for the karma!
by rickfrey
Thu Nov 21, 2013 4:53 pm
Forum: General
Topic: Blocking social website in mikrotik
Replies: 6
Views: 2899

Re: Blocking social website in mikrotik

You could black-hole that traffic, but I think you will find that with sites that have a large web presence such as the sites we are talking about, there are more specific IP addresses and IP ranges then would normally be expected. Its much easier to use a URL with a wildcard then to try to block th...
by rickfrey
Thu Nov 21, 2013 4:48 pm
Forum: Wireless Networking
Topic: Extend RB751G-2HnD wireless signal
Replies: 7
Views: 2440

Re: Extend RB751G-2HnD wireless signal

The Groove is very easy to deploy and it is a POE powered device.
by rickfrey
Thu Nov 21, 2013 4:46 pm
Forum: Wireless Networking
Topic: UN/PW with validity time & expire?
Replies: 12
Views: 3398

Re: UN/PW with validity time & expire?

Yes, I have used User Manager on several RB-750s. Depending on how much use the router has, you may slow it down a bit. If the number of users is relativity small, it will be just fine.
by rickfrey
Thu Nov 21, 2013 4:43 pm
Forum: Beginner Basics
Topic: Client CAn't Browse.
Replies: 8
Views: 1906

Re: Client CAn't Browse.

You said the WAN IP address changes each time the router is restarted, so I am assuming that you are using dhcp-client. If you are, then make sure the "Add Default Router:" value equals yes and remove any static default gateways you may have.
by rickfrey
Wed Nov 20, 2013 4:40 pm
Forum: General
Topic: DHCP server assign - deassign constantly
Replies: 14
Views: 20920

Re: DHCP server assign - deassign constantly

You can use this command: /ip dhcp-server export Chances are your server is just fine and that the problem is with the hosts. It hard (maybe impossible) to have an active hotspot that seems to work for everybody. Most of problems are Layer 8 problems, some are undiagnosed hardware problems, and some...
by rickfrey
Wed Nov 20, 2013 4:15 pm
Forum: Wireless Networking
Topic: Help choose MT APs
Replies: 5
Views: 1754

Re: Help choose MT APs

I haven't had any trouble out of the SXT series with distances that short. As far as what connection rate can you expect at those values, once you have done a link budget, you take your received signal strength and compare it the signal/ rate chart for the product. The problem in this case, is that ...
by rickfrey
Wed Nov 20, 2013 4:02 pm
Forum: General
Topic: Blocking social website in mikrotik
Replies: 6
Views: 2899

Re: Blocking social website in mikrotik

There is a difference between using the web proxy to cache and using it to limit access. Although, it won't cache https traffic, it can block it. You can also use wild cards with the address to block sub pages.
by rickfrey
Wed Nov 20, 2013 4:00 pm
Forum: Beginner Basics
Topic: Dhcp client continues searching on docsis 3.0 based cable mo
Replies: 8
Views: 3021

Re: Dhcp client continues searching on docsis 3.0 based cabl

If you plug your PC directly into the modem, are you able to pull a DHCP address from your provider? Are you power cycling the modem once you have your router plugged in?
by rickfrey
Wed Nov 20, 2013 8:21 am
Forum: Beginner Basics
Topic: Dhcp client continues searching on docsis 3.0 based cable mo
Replies: 8
Views: 3021

Re: Dhcp client continues searching on docsis 3.0 based cabl

??? Are you bridging or switching the ports?
by rickfrey
Wed Nov 20, 2013 8:18 am
Forum: General
Topic: Hotspot with 2 Radius Server
Replies: 1
Views: 1002

Re: Hotspot with 2 Radius Server

Its easy to have RouterOS use to two different RADIUS servers. The settings in the RADIUS section are processed "top down" like other parts of the RouterOS. All you have to do is add the lines for the two servers. If the first one fails it will try the second. It does not send the info to ...
by rickfrey
Wed Nov 20, 2013 8:14 am
Forum: General
Topic: configuring users database on my own
Replies: 3
Views: 1115

Re: configuring users database on my own

Just setup the hotspot to use RADIUS (server profiles). Set the RADIUS settings to point to your program and it will start sending you the RADIUS tokens.
by rickfrey
Wed Nov 20, 2013 8:11 am
Forum: General
Topic: mikrotik ipbind and cant access internet
Replies: 1
Views: 718

Re: mikrotik ipbind and cant access internet

What are the DNS settings? What the DHCP-server settings? Do you have a default gateway setup? What are your NAT settings? What are your hotspot settings?
by rickfrey
Wed Nov 20, 2013 8:09 am
Forum: RouterBOARD hardware
Topic: RB 133c3 bricked..
Replies: 2
Views: 1434

Re: RB 133c3 bricked..

It is waiting for you to push an image to it. Try this first: 1) Reboot the router and quickly press a key on your keyboard 2) Select the boot device choice 3) Choose "nand or nand first and then Ethernet 4) Reboot it and see if it comes up If it does not, then you will have to re-image it with...
by rickfrey
Wed Nov 20, 2013 8:04 am
Forum: Beginner Basics
Topic: Client CAn't Browse.
Replies: 8
Views: 1906

Re: Client CAn't Browse.

Did you setup NAT?
/ip firewall nat
add action=masquerade chain=srcnat out-interface=ether1
by rickfrey
Wed Nov 20, 2013 8:02 am
Forum: The User Manager
Topic: Automatically disconnect user during idle time
Replies: 1
Views: 6668

Re: Automatically disconnect user during idle time

Yes, that is the "Idle Timeout:" setting on the hotspot server.
IP -> Hotspot -> Servers Tab -> Click on server instance -> Change Idle Timeout
by rickfrey
Wed Nov 20, 2013 7:59 am
Forum: Beginner Basics
Topic: External laptop antenna?
Replies: 1
Views: 718

Re: External laptop antenna?

Of course it is. There are several ways you can do this, but the Quickset feature will make it a little easier for you. Try using it in the CPE mode.
by rickfrey
Wed Nov 20, 2013 7:56 am
Forum: Beginner Basics
Topic: IP bind
Replies: 3
Views: 1234

Re: IP bind

Can you post a copy of your config?
by rickfrey
Wed Nov 20, 2013 7:55 am
Forum: Wireless Networking
Topic: wlan in bridge mac address problem
Replies: 1
Views: 1039

Re: wlan in bridge mac address problem

The Bridge will grab a MAC address that it likes, but you can change it in the "Admin. MAC Address:" field. I usually copy the last Ethernet MAC and increment it up.
by rickfrey
Wed Nov 20, 2013 7:50 am
Forum: Wireless Networking
Topic: Connect to AP and make LAN
Replies: 1
Views: 712

Re: Connect to AP and make LAN

This page has a lot of good info for first time setup: http://wiki.mikrotik.com/wiki/Manual:Initial_Configuration This page is useful for learning the mode combinations: http://wiki.mikrotik.com/wiki/Bridge_Network_With_Wireless_Modes This page will provide more in depth info on the settings: http:/...
by rickfrey
Wed Nov 20, 2013 7:35 am
Forum: Forwarding Protocols
Topic: The Router all routing priority?
Replies: 2
Views: 1403

Re: The Router all routing priority?

I believe this is what you are looking for:

http://wiki.mikrotik.com/wiki/Manual:Ro ... n_RouterOS
by rickfrey
Wed Nov 20, 2013 7:31 am
Forum: General
Topic: DHCP Server Capacity - what limit in ROS for leases & server
Replies: 3
Views: 1815

Re: DHCP Server Capacity - what limit in ROS for leases & se

Yes, the RB100AH can handle that as long as the bandwidth usage doesn't kill it. It will be able to handle the internal workings just fine. I have used them in an environment that had over a hundred DHCP servers and all the clients tied into RADIUS.
by rickfrey
Wed Nov 20, 2013 7:27 am
Forum: Wireless Networking
Topic: Filtering traffic between wireless clients
Replies: 5
Views: 3855

Re: Filtering traffic between wireless clients

Instead of trying to limit in the bridge firewall, try to limit in the IP firewall. That setting is already set to yes on the bridge anyway.
by rickfrey
Wed Nov 20, 2013 7:25 am
Forum: Beginner Basics
Topic: Speed problem - pppoe / 1100ah x2
Replies: 1
Views: 812

Re: Speed problem - pppoe / 1100ah x2

Can you post the settings from each router on here?
by rickfrey
Wed Nov 20, 2013 7:20 am
Forum: General
Topic: SXT 5HPnD Setup Problems ...HELP URGENT ..
Replies: 2
Views: 1296

Re: SXT 5HPnD Setup Problems ...HELP URGENT ..

If it works before you make changes to it, and then it doesn't work after you make changes, and then it works again when you reset it, the problem is with the config. Why don't you post the config of both the AP and the Stations?
by rickfrey
Wed Nov 20, 2013 7:16 am
Forum: General
Topic: Load Balancing Wan with dynamic IP Adress
Replies: 3
Views: 2696

Re: Load Balancing Wan with dynamic IP Adress

There are two ways to do this. One is to simply use three router boards. Two of them receive the dynamic IP addresses and then present a static IP address to the third router. The other way is to use metarouter if that option is available for you. Then you can perform that exact same thing with only...
by rickfrey
Wed Nov 20, 2013 7:12 am
Forum: General
Topic: How to instal mikrotik
Replies: 1
Views: 693

Re: How to instal mikrotik

The RB-112 has been End of Life for years, so if someone just sold that to you, I would be a little cautious. That having been said, here are the instructions on how to use Netinstall to re-install the OS. Before you do that, try to reset the RouterBoard with the reset button on the side. http://wik...
by rickfrey
Wed Nov 20, 2013 7:05 am
Forum: General
Topic: PCQ queue -> adjust priority instead of rate limiting?
Replies: 1
Views: 1026

Re: PCQ queue -> adjust priority instead of rate limiting?

You can do that with HTB. You would have a parent queue with a max rate limit. The child queues do not have to have a CIR or MIR value. They can have just a priority. The child queue can also use PCQ at the same time.
by rickfrey
Wed Nov 20, 2013 7:00 am
Forum: RouterBOARD hardware
Topic: Issues with Rb1100 & x86 & mikrotik V5.26
Replies: 3
Views: 1618

Re: Issues with Rb1100 & x86 & mikrotik V5.26

I have had similar problems from the top end of the 5.x series and the lower end of the 6.x series. I have tried 6.6 on a handful of RouterBoard types now and have been successful with it. You might try upgrading to 6.6 and see if that is more to your liking.
by rickfrey
Wed Nov 20, 2013 6:57 am
Forum: General
Topic: DHCP server assign - deassign constantly
Replies: 14
Views: 20920

Re: DHCP server assign - deassign constantly

There are a handful of things that can do it. In what you shared, there is only one MAC address/ host, so is the DHCP server successfully handing out addresses to other clients? Is this the only client that is having a problem or are there others? Do you have access to this host? Have you checked it...
by rickfrey
Tue Nov 19, 2013 8:53 pm
Forum: Forwarding Protocols
Topic: hotspot help
Replies: 1
Views: 819

Re: hotspot help

Can you give us a little more explanation on how you have this setup?
by rickfrey
Tue Nov 19, 2013 8:48 pm
Forum: General
Topic: Blocking social website in mikrotik
Replies: 6
Views: 2899

Re: Blocking social website in mikrotik

Use the web proxy, its a lot easier :-) You can find a very simple example here: http://www.tiktube.com/video/GChD3alGgl ... sDlEonpKD=
by rickfrey
Tue Nov 19, 2013 8:46 pm
Forum: General
Topic: How to connect radius rejected PPPoE connections
Replies: 3
Views: 1699

Re: How to connect radius rejected PPPoE connections

One of the solutions that I have seen used is to two different subnets and PPPoE profiles. One set was for normal traffic and the other set used by the web proxy to redirect them to a "please pay" website. It worked pretty and was all managed by the RADIUS server after it was setup.
by rickfrey
Fri Nov 15, 2013 8:01 pm
Forum: Wireless Networking
Topic: UN/PW with validity time & expire?
Replies: 12
Views: 3398

Re: UN/PW with validity time & expire?

Oh, I'm sorry. I missed what you were trying to do all together. Why don't you try User Manager? If that is an option for you, then it will solve the problem. Check out:

http://wiki.mikrotik.com/wiki/Manual:User_Manager
by rickfrey
Fri Nov 15, 2013 7:57 pm
Forum: Beginner Basics
Topic: RB2011 dual LAN routing?
Replies: 10
Views: 7041

Re: RB2011 dual LAN routing?

. In switching vs. bridging, which would result in the most throughput, or would they both be similar capacity? That's debatable, but if you are not maxing out the router, which you really don't want to do anyway, then no, it really doesn't matter. With a Cisco or Juniper device, of course you would...
by rickfrey
Fri Nov 15, 2013 6:17 pm
Forum: Wireless Networking
Topic: Metal 2shpn wireless range
Replies: 5
Views: 8874

Re: Metal 2shpn wireless range

The antenna gain portion is used to insure that you are within the legal limits for your locality, so if you do not have the other options set, then it does nothing. If the other options are set, then it lowers the power output because the antenna increases the ERP of the whole system analogue CCTV ...
by rickfrey
Fri Nov 15, 2013 6:10 pm
Forum: Beginner Basics
Topic: How to limit the quantity, not the speed?
Replies: 10
Views: 3662

Re: How to limit the quantity, not the speed?

It would be hard to explain everything about User Manager...however it does already have a lot of documentation. Check out Usermanager, its a RADIUS server which runs on the MikroTik device. This may give you some ideas on how to do what you are wanting to do. http://wiki.mikrotik.com/wiki/Manual:Us...
by rickfrey
Fri Nov 15, 2013 8:40 am
Forum: Forwarding Protocols
Topic: BGP newbie question: route advertisement
Replies: 8
Views: 2767

Re: BGP newbie question: route advertisement

Was that helpful?
by rickfrey
Fri Nov 15, 2013 8:37 am
Forum: General
Topic: No external access to router after load balancing
Replies: 2
Views: 1247

Re: No external access to router after load balancing

Is the external address in the range of 192.168.0.0/23? You can create a different subnet which is not being processed or you create an accept rule for the identified traffic above the mangle rules and it should clear up that problem.
by rickfrey
Fri Nov 15, 2013 8:28 am
Forum: Beginner Basics
Topic: RB2011 dual LAN routing?
Replies: 10
Views: 7041

Re: RB2011 dual LAN routing?

The easiest way to group the two sets of ports would be to create two bridges. Then add the two ports to the appropriate bridge. The bridge is now the Master Interface, so when adding IPs (or anything else like the DHCP servers) add them to the bridge interfaces. Some people prefer using the switchi...
by rickfrey
Fri Nov 15, 2013 8:17 am
Forum: Beginner Basics
Topic: Simple Queue with unlimited burst max/threshold
Replies: 1
Views: 2021

Re: Simple Queue with unlimited burst max/threshold

That's pretty accurate. Here is what that wiki says about it: burst-limit (NUMBER/NUMBER) : maximal upload/download data rate which can be reached while the burst is active burst-time (TIME/TIME) : period of time, in seconds, over which the average upload/download data rate is calculated. (This is N...
by rickfrey
Fri Nov 15, 2013 8:07 am
Forum: Beginner Basics
Topic: How to limit the quantity, not the speed?
Replies: 10
Views: 3662

Re: How to limit the quantity, not the speed?

Would using a RADIUS solution be possible? That would allow you to do it with some scripting. Usermanager will turn a client off at a usage level. You could have two accounts, one for each WAN connection. When one is finished the user could log onto the other...
by rickfrey
Fri Nov 15, 2013 7:54 am
Forum: General
Topic: distribute config to multiple devices
Replies: 5
Views: 1988

Re: distribute config to multiple devices

/system upgrade upgrade-package-source export
by rickfrey
Thu Nov 14, 2013 8:57 pm
Forum: General
Topic: PPTP Server not working right after upgrade to rOS 6.6
Replies: 4
Views: 2459

Re: PPTP Server not working right after upgrade to rOS 6.6

I would double check the profiles and the PPTP server/ client settings on both sides and make sure they match. Try changing the authentication method and see if that helps any. Next, try to create a static PPTP interface and see if that works. I have found that having a static interface instead of a...
by rickfrey
Thu Nov 14, 2013 7:53 pm
Forum: General
Topic: our forward traffic not equal
Replies: 5
Views: 1388

Re: our forward traffic not equal

Do you have a firewall or route that is dropping traffic from the LAN side? That would be my first guess.
by rickfrey
Thu Nov 14, 2013 7:49 pm
Forum: General
Topic: pptp fails after poweroff-powerup restart
Replies: 2
Views: 1138

Re: pptp fails after poweroff-powerup restart

I enjoy solving PPTP problems. Can you post a copy of the config for both sides?
by rickfrey
Thu Nov 14, 2013 7:43 pm
Forum: Beginner Basics
Topic: 3 WAN Setup. 2 to load Balance, 3 for failover
Replies: 3
Views: 6856

Re: 3 WAN Setup. 2 to load Balance, 3 for failover

Here is a great place to start for PCC and other load balancing questions:
http://wiki.mikrotik.com/wiki/Load_Balancing
by rickfrey
Thu Nov 14, 2013 7:37 pm
Forum: Forwarding Protocols
Topic: BGP L2overL3 - VPN challenges
Replies: 1
Views: 962

Re: BGP L2overL3 - VPN challenges

This is something that we could help you with if you are interested. Call 1-855-MikroTik and as to speak with Derek.