Community discussions

MikroTik App

Search found 3031 matches

  • 1
  • 3
  • 4
  • 5
  • 6
  • 7
  • 11
by pukkita
Thu Dec 08, 2016 10:24 pm
Forum: The User Manager
Topic: Control access to the internet based on user. Using third party AP
Replies: 3
Views: 2732

Re: Control access to the internet based on user. Using third party AP

As long as that 3d party AP supports radius, it should be possible AFAIK.
by pukkita
Thu Dec 08, 2016 10:22 pm
Forum: General
Topic: L2TP/IPSEC backup server
Replies: 1
Views: 756

Re: L2TP/IPSEC backup server

I assume clients are connecting to a FQDN, i.e. myvpnserver.mydomain.com; you can set an external DNS so that it resolves to both WAN connection addresses, or so that it fails over to the backup connection in the event of the primary one failing.
by pukkita
Sat Dec 03, 2016 4:54 pm
Forum: General
Topic: PPPoE static ip public
Replies: 3
Views: 821

Re: PPPoE static ip public

Wouldn't say having eight replies from two of the most solicit and knowledgeable users at ryohnosuke as having no luck. You asked for free help, so the least from your part would be having patience. If you aren't able to work it out with such help, and you're in a hurry because it's proffesional wor...
by pukkita
Thu Dec 01, 2016 4:01 pm
Forum: General
Topic: PPPoE static ip public
Replies: 3
Views: 821

Re: PPPoE static ip public

You'd better have a look at a Spanish forum, do you know about ryohnosuke.com?

Suerte.
by pukkita
Mon Nov 28, 2016 3:44 pm
Forum: Beginner Basics
Topic: LTE / SSL Firewall problem
Replies: 4
Views: 2088

Re: LTE / SSL Firewall problem

Keep in mind you're on a LTE wireless network... higher percentage of invalid packets are to be expected vs a FTTH one.
by pukkita
Fri Nov 25, 2016 12:57 pm
Forum: Wireless Networking
Topic: Wireless product max distance
Replies: 60
Views: 58107

Re: Wireless product max distance

You should definitely do a Fresnel study. This Calculator can be used for free.

FM environment is going to give you ethernet link issues, you'll need ferrite beads that cover 25-150MHz range for any ethernet cables involved.
bzu010.gif
by pukkita
Wed Nov 23, 2016 10:01 pm
Forum: Wireless Networking
Topic: Wireless product max distance
Replies: 60
Views: 58107

Re: Wireless product max distance

Both should pass 1Mbps easily, provided there's LOS.

Maybe even a couple LHG-5 should do.

How's the spectrum there?

Additionally, you may find Mikrotik Selection guide for PtP Links useful.

Seems you didn't include the attachment?
by pukkita
Mon Nov 21, 2016 11:11 pm
Forum: Beginner Basics
Topic: LTE / SSL Firewall problem
Replies: 4
Views: 2088

Re: LTE / SSL Firewall problem

You can check default configuration by issuing /system default-configuration print The defconf drop invalid rule doesn't look like yours, this is the output from the previous command on a Hap AC: /ip firewall { filter add chain=input action=accept protocol=icmp comment="defconf: accept ICMP&quo...
by pukkita
Thu Nov 17, 2016 2:53 pm
Forum: RouterBOARD hardware
Topic: RB3011 right for Dual WAN (Fail Over) and Gig Lan?
Replies: 6
Views: 5626

Re: RB3011 right for Dual WAN (Fail Over) and Gig Lan?

1) Will this router serve my requirements or should I be looking at the more expensive CR series? Yes, 3011 has enough power for your scenario. 2) Does Dual WAN work fine in this router with fail over and link aggregation (or whatever is the right term for it) ? Yes it does. You will be able to fai...
by pukkita
Thu Nov 17, 2016 2:46 pm
Forum: Scripting
Topic: Mikrotik backup tool
Replies: 5
Views: 2222

Re: Mikrotik backup tool

Bear in mind backups are intended for a given device (they include MACs), with a given ROS version.

To create device/ROS neutral configuration backups /export is the tool to use.
by pukkita
Thu Nov 17, 2016 2:30 pm
Forum: Wireless Networking
Topic: WDS dynamic mesh poor connectivity
Replies: 15
Views: 8688

Re: WDS dynamic mesh poor connectivity

That seems to point to interference...
by pukkita
Tue Nov 15, 2016 10:31 am
Forum: General
Topic: RB3011 + VLAN
Replies: 5
Views: 4554

Re: RB3011 + VLAN

No. Switching= L2 by hardware, Routing=L3 (software).

There's something "in the middle": MPLS (L2.5) which performs almost at L2 speed / CPU load, but done on software.
by pukkita
Sun Nov 13, 2016 11:44 am
Forum: Wireless Networking
Topic: WDS dynamic mesh poor connectivity
Replies: 15
Views: 8688

Re: WDS dynamic mesh poor connectivity

If you're logging to memory (check System > Logging), you'll lose logs on each reboot. Change (or add an action) to action=disk.
by pukkita
Thu Nov 10, 2016 3:12 pm
Forum: General
Topic: RB3011 + VLAN
Replies: 5
Views: 4554

Re: RB3011 + VLAN

When you add vlans as interfaces you're doing VLAN in software, so this uses the CPU. Is it possible to use hardware VLAN, by using the Switch chip VLAN hardware features; see http://wiki.mikrotik.com/wiki/Manual:Switch_Chip_Features#Vlan_Table However, if you want to actually route between VLANs, y...
by pukkita
Wed Nov 09, 2016 12:07 pm
Forum: General
Topic: ARP ping yes, but no ping
Replies: 7
Views: 2858

Re: ARP ping yes, but no ping

please post an export, and the output of
/ip route print
Are you sure the 4G router responds to pings (i.e. no firewall enabled)?
by pukkita
Wed Nov 09, 2016 12:04 pm
Forum: General
Topic: RB2011 unable to ping directly connected devices
Replies: 3
Views: 1153

Re: RB2011 unable to ping directly connected devices

Are you using .rsc files for backups?
by pukkita
Wed Nov 09, 2016 11:55 am
Forum: RouterBOARD hardware
Topic: wAP AC (General questions and experience)
Replies: 118
Views: 59465

Re: wAP AC (General questions and experience)

/system reset-configuration no-defaults=yes to get no config. Fine, Thank you Is there a "system reset-configuration" argument to get the CAP mode ?? You can create a .rsc file, and select it to be loaded after reset-configuration, e.g (for a dual band wAP ac): /interface wireless cap set...
by pukkita
Mon Nov 07, 2016 2:45 pm
Forum: General
Topic: RB2011 unable to ping directly connected devices
Replies: 3
Views: 1153

Re: RB2011 unable to ping directly connected devices

Please post an /ip route print
by pukkita
Mon Nov 07, 2016 1:37 pm
Forum: General
Topic: Another UPnP question
Replies: 20
Views: 4219

Re: Another UPnP question

@nescafe: did you use 6.37.1?

@rohnjohn63: try downgrading to bugfix channel, 6.36.4. Do the linux host uPNP properly creates the dynamic dst-nat on IP > Firewall > Filter in this case?
by pukkita
Sun Nov 06, 2016 11:04 am
Forum: Beginner Basics
Topic: Forward Ports for OpenVPN
Replies: 6
Views: 16682

Re: Forward Ports for OpenVPN

Can you post the firewall filter rules?
/ip firewall filter export
by pukkita
Sun Nov 06, 2016 11:02 am
Forum: General
Topic: Another UPnP question
Replies: 20
Views: 4219

Re: Another UPnP question

Which RouterOS version? Have you tried latest bugfix (6.36.4)?

Can you post /Ip address print?
by pukkita
Wed Nov 02, 2016 10:36 am
Forum: Wireless Networking
Topic: Unified AP keep loosing internet connection
Replies: 4
Views: 985

Re: Unified AP keep loosing internet connection

Have you looked at the routerboard logs?

What's the RouterOS version? What's the System > Routerboard Current/Upgrade Firmware?

What's the Routerboard model?
by pukkita
Wed Nov 02, 2016 10:33 am
Forum: RouterBOARD hardware
Topic: FTC power via dongle and AC adapter
Replies: 3
Views: 993

Re: FTC power via dongle and AC adapter

Some routerboards accept both kinds of powering, i.e. POE, and also direct DC jack plug.

FTCs have high chances to be installed outdoors, or on unconvenient places, only accepts POE powering both for convenience and to keep costs down.
by pukkita
Wed Nov 02, 2016 10:28 am
Forum: Scripting
Topic: Adding dynamic interfaces to interface list.
Replies: 8
Views: 10179

Re: Adding dynamic interfaces to interface list.

I moved this post to the Scripting forum, a more suitable place to get help regarding this.

Additionally, you can refer to the Wiki

May I ask why do you need to add the ppp interfaces to an interface list?
by pukkita
Tue Nov 01, 2016 9:47 pm
Forum: Scripting
Topic: Adding dynamic interfaces to interface list.
Replies: 8
Views: 10179

Re: Adding dynamic interfaces to interface list.

Maybe through the use of PPP profile Script On Up / On Down section?
by pukkita
Tue Nov 01, 2016 9:38 pm
Forum: RouterBOARD hardware
Topic: FTC power via dongle and AC adapter
Replies: 3
Views: 993

Re: FTC power via dongle and AC adapter

How are you powering them? Guess it comes with a POE injector like this one (RBGPOE): Captura de pantalla 2016-11-01 a la(s) 20.31.30.png You should: - plug the RBGPOE male RJ45 onto your Switch Gigabit Uplink port - Take a standalone ethernet cable, then plug one end on the RBGPOE female RJ45, and ...
by pukkita
Tue Nov 01, 2016 4:14 pm
Forum: RouterBOARD hardware
Topic: wAP AC (General questions and experience)
Replies: 118
Views: 59465

Re: wAP AC (General questions and experience)

SXT2 has a Sector antenna, using several of those place strategically (remember, there are only 3 non overlapping channels) of those maybe you could cover the entire harbor, but remember smartphones need close range. Again, don't use a macbook as a reference testing device, but an average (read: che...
by pukkita
Tue Nov 01, 2016 3:34 pm
Forum: RouterBOARD hardware
Topic: wAP AC (General questions and experience)
Replies: 118
Views: 59465

Re: wAP AC (General questions and experience)

Why do the AP's need to be a maximum of 50 meters from each other? There are not wireless communicating with each other. All the AP's in the harbour are connected via ethernet cables. wAPs are conceived to deploy in high density, tuning down power to provide coverage to nearby customers, without in...
by pukkita
Tue Nov 01, 2016 2:52 pm
Forum: RouterBOARD hardware
Topic: wAP AC (General questions and experience)
Replies: 118
Views: 59465

Re: wAP AC (General questions and experience)

wAPs are conceived as proximity APs, so you should deploy several of them, aiming at placing them not farther than 25-30m, 50m as an absolute maximum from the spot being covered. Bear in mind mobile devices like smartphones are very limited in Tx power and their internal antennas are very low gain; ...
by pukkita
Mon Oct 31, 2016 7:52 pm
Forum: RouterBOARD hardware
Topic: wAP AC (General questions and experience)
Replies: 118
Views: 59465

Re: wAP AC (General questions and experience)

How many wAPs have you deployed? What's the distance between them and the boats? hundreds of meters is not suitable for wAPs, nor is it Omni antennas either.
by pukkita
Mon Oct 31, 2016 6:49 pm
Forum: RouterBOARD hardware
Topic: wAP AC (General questions and experience)
Replies: 118
Views: 59465

Re: wAP AC (General questions and experience)

AFAIK wAP AC has omni antennas, so antenna pattern is a toroid (donut shaped): Captura de pantalla 2016-10-31 a la(s) 17.48.04.png According to its Brochure this is how it should be mounted on a pole: Captura de pantalla 2016-10-31 a la(s) 17.41.03.png Nearby metallical constructions can detract fro...
by pukkita
Mon Oct 31, 2016 1:12 pm
Forum: Wireless Networking
Topic: PTMP NV2 - Cannot see LAN Side of Station AP's
Replies: 8
Views: 1530

Re: PTMP NV2 - Cannot see LAN Side of Station AP's

Your setup seems fine, but: - A mANTBox15 has a 120º antenna, whereas you had an omni before. Can all SXT spots be covered by a 120º beam? - You mention you will be using RBSXTG-5HPacD. If this is the case, I'd set both the mANTBox15 and the SXTs in 5GHZ-Only-AC mode. - The best tuning you can do fo...
by pukkita
Mon Oct 31, 2016 12:58 pm
Forum: General
Topic: VPN Connectivity : Very Degraded Throughput
Replies: 17
Views: 6365

Re: VPN Connectivity : Very Degraded Throughput

By your tests and results, it's now clear that either ISPs or a router on the datacenter is the one throttling TCP speeds.

Do a test between two routers connected to your ISP; if speeds are fine, then by elimination is the NOC who you must complain about.
by pukkita
Mon Oct 31, 2016 12:53 pm
Forum: General
Topic: ARP ping yes, but no ping
Replies: 7
Views: 2858

Re: ARP ping yes, but no ping

Post a wiring diagram along with IP addressing of all devices relying on the mikrotik router.
by pukkita
Sun Oct 30, 2016 9:07 pm
Forum: General
Topic: ARP ping yes, but no ping
Replies: 7
Views: 2858

Re: ARP ping yes, but no ping

Yours is a rather odd setup, looks like you have config leftovers. First thing I'd do is upgrading it to latest bugfix release, 6.36.4, check System > Routerboard and check Current firmware version is the same as Upgrade Firmware, click Upgrade otherwise. Reboot. Save an export just in case, open a ...
by pukkita
Fri Oct 28, 2016 4:04 pm
Forum: Wireless Networking
Topic: PTMP NV2 - Cannot see LAN Side of Station AP's
Replies: 8
Views: 1530

Re: PTMP NV2 - Cannot see LAN Side of Station AP's

Try upgrading to latest 6.37.1, check System > Routerboard Current Firmware is same as Upgrade Firmware version afterwards.

Check all interfaces at Ip > Neighbors Discovery Interfaces are enabled.
by pukkita
Sat Oct 22, 2016 2:39 pm
Forum: Beginner Basics
Topic: How to build a network card Mikrotik
Replies: 1
Views: 600

Re: How to build a network card Mikrotik

You can check it yourself at http://wiki.mikrotik.com/wiki/Supported ... t_chipsets.

Most "classic" Intel chipsets shouldn't have issues being supported.
by pukkita
Fri Oct 14, 2016 11:57 am
Forum: Forwarding Protocols
Topic: BGP Full Table time
Replies: 11
Views: 8398

Re: BGP Full Table time

As mentioned in that same article, RouterOS v6 isn't optimized for multi-core hardware, that is coming in v7. With a multi-core optimized RouterOS, CCR1072 hardware (72 cores!) will be mostly limited by the speed the peers send the data to it, so instead of taking 1:30 to load the typical 500k table...
by pukkita
Thu Oct 06, 2016 11:04 am
Forum: RouterBOARD hardware
Topic: Routerboard WiFi antennas?
Replies: 4
Views: 1348

Re: Routerboard WiFi antennas?

Sorry, thought you were using a Basebox5 instead of the standalone RB912. You're right, you need either an mmcx to rp-sma pigtail + rp-sma antenna https://img.routerboard.com/mimg/862_l.jpg or mmcx to N pigtail and suitable antenna. https://img.routerboard.com/mimg/1135_l.jpg If you're going to asse...
by pukkita
Tue Oct 04, 2016 12:25 pm
Forum: RouterBOARD hardware
Topic: Routerboard WiFi antennas?
Replies: 4
Views: 1348

Re: Routerboard WiFi antennas?

Output amplifier will work without load, so yes a very probable chance of damaging it.

For tests and indoor, you can use regular rubberduck rp-sma antennas as found on most consumer access points.
by pukkita
Mon Oct 03, 2016 11:14 am
Forum: RouterBOARD hardware
Topic: change from rb2011-rm to RB3011 RM using capsman
Replies: 4
Views: 1766

Re: change from rb2011-rm to RB3011 RM using capsman

Both wiring schemes are valid, all capsman needs is contiguous L2 between the CAPs and the Manager. However, I'd rule out the TPlink if it's in place, connect HAP ac directly to any of the 2011 gigabit ports. AFAIK CAPsMAN interfaces don't support fastpath. There are lots of possible external factor...
by pukkita
Mon Oct 03, 2016 11:00 am
Forum: Beginner Basics
Topic: wireless tables, inteface empty
Replies: 9
Views: 2646

Re: wireless tables, inteface empty

Which masters or slaves? UniFi isn't compatible with CAPsMAN, if you meant the UniFis then you'll have to resort to ubnt forum.
by pukkita
Mon Oct 03, 2016 8:56 am
Forum: Announcements
Topic: We have a new homepage!
Replies: 29
Views: 13035

Re: We have a new homepage!

nice revamp!
by pukkita
Fri Sep 30, 2016 6:57 pm
Forum: Beginner Basics
Topic: wireless tables, inteface empty
Replies: 9
Views: 2646

Re: wireless tables, inteface empty

Either Reconnect, or connect via the "neighbors" tab in winbox (mac-telnet). You don't need to bridge WAN to any other port (nor should). In you situation, hotspot will need to be run on ether5. Imagine you add a second AP to ether4, you want to belong to the same hotspot server. In this c...
by pukkita
Fri Sep 30, 2016 6:48 pm
Forum: General
Topic: Networking
Replies: 5
Views: 1151

Re: Networking

Maybe an study about traffic distribution/patterns? i.e. which % of traffic is https, which http, which VPNs, email related (SMTP/IMAP/POP)... Thanks for your suggestion pukkita, but would you like to explain it in specific way? I don't know the kind of report you have to do; but if you're getting ...
by pukkita
Fri Sep 30, 2016 12:20 pm
Forum: Beginner Basics
Topic: wireless tables, inteface empty
Replies: 9
Views: 2646

Re: wireless tables, inteface empty

If you're speaking about a powerbox, that's to be expected, it doesn't have wireless interface. If you're using it to power the other APs, and to act as hotspot, you'll need to set the hotspot either over a bridge with all ether ports going to APs, or over the master port if ports going to APs are s...
by pukkita
Fri Sep 30, 2016 11:12 am
Forum: General
Topic: Networking
Replies: 5
Views: 1151

Re: Networking

Maybe an study about traffic distribution/patterns? i.e. which % of traffic is https, which http, which VPNs, email related (SMTP/IMAP/POP)...
by pukkita
Thu Sep 29, 2016 2:26 pm
Forum: General
Topic: ATT Microcell Port Forwarding difficulties
Replies: 15
Views: 4977

Re: ATT Microcell Port Forwarding difficulties

@changeip you cannot disable connection tracking as the router needs to source nat outgoing traffic. No connection tracking = no NAT, (and no firewall filter rules). If your Tracking settings Enabled Parameter is set to auto, setting up any Firewall filter, mangle, or nat rules will enable it. Disab...
by pukkita
Thu Sep 29, 2016 2:24 pm
Forum: General
Topic: 2WAN PCC config lines without bridge-local
Replies: 3
Views: 750

Re: 2WAN PCC config lines without bridge-local

Of course, use whatever criteria that suits your situation.
by pukkita
Thu Sep 29, 2016 2:22 pm
Forum: General
Topic: Customers PPPoe unplugging ccr1036
Replies: 8
Views: 1951

Re: Customers PPPoe unplugging ccr1036

Hello, About Firewall, the only rules that have are our management system amending the pool and reduces the queue of the default client for 10% of the contracted speed and plays it on a list created in mangle address. The other rules are of public IP NAT to private. All CCR 1036 has the same rules ...
by pukkita
Wed Sep 28, 2016 5:28 pm
Forum: General
Topic: User Authentication and IP Adresses
Replies: 2
Views: 505

Re: User Authentication and IP Adresses

If they are using the same user credentials, check IP > Hotspot > Users Profiles if the profile that user is using has a "Shared Users" number set.
by pukkita
Wed Sep 28, 2016 5:21 pm
Forum: Beginner Basics
Topic: Problem with L2TP server connect
Replies: 3
Views: 1101

Re: Problem with L2TP server connect

If you are running it along with IPSec, you need to open ports UDP 500/4500 in addition to TCP 1701 (L2TP).
by pukkita
Wed Sep 28, 2016 4:58 pm
Forum: Wireless Networking
Topic: PTMP NV2 - Cannot see LAN Side of Station AP's
Replies: 8
Views: 1530

Re: PTMP NV2 - Cannot see LAN Side of Station AP's

What's the CRS ROS AND firmware versions?

How have you set it up? all ports slaves from port 1?

Have you tried RoMON (just to isolate where the problem is)?
by pukkita
Wed Sep 28, 2016 4:47 pm
Forum: General
Topic: 2WAN PCC config lines without bridge-local
Replies: 3
Views: 750

Re: 2WAN PCC config lines without bridge-local

Either include mangle rules using all LAN involved interfaces, or IP address list, or in your specific situation you could use the new feature at Interfaces: "Interface List".
by pukkita
Wed Sep 28, 2016 4:41 pm
Forum: RouterBOARD hardware
Topic: change from rb2011-rm to RB3011 RM using capsman
Replies: 4
Views: 1766

Re: change from rb2011-rm to RB3011 RM using capsman

Have you checked through Tools > Profile if 2011's CPU is actually being hogged, and by which process?
by pukkita
Wed Sep 28, 2016 4:35 pm
Forum: Wireless Networking
Topic: Make CAPsMAN on wi-fi
Replies: 2
Views: 1587

Re: Make CAPsMAN on wi-fi

No, you can't. You need one interface for capsman to use for "CAPsMAN traffic", and another interface to use as slave for "Wireless traffic coming from CAP Stations", whereas RB951 only has one wireless interface, so your options: - Wire the 951 to the 2011. (Best practice) - Use...
by pukkita
Wed Sep 28, 2016 4:20 pm
Forum: Virtualization
Topic: CHR vs RouterOS on ESXi - CPU attraction
Replies: 3
Views: 4175

Re: CHR vs RouterOS on ESXi - CPU attraction

Most ROS v6.x algorithms aren't optimized for multi-core setups, ROS v7 will feature this. I believe CHR version will scale better in your scenario, as the KVM will make use of the multiple cores, at least to offload the virtual drivers load, etc. Additionally, by running several CHRs you can segmen...
by pukkita
Wed Sep 28, 2016 3:43 pm
Forum: General
Topic: Customers PPPoe unplugging ccr1036
Replies: 8
Views: 1951

Re: Customers PPPoe unplugging ccr1036

I guess VPLS tunnels are brought to the CCRs onto a bridge an then PPPoE server is run on top? (that's the kind of details I need). If so, have you watched if any tunnel stops its running state? The fact firewall is peaking CPU could indicate some kind of issue with it. Do you have enabled "Use...
by pukkita
Wed Sep 28, 2016 3:22 pm
Forum: Beginner Basics
Topic: DVR Authroise
Replies: 2
Views: 778

Re: DVR Authroise

You can also note the mac address of the DVR (should be on a label somewhere) and add the IP Binding entry manually.
by pukkita
Wed Sep 28, 2016 12:26 pm
Forum: Beginner Basics
Topic: DVR Authroise
Replies: 2
Views: 778

Re: DVR Authroise

1.- Go to IP > Hotspot Hosts tab. Right click on the DVR entry, and select make binding. 2.- Go to IP > Hotspot > IP Bindings tab, open the DVR entry, change its Type to bypassed. That's it. You'll have to either use an IP in the same network range, but not in the ip > pool defined for the hotspot, ...
by pukkita
Wed Sep 28, 2016 12:18 pm
Forum: General
Topic: ATT Microcell Port Forwarding difficulties
Replies: 15
Views: 4977

Re: ATT Microcell Port Forwarding difficulties

When we turned on any firewall rules on our mikrotik routed network it broke all the microcells. Esentially this started blocking fragmented packets therefore breaking the ipsec tunnels. Turning off all firewall rules fixed it. Not sure why Mikrotik starts disallowing fragmented packets once firewa...
by pukkita
Mon Sep 26, 2016 1:53 pm
Forum: Beginner Basics
Topic: RB951Ui-2HnD - Ether1 burns my devices
Replies: 10
Views: 2647

Re: RB951Ui-2HnD - Ether1 burns my devices

Mmmm... that could indicate a damaged port, if ether1 isn't the master for any other port. Have you tried another port in the mean time? It could just come damaged, or it could have been damaged by something in your installation, that's why I advised to doublecheck prior to plugging another router t...
by pukkita
Mon Sep 26, 2016 12:17 pm
Forum: Beginner Basics
Topic: RB951Ui-2HnD - Ether1 burns my devices
Replies: 10
Views: 2647

Re: RB951Ui-2HnD - Ether1 burns my devices

RB951-Ui is PoE-Out only on ether5. ether1 is PoE-In.
by pukkita
Mon Sep 26, 2016 11:30 am
Forum: General
Topic: Queue... unfair sharing?
Replies: 10
Views: 1820

Re: Queue... unfair sharing?

Yes... either by using Queue Tree or simple queues with parents.

Tip: setup your queues the way you want, and to enforce fair sharing within users a queue, set it to use PCQ queue type for that specific queue.
by pukkita
Mon Sep 26, 2016 11:13 am
Forum: Beginner Basics
Topic: RB951Ui-2HnD - Ether1 burns my devices
Replies: 10
Views: 2647

Re: RB951Ui-2HnD - Ether1 burns my devices

How are you powering it? Do you have a multimeter? if so, measure AC/DC from RB951 ethernet metallic frame to ground, could be a defective power unit/strip causing an electric shunt, there's nothing on the 951 per se that could damage another unit, less on its ether1 (PoE-in) port, unless its intern...
by pukkita
Sun Sep 25, 2016 6:54 pm
Forum: Wireless Networking
Topic: Wds network
Replies: 10
Views: 1817

Re: Wds network

You plan to build 3km PTPs between the Metals with an omni antenna? that's a no-no, and even if it worked (highly doubt that) adding WDS on top would be the last "icing" of the nightmare, as you'll be forced to use regular 802.1 for that instead of a TDMA protocol (nstreme, Nv2) for the PT...
by pukkita
Sun Sep 25, 2016 6:25 pm
Forum: General
Topic: MikroTik access problem
Replies: 3
Views: 1083

Re: MikroTik access problem

Yes, reset button is kind of tricky sometimes. Glad it helped.
by pukkita
Sun Sep 25, 2016 4:05 pm
Forum: Wireless Networking
Topic: Wds network
Replies: 10
Views: 1817

Re: Wds network

It is possible, however I wouldn't use a switch but a router (like the soon to be released Hex Poe for example) at the towers. You'll still be able to power the antennas, and additionaly you can segment the hops and deploy OSPF (cutting L2) on the routers to implement a dynamic, automatic solution; ...
by pukkita
Sun Sep 25, 2016 3:58 pm
Forum: General
Topic: MikroTik access problem
Replies: 3
Views: 1083

Re: MikroTik access problem

How are you trying to connect? Does it appear on Winbox Neighbors tab? If not, try connecting to any port but ether1 (default configuration firewalls it).

If still not appearing, this will mean you didn't reset the configuration succesfully.
by pukkita
Sun Sep 25, 2016 2:20 pm
Forum: General
Topic: Customers PPPoe unplugging ccr1036
Replies: 8
Views: 1951

Re: Customers PPPoe unplugging ccr1036

We have a third C ccr1036 hub which is also remotely isolated with the same settings and the problem does not happen in it. And same ROS and firmware? Yours isn't a simple scenario, and you haven't provided detailed information (and those you provided is confusing), but my first reaction would be c...
by pukkita
Sun Sep 25, 2016 2:16 pm
Forum: Beginner Basics
Topic: Mikrotik basic router configuration - static ip and internet acces
Replies: 1
Views: 850

Re: Mikrotik basic router configuration - static ip and internet acces

You need to set the default gateway (192.168.1.1) when configuring statically.

It works by DHCP because DHCP is setting (dinamically) your default gateway.

If a host doesn't have a default gateway, it will only be able to communicate with hosts in the same subnet, 192.168.1.0/24 in your case.
by pukkita
Sat Sep 24, 2016 1:53 pm
Forum: General
Topic: ATT Microcell Port Forwarding difficulties
Replies: 15
Views: 4977

Re: ATT Microcell Port Forwarding difficulties

1. I did not know one could log into the microcell, or do you mean the online management portal? I figured that AT&T doesn't want you to log into it, I can't find any documentation though I'd be willing to try if anyone knows how. I can have them log in to the AT&T portal. Otherwise, I was ...
by pukkita
Sat Sep 24, 2016 12:30 pm
Forum: RouterBOARD hardware
Topic: NAT Performance for 1Gbps Internet
Replies: 4
Views: 2472

Re: NAT Performance for 1Gbps Internet

As Inox said, a 3011 will do, as you won't be encapsulating all WAN traffic into PPPoE packets (which ROS do by software).
by pukkita
Sat Sep 24, 2016 12:12 pm
Forum: General
Topic: ATT Microcell Port Forwarding difficulties
Replies: 15
Views: 4977

Re: ATT Microcell Port Forwarding difficulties

Furthermore I can not even ping the microcell on the local network, which seems strange. I see the following. ping 192.168.88.108 SEQ HOST SIZE TTL TIME STATUS 0 192.168.88.108 84 64 0ms port unreachable [...] We supplied the router, but someone else did the internal networking and there is a switc...
by pukkita
Fri Sep 23, 2016 8:47 pm
Forum: RouterBOARD hardware
Topic: NAT Performance for 1Gbps Internet
Replies: 4
Views: 2472

Re: NAT Performance for 1Gbps Internet

RB3011 could come close, provided fasttrack is used (no QoS). Next comes RB1100AHx2, followed by CCR1009 which for a small price increase has twice the power. Is it possible to set your ISP ONT in "bridge" mode so that the router gets the public IP? In such case, how do you authenticate wi...
by pukkita
Thu Sep 22, 2016 1:21 pm
Forum: General
Topic: Custom bandwidth test client
Replies: 4
Views: 1482

Re: Custom bandwidth test client

Hello Kentzo,

Thanks for your syntax highlighter for ST!

Such tool will be very useful, I would write support directly.
by pukkita
Wed Sep 21, 2016 11:43 am
Forum: Beginner Basics
Topic: How to have hAP AC Lite use router's subnet
Replies: 3
Views: 1352

Re: How to have hAP AC Lite use router's subnet

To create a "dumb" AP/switch (from a reset to defaults Hap ac Lite): 1.- Make all ether interfaces slaves of ether1. 2.- Add a bridge; add ether1 and wlan1 as its ports. 3.- Add a DHCP client on top of that bridge (for management purposes) 4.- Plug any of the Hap AC ports to the main "...
by pukkita
Mon Sep 19, 2016 2:10 pm
Forum: General
Topic: Winbox on OS X 10.11 El Capitan - it's a way to fix it the easy way
Replies: 39
Views: 135000

Re: Winbox on OS X 10.11 El Capitan - it's a way to fix it the easy way

See this post And generate your own Winbox... (step by step instructions)
by pukkita
Mon Sep 19, 2016 2:00 pm
Forum: Wireless Networking
Topic: WDS dynamic mesh poor connectivity
Replies: 15
Views: 8688

Re: WDS dynamic mesh poor connectivity

Did you actually set all wds interfaces on all APs as static? Try helping them by adding a Wireless > Connect List entry for the interface.
by pukkita
Thu Sep 15, 2016 12:16 pm
Forum: General
Topic: Old router as ethernet AP taking long to assign IP's
Replies: 6
Views: 1771

Re: Old router as ethernet AP taking long to assign IP's

For this setup to work, the Dlink should transparently bridge its wlan interface to its ether ports (in the same way you bridged the mikrotik ether master port + wlan interface), and it seems this is not the case, or at least isn't that transparent. That's why wired connections on the dlink don't ha...
by pukkita
Wed Sep 14, 2016 8:19 pm
Forum: Beginner Basics
Topic: Metal 9s in Bridge Mode
Replies: 13
Views: 2148

Re: Metal 9s in Bridge Mode

Try the same calculations with frequency 5150 to check LOS... Have you simulated the link on Google Earth Pro for a preliminary check of Trees or other obstacles? InoX is right, spectrum allowing (being a barn it could be possible) with free LOS a couple humble SXTs 5N Lite ($120 MSRP the pair) you'...
by pukkita
Wed Sep 14, 2016 7:51 pm
Forum: Beginner Basics
Topic: Metal 9s in Bridge Mode
Replies: 13
Views: 2148

Re: Metal 9s in Bridge Mode

Your signal is horrible... check that last screenshot Tx/Rx CCQ, this is the definitive clue as to whether a wireless link is good or not, and should be > 90% (while passing traffic). Your budget link calculation screenshots are kind of odd, the blue (60% fresnel) and purple (first fresnel zone) are...
by pukkita
Wed Sep 14, 2016 7:35 pm
Forum: General
Topic: Videos internally cached on router
Replies: 5
Views: 874

Re: Videos internally cached on router

You can use firefox firebug extension, or chrome developer developer to check the source. If this is unconclusive, check either Ip > firewall > Connections or use Tools > Torch on your mikrotik router. Tools > Packet Sniffer packet capture along with further Wireshark analysis would be the definitiv...
by pukkita
Wed Sep 14, 2016 7:31 pm
Forum: General
Topic: Old router as ethernet AP taking long to assign IP's
Replies: 6
Views: 1771

Re: Old router as ethernet AP taking long to assign IP's

Hard to know without a configuration export, dlink config screenshots and describing your setup (see the link in my sig)
by pukkita
Wed Sep 14, 2016 7:27 pm
Forum: Beginner Basics
Topic: After reboot make loop of long signal, hhd connect to usb
Replies: 3
Views: 814

Re: After reboot make loop of long signal, hhd connect to usb

Is that USB HDD externally powered? If not, try with a powered USB hub, most probably the Hap cannot power the HDD.
by pukkita
Wed Sep 14, 2016 11:32 am
Forum: General
Topic: Old router as ethernet AP taking long to assign IP's
Replies: 6
Views: 1771

Re: Old router as ethernet AP taking long to assign IP's

My first suspicion will be wireless interference, cable problem, or L2 problems from the d-link router to the mikrotik one.

What do you mean with DHCP Auth? Are you using radius?

Posting a configuration export will help.
by pukkita
Tue Sep 13, 2016 7:32 pm
Forum: General
Topic: [BUG?] DHCP relay
Replies: 24
Views: 4674

Re: [BUG?] DHCP relay

We don't use public IPs for equipment. 10 address=89.223.20.254/24 network=89.223.20.0 interface=Loopback1 actual-interface=Loopback1 Unless you purposedly changed it for the post, that's a public IP AFAIK... No bugs that I am aware of... but noticed you set a /24 as the netmask. Try the bridge wit...
by pukkita
Tue Sep 13, 2016 7:07 pm
Forum: Beginner Basics
Topic: Metal 9s in Bridge Mode
Replies: 13
Views: 2148

Re: Metal 9s in Bridge Mode

First thing you must solve is wireless signal. What is exactly "very weak"? Have a look at the link in my sig... Post Wireless > Interface: wlan1 registration, and Status tabs from both radios. What kind of antennas, brand and models are you using, the L-com HG912YE-NF 900MHz 12dBi? Have y...
by pukkita
Tue Sep 13, 2016 6:57 pm
Forum: General
Topic: [BUG?] DHCP relay
Replies: 24
Views: 4674

Re: [BUG?] DHCP relay

To conserve address space the best tool is network design strategy, starting from not using any public addresses on the internal network. In fact even private addresses are usually assigned by (W)ISPs on NOCs for transit, using a single /32 IP address on top of a loopback interface (empty bridge) ju...
by pukkita
Tue Sep 13, 2016 6:34 pm
Forum: Beginner Basics
Topic: Begginer - Internet for 1500 houses (Gated community)
Replies: 14
Views: 3011

Re: Begginer - Internet for 1500 houses (Gated community)

Let's put it in another way. I go to a Ferrari dealer, point to an Enzo (which does more than 300km/h) and ask ¿Will I be able to step on the podium on any GT race with it? Well... it will depend. On how the car is setup for the track and actual weather, on my mechanics skills, on the rest of driver...
by pukkita
Tue Sep 13, 2016 6:24 pm
Forum: General
Topic: [BUG?] DHCP relay
Replies: 24
Views: 4674

Re: [BUG?] DHCP relay

From a view of ISP - there are many disadvantages to use PPPoE or any other form of additional encapsulation. Yes, I agree, it's very simple to admin and hard to solve problems, especcialy if they are on user side and if they are on user's router. And sometimes users use their own tunnels which hav...
by pukkita
Tue Sep 13, 2016 6:20 pm
Forum: General
Topic: [BUG?] DHCP relay
Replies: 24
Views: 4674

Re: [BUG?] DHCP relay

Using the same horizon value will prevent traffic between VLANs, isolating them from each other. If this is not what you want, do not specify the horizon value.
by pukkita
Tue Sep 13, 2016 6:06 pm
Forum: General
Topic: [BUG?] DHCP relay
Replies: 24
Views: 4674

Re: [BUG?] DHCP relay

From a management point of view, IMHO, that's a mess... too much work , too many places to manage, for little or no advantage. Common practice (not only in Mikrotik world) is deploying and using OSPF/MPLS on POPs routers. That way you can bring isolated L2 segments tunnelled inside L3 to an access c...
by pukkita
Tue Sep 13, 2016 5:56 pm
Forum: Wireless Networking
Topic: Wireless connection from super hub to hap lite
Replies: 4
Views: 786

Re: Wireless connection from super hub to hap lite

Change nat to
/ip firewall nat
add chain=srcnat action=masquerade out-interface=bridge1
That should do it.
by pukkita
Tue Sep 13, 2016 4:45 pm
Forum: Virtualization
Topic: Can I install Cloud Hosted Router (CHR) on XEN server?
Replies: 9
Views: 8780

Re: Can I install Cloud Hosted Router (CHR) on XEN server?

Captura de pantalla 2016-09-13 a la(s) 15.43.26.png
Have a look or search that forum...
by pukkita
Tue Sep 13, 2016 4:39 pm
Forum: Beginner Basics
Topic: dst-nat for security cameras
Replies: 3
Views: 963

Re: dst-nat for security cameras

You're welcome!
by pukkita
Tue Sep 13, 2016 4:38 pm
Forum: General
Topic: Videos internally cached on router
Replies: 5
Views: 874

Re: Videos internally cached on router

(p.s:i'm trying to cache videos on http based sites)
Jarda nailed it: the websites being http don't guarantee they're streamed neither from the same web server, nor by regular HTTP instead of HTTPS. (Overlooked that)
by pukkita
Tue Sep 13, 2016 4:20 pm
Forum: Beginner Basics
Topic: Begginer - Internet for 1500 houses (Gated community)
Replies: 14
Views: 3011

Re: RE: Re: Begginer - Internet for 1500 houses (Gated community)

A strange question. Most of your questions are about using other company hardware, not one mention of MikroTik. Can Mikrotik route high traffic (3000 devices) like this (every user with at least 10MB)? Indeed, but that doesn't guarantee your network will perform well, it will depend on lots of othe...
by pukkita
Tue Sep 13, 2016 4:13 pm
Forum: General
Topic: [BUG?] DHCP relay
Replies: 24
Views: 4674

Re: [BUG?] DHCP relay

Try this: - Create a bridge. - Add the VLAN interfaces as ports of it, horizon=X (same numeric value) if you want them to be isolated from each other. - Assign the ip on top of that bridge - Setup DHCP Relay on top of that bridge. I still don't get why the need of setting it up the way you want, nor...
by pukkita
Tue Sep 13, 2016 3:59 pm
Forum: Beginner Basics
Topic: broadcom tigon3 nic driver
Replies: 9
Views: 2440

Re: broadcom tigon3 nic driver

20 Mbps can be managed by almost any routerboard, depending on the programming (QoS, firewall...), even a $59 Hex . However, when choosing equipment there are more variables to consider, and this would be your main Provider Edge router, so... The bare, absolute minimum I'd use in your scenario is a ...
by pukkita
Tue Sep 13, 2016 1:40 pm
Forum: SwOS
Topic: rb260gsp cannot login
Replies: 8
Views: 4242

Re: rb260gsp cannot login

Try unplugging all cables but the one in the port you're connecting to, reboot it and try to access.

P.S. Latest SwOS is 1.17
by pukkita
Tue Sep 13, 2016 1:34 pm
Forum: General
Topic: Videos internally cached on router
Replies: 5
Views: 874

Re: Videos internally cached on router

Have a look a Mikrotik's Wiki Example for detailed information.
by pukkita
Tue Sep 13, 2016 1:26 pm
Forum: Beginner Basics
Topic: Begginer - Internet for 1500 houses (Gated community)
Replies: 14
Views: 3011

Re: Begginer - Internet for 1500 houses (Gated community)

With all my respect: best thing you can do is hiring an experienced proffesional to do so, doesn't look like a project to learn from trial and error, and you'll be actually saving money. There are lots of details a network engineer needs to know in order to design a successful, quality, performing n...
by pukkita
Tue Sep 13, 2016 1:21 pm
Forum: General
Topic: [BUG?] DHCP relay
Replies: 24
Views: 4674

Re: [BUG?] DHCP relay

You cannot assign the same IP on multiple interfaces, when you do so, you're creating a "Directly connected" route on ROS routing table, that's why ROS sends the reply out the first interface (first ocurrence of the IP).

What are you trying to achieve?
by pukkita
Tue Sep 13, 2016 1:16 pm
Forum: SwOS
Topic: rb260gsp cannot login
Replies: 8
Views: 4242

Re: rb260gsp cannot login

Try:

- Emptying browser cache
- A different browser (Firefox)
- resetting it
by pukkita
Tue Sep 13, 2016 1:11 pm
Forum: General
Topic: Bridge problem (Noob)
Replies: 2
Views: 655

Re: Bridge problem (Noob)

You can Use WinBox under OS X... see how to prepare it by yourself Once you have it running, go to Winbox Neighbors tab, you should see the router appearing there. If it doesn't: - If you're using a laptop plugged by ethernet, disable wireless on the mac. - Try plugging the laptop to a different rou...
by pukkita
Tue Sep 13, 2016 1:05 pm
Forum: Beginner Basics
Topic: dst-nat for security cameras
Replies: 3
Views: 963

Re: dst-nat for security cameras

Try adding a nat masquerade rule for traffic exiting by ether1, most probably PCs in the company network don't know how to reach 192.168.1.0/24.
by pukkita
Tue Sep 13, 2016 12:41 pm
Forum: Wireless Networking
Topic: 2.4 and 5 GHz best settings
Replies: 5
Views: 26745

Re: 2.4 and 5 GHz best settings

Why aren't you using both chains? Do the radios have dual polarity antennas attached (or two single polarity antennas??) What's the intended duty for this device? Providing WLAN indoors? First thing to analyze is spectrum, open New Terminal and issue /interface wireless spectral-history range=2412-2...
by pukkita
Tue Sep 13, 2016 12:03 pm
Forum: Beginner Basics
Topic: Connecting disconnecting of SXT lite 5
Replies: 3
Views: 1607

Re: Connecting disconnecting of SXT lite 5

Thank you for your reply, I have pointed the devices well within the 120 degree of sector. As mentioned earlier signals range between 65 to 72. Signals level "don't tell all the story"; SNR, and specially CCQ are better indicators, and all parameters must be taken into account to determin...
by pukkita
Tue Sep 13, 2016 12:25 am
Forum: Beginner Basics
Topic: Connecting disconnecting of SXT lite 5
Replies: 3
Views: 1607

Re: Connecting disconnecting of SXT lite 5

WDS isn't going to solve anything, but make performance worse. You mentioned you were using TPlinks mixed with the SXTs also... that's a no-no, as prevents you from using a wireless TDMA protocol (Nv2 or nstream), regular 802.1 doesn't scale well. If the CPEs disconnecting are walways the same ones,...
by pukkita
Tue Sep 13, 2016 12:23 am
Forum: Forwarding Protocols
Topic: MPLS with ECMP options
Replies: 1
Views: 1485

Re: MPLS with ECMP options

MPLS/TE is your ticket. It isn't a simple task, or the kind of setup you can achieve by trial and error without specific knowledge... look for MUM presentations on the matter, can be very helpful.

The key: for TE to work, you have to create two tunnels per link, one for each traffic direction.
by pukkita
Tue Sep 13, 2016 12:19 am
Forum: Wireless Networking
Topic: Provisioning of different AP by CAPSMAN
Replies: 2
Views: 970

Re: Provisioning of different AP by CAPSMAN

Make sure under System > Packages wireless-cm2 is the one enabled. Check also ROS and firmware is up to date.
by pukkita
Tue Sep 13, 2016 12:07 am
Forum: Wireless Networking
Topic: Script to syncronise router wifi ACL with wap
Replies: 3
Views: 941

Re: Script to syncronise router wifi ACL with wap

Do you mean under CAPsMAN? It is managed in the same exact way as an standalone AP; but will apply to all (if so desired) or any specific CAPsMAN managed wireless interfaces, providing a powerful "central point" for management, and some extra features only available on CAPsMAN (SSID regexp...
by pukkita
Mon Sep 12, 2016 11:56 pm
Forum: General
Topic: Help me pick devices
Replies: 13
Views: 2010

Re: Help me pick devices

There's another reason to go with a router + standalone Hap: design best practices: each routerboard will be devoted to do its specific task: the Hap will be freed from any tasks not pertaining to AP duties, thus optimizing its AP performance; do not forget you have 1Gbps of bandwidth to share and t...
by pukkita
Mon Sep 12, 2016 11:39 pm
Forum: Beginner Basics
Topic: broadcom tigon3 nic driver
Replies: 9
Views: 2440

Re: broadcom tigon3 nic driver

No minimum RAM, web-proxy proxy runs even on devices with 64Mb of RAM. Beware nowadays most web traffic is HTTPS, so web proxy for transparent caching isn't of much use. Make sure both cards aren't sharing the same IRQ in the BIOS or try a different PCI slot. RTL chipsets are "cheapo" ones...
by pukkita
Mon Sep 12, 2016 9:16 pm
Forum: Beginner Basics
Topic: broadcom tigon3 nic driver
Replies: 9
Views: 2440

Re: broadcom tigon3 nic driver

Nope, you can't add any driver or influence ROS which drivers to load.

Why not upgrade to ROS 6?
by pukkita
Mon Sep 12, 2016 9:14 pm
Forum: Scripting
Topic: show ip route x.x.x.x
Replies: 11
Views: 39579

Re: show ip route x.x.x.x

I know it's not the same, but...
/ip route check 8.8.8.8
Will show you the exit interface; RouterOS Tools > traceroute will show the path along with latencies to all involved hosts.

BGP will be Multi-Core optimized on ROS 7.
by pukkita
Sun Sep 11, 2016 3:17 pm
Forum: Wireless Networking
Topic: WDS dynamic mesh poor connectivity
Replies: 15
Views: 8688

Re: WDS dynamic mesh poor connectivity

PS: Every router has a 2nd virtual AP with a different SSID (without WDS) for connection of special clients Ruling out interference, which could make performance worse (and be the source of lost packets), what do you expect? You're using a single radio to perform these tasks: - Connect as station t...
by pukkita
Sun Sep 11, 2016 2:50 pm
Forum: General
Topic: HotSpot/Vlan/DHCP Issues
Replies: 14
Views: 3905

Re: HotSpot/Vlan/DHCP Issues

I am puzzled by your problem, have routers (my own home router for example) doing software VLANs for years, zero problems. If you're using latest ROS, latest firmware, and have netinstalled the router, and still experience the problem, generate a supout in that same moment and send it to support wit...
by pukkita
Sun Sep 11, 2016 2:44 pm
Forum: Announcements
Topic: v6.36.3 [current] is released!
Replies: 43
Views: 24515

Re: v6.36.3 [current] is released!

FastPath speeds up performance because: Fast path allows to forward packets without additional processing in the Linux kernel. It improves forwarding speeds significantly. The moment you manipulate the packets (change tcp MSS) you cannot "bypass" them any longer, so there's no other way t...
by pukkita
Sun Sep 11, 2016 2:36 pm
Forum: Beginner Basics
Topic: open website
Replies: 2
Views: 1089

Re: open website

You're welcome!
by pukkita
Sun Sep 11, 2016 2:34 pm
Forum: Announcements
Topic: Getting the most out of this forum
Replies: 21
Views: 225583

Re: Getting the most out of this forum

I'd add another point: please report back success. That makes the forum content much more useful to everyone, specially future users; if the mikrotik user community invested time helping you, the least you can do to "pay back" the community is investing a little time from your part to repo...
by pukkita
Sun Sep 11, 2016 10:46 am
Forum: Beginner Basics
Topic: Extending Wireless coverage of Cisco based network (with non Cisco equipment)
Replies: 3
Views: 986

Re: Extending Wireless coverage of Cisco based network (with non Cisco equipment)

Yes, that's perfectly possible. The same configuration referenced in my previous post will work, just plug the 2SHpN to that PC instead of a switch. You can also use QuickSet CPE as a reference. When I stated not intended for such use I meant it isn't the optimal hardware suiting the task; it's a ro...
by pukkita
Sat Sep 10, 2016 9:36 pm
Forum: General
Topic: Help me pick devices
Replies: 13
Views: 2010

Re: Help me pick devices

That's why I asked for the office dimensions, wireless on CRS devices can be considered as a plus, useful for smaller offices (in terms of space and devices). CCR1016 IntrusDave suggested could be seen as overkill, but it is actually the best price/performance ratio router in the CCR line, and a wis...
by pukkita
Sat Sep 10, 2016 9:20 pm
Forum: Beginner Basics
Topic: Extending Wireless coverage of Cisco based network (with non Cisco equipment)
Replies: 3
Views: 986

Re: Extending Wireless coverage of Cisco based network (with non Cisco equipment)

Let me start by saying a 2SHPN isn't a device intended to provide office wireless devices access on an office, let alone with an omni antenna. If you want 2x2 N, RB951Ui-2HnD or RB951G-2HnD provide top-class wireless connectivity, ideal for your scenario. If Dual band AC wireless is preferred, then ...
by pukkita
Sat Sep 10, 2016 9:01 pm
Forum: General
Topic: Help me pick devices
Replies: 13
Views: 2010

Re: Help me pick devices

To fully exploit a symmetrical 1Gbps Internet Uplink the minimum I'd use is a RB1100AHx2 or a CCR1009 router. If you go the CCR1009 route, you can "couple" it with the CRS125-24G-1S-2HnD-IN you mentioned, or a CRS109 switch+wireless (both have 2x2 N wireless) device in order to have some s...
by pukkita
Sat Sep 10, 2016 8:53 pm
Forum: Beginner Basics
Topic: open website
Replies: 2
Views: 1089

Re: open website

by pukkita
Sat Sep 10, 2016 8:50 pm
Forum: General
Topic: Unable to go over 200mbps on HEX
Replies: 17
Views: 3722

Re: Unable to go over 200mbps on HEX

From Mikrotik Wiki : Fasttracked packets bypass firewall, connection tracking, simple queues, queue tree with parent=global, ip traffic-flow(restriction removed in 6.33), ip accounting, ipsec, hotspot universal client, vrf assignment, so it is up to administrator to make sure fasttrack does not inte...
by pukkita
Sat Sep 10, 2016 8:46 pm
Forum: General
Topic: mass rollout best practice?
Replies: 4
Views: 1608

Re: mass rollout best practice?

backups aren't intended for configurations exports, they should be only used for a given device, with a given ROS version. That's why you noticed macs are cloned. See Configuration Management . To actually have a "neutral" configuration, export command from a New Terminal should be used; y...
by pukkita
Sat Sep 10, 2016 8:24 pm
Forum: General
Topic: Remove Quickset from Winbox?
Replies: 10
Views: 5247

Re: Remove Quickset from Winbox?

Quickset is a wizard-like tool for initial configuration, is it not intended to change a running config. @sleepychild: That being said, did you experience this by yourself recently? If so, please include more specifics. I just tested this (RouterOS 6.36.3, Winbox 3.5): 1.- Opened Quickset. No config...
by pukkita
Sat Sep 10, 2016 2:54 pm
Forum: Wireless Networking
Topic: Script to syncronise router wifi ACL with wap
Replies: 3
Views: 941

Re: Script to syncronise router wifi ACL with wap

Better than a script: Use CAPsMAN, set the 2011as master and the wAP as slave; Under CAPsMAN devices on the 2011 you'll have both units as virtual wireless interfaces.
by pukkita
Sat Sep 10, 2016 2:49 pm
Forum: Wireless Networking
Topic: LHG5 multi link, loosing speed somewhere.
Replies: 12
Views: 2076

Re: LHG5 multi link, loosing speed somewhere.

You don't need WDS to joing more than one station, the advice of using Ap-bridge and station-bridge remains.

Click the System > Routerboard upgrade button to upgrade LHG's firmware.
by pukkita
Sat Sep 10, 2016 2:35 pm
Forum: General
Topic: How to Limit Access to Router Services from Slave Interfaces
Replies: 16
Views: 3864

Re: How to Limit Access to Router Services from Slave Interfaces

add max-limit=14M name=upload parent=pppoe-out1 queue=default That's where ROS manages "upload" (traffic exiting by pppoe-out1). Queue tree (and QoS in general) can only control what exits the router through its interfaces; Queue Tree logic will know what's upload and what's upload by the...
by pukkita
Sat Sep 10, 2016 2:27 pm
Forum: Beginner Basics
Topic: broadcom tigon3 nic driver
Replies: 9
Views: 2440

Re: broadcom tigon3 nic driver

You cannot add third party drivers to RouterOS. Which RouterOS version are you using? According to Mikrotik Supported Hardware it seems to be supported, in fact ROS loaded the driver which leads me to believe it isn't a PCI id issue. Guess the problem is no interface is seen on interface > ethernet?...
by pukkita
Fri Sep 09, 2016 6:12 pm
Forum: Wireless Networking
Topic: LHG5 multi link, loosing speed somewhere.
Replies: 12
Views: 2076

Re: LHG5 multi link, loosing speed somewhere.

No need for WDS in your scenario. Try setting AP-bridge on APs, and station-bridge on stations.

Which frequencies and channel width are the PTPs using?

Which RouterOS AND Firmware (System > Routerboard) versions? Which Wireless package? (System > Packages, Wireless-???)
by pukkita
Fri Sep 09, 2016 6:09 pm
Forum: General
Topic: Best failover setup with two ISP links
Replies: 1
Views: 910

Re: Best failover setup with two ISP links

Have a look at this presentation by Tomas Kirnak. Presentation Slides link in the video description.
by pukkita
Fri Sep 09, 2016 6:00 pm
Forum: General
Topic: How to Limit Access to Router Services from Slave Interfaces
Replies: 16
Views: 3864

Re: How to Limit Access to Router Services from Slave Interfaces

I wan to isolate the guest network from home network Do not add guest network (wlan2) to the bridge. and isolate the clients on the guest network. - Untick Default Forward on Wireless > wlan2 Wireless tab. I also want to limit access to router services such as webfig, winbox, api etc. from guest ne...
by pukkita
Fri Sep 09, 2016 5:16 pm
Forum: Beginner Basics
Topic: How to setup RB411 as "repeater"
Replies: 5
Views: 1903

Re: How to setup RB411 as "repeater"

Connect to the 411 by using mac-winbox (neighbors tab in winbox). You'll be able to manage it even if its configuration is blank, or doesn't have any IPs set. Try wireless-mode = station-pseudobridge in Wireless > wlan1 > Wireless tab. Setup security in Wireless > Security Profiles; mode: dynamic ke...
by pukkita
Fri Sep 09, 2016 4:35 pm
Forum: General
Topic: How to Limit Access to Router Services from Slave Interfaces
Replies: 16
Views: 3864

Re: How to Limit Access to Router Services from Slave Interfaces

Ok, now, what requisites do you want to accomplish? Seems to me you have some concepts mixed up... A bridge can be considered just as another router interface. No need to set up bridge filters unless you really need to control what is forwarded between the bridge ports. If you want wlan1 and wlan2 t...
by pukkita
Fri Sep 09, 2016 4:27 pm
Forum: Beginner Basics
Topic: How to setup RB411 as "repeater"
Replies: 5
Views: 1903

Re: How to setup RB411 as "repeater"

I know, but CPE wireless mode for bridging will depend on what the AP is running , and which protocol it's using. For staters I'd try station-bridge wireless mode, but that needs the AP to be running RouterOS. Other than that, once wireless link is ready, the only needed setting would be: - Add a br...
by pukkita
Fri Sep 09, 2016 3:12 pm
Forum: Beginner Basics
Topic: How to setup RB411 as "repeater"
Replies: 5
Views: 1903

Re: How to setup RB411 as "repeater"

Your post is lacking details... which kind of remote AP? is it yours? Please describe the scenario and provide more specifics.
by pukkita
Fri Sep 09, 2016 2:56 pm
Forum: General
Topic: How to Limit Access to Router Services from Slave Interfaces
Replies: 16
Views: 3864

Re: How to Limit Access to Router Services from Slave Interfaces

Have a look at Mikrotik Packet Flow Diagrams.

This is a complex matter and without a complete export I could just speculate...
by pukkita
Fri Sep 09, 2016 2:16 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 16582

Re: 100 CPU on any mikrotik router using basic rules

How do i make mangle/firewall rules etc and route traffic between PORTS LAN1 and LAN2 without bridging them? Just masquerading them should work?And firewall/mangle/queues should work without bridging them? Let me insist on you analyzing a default configuration, you can check the script that applies...
by pukkita
Thu Sep 08, 2016 8:28 pm
Forum: Beginner Basics
Topic: Setting Up SXT sa5 ac
Replies: 3
Views: 1732

Re: Setting Up SXT sa5 ac

Doesn't matter at all. Think about the wireless links as if they were wires. The SXT SA would be the switch; the other two will be "plugged" into that switch. The key settings here are: - having the SXT SA in ap bridge wireless mode, and the rest in station-bridge mode. - "Default for...
by pukkita
Thu Sep 08, 2016 8:26 pm
Forum: Wireless Networking
Topic: RouterBoard hAP AC Slow wireless performance.
Replies: 35
Views: 16972

Re: RouterBoard hAP AC Slow wireless performance.

Which RouterOS and Firmware versions (System > Routerboard)?
by pukkita
Thu Sep 08, 2016 4:19 pm
Forum: Announcements
Topic: v6.36.3 [current] is released!
Replies: 43
Views: 24515

Re: v6.36.3 [current] is released!

Confirmed issue is happening again, RouterBOARD SXT 5HacD 2n r2 no Wireless on main toolbar; wlan devices does indead appear on interfaces: RouterBOARD SXT 5HacD 2n r2-6.36.3-bug.png Ten minutes later, going to generate a supout, notice wireless button does appear back again. Not sure if related to ...
by pukkita
Thu Sep 08, 2016 3:16 pm
Forum: Announcements
Topic: v6.36.3 [current] is released!
Replies: 43
Views: 24515

Re: v6.36.3 [current] is released!

Had some issues after upgrading a SXT Lite 5 and a SXT 5 AC Lite (checked and firmware was up to date). SXT5 Lite: wireless dissapeared on main winbox toolbar. wireless-cm2 was installed, and installation check reported fine. A reset to no defaults fixed it. SXT5 AC Lite: No wireless button on main ...
by pukkita
Thu Sep 08, 2016 2:45 pm
Forum: Wireless Networking
Topic: 4 hAP ac Lite configured for roaming - setup question and some minor issues.
Replies: 3
Views: 1725

Re: 4 hAP ac Lite configured for roaming - setup question and some minor issues.

Yes, the setup looks fine. Choosing the same SSID is also regular practice. A different issue is devices struggling with certain frequencies, but most of the time (device OS allowing) it will connect to the better signal/SNR SSID. Your scenario is ideal to setup a CapsMan deployment: you'll be able ...
by pukkita
Thu Sep 08, 2016 2:38 pm
Forum: Beginner Basics
Topic: Setting Up SXT sa5 ac
Replies: 3
Views: 1732

Re: Setting Up SXT sa5 ac

Start by upgrading all to ROS 6.36.3. You can do this by simply downloading the mipsbe ROS .npk package from mikrotik downloads to your desktop, then dragging and dropping the file on top of the winbox window; reboot once is transferred, SXT will be upgraded. Once upgraded, go to System > Routerboar...
by pukkita
Thu Sep 08, 2016 1:50 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 16582

Re: 100 CPU on any mikrotik router using basic rules

At our company iv set HAP AC as main router and have some basic firewall and mangle rules with QUEUES. Sorry, but this config is far away from a "basic" one, you seem to have touched every imaginable knob available in the OS, so the possible variables are endless, making troubleshooting a...
by pukkita
Thu Sep 08, 2016 1:30 pm
Forum: RouterBOARD hardware
Topic: RBGPOE LED Status
Replies: 5
Views: 3605

Re: RBGPOE LED Status

If it's blinking this can point in fact to either defective RBGPOE, or power supply, jack...
by pukkita
Wed Sep 07, 2016 8:27 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 16582

Re: 100 CPU on any mikrotik router using basic rules

without an export I can just speculate... you have every single detail in mind because you're troubleshooting this, but I can't see anywhere where did you ask for that detail... (the answer is no, it's a global setting). With an export, we will be able (hopefully) to see if you configured the router...
by pukkita
Wed Sep 07, 2016 8:24 pm
Forum: General
Topic: How to Limit Access to Router Services from Slave Interfaces
Replies: 16
Views: 3864

Re: How to Limit Access to Router Services from Slave Interfaces

Indeed... have you set up a proxy?

What's the ROS version? 6.36.3 fixed an ARP bug...
by pukkita
Wed Sep 07, 2016 7:57 pm
Forum: RouterBOARD hardware
Topic: RBGPOE LED Status
Replies: 5
Views: 3605

Re: RBGPOE LED Status

Not 100% sure, but on RBGPOE I think it only signals that is receiving DC power when on, shutting off the LED otherwise, never saw any blink, let alone change color (doesn't look like a RGB LED either)
by pukkita
Wed Sep 07, 2016 7:07 pm
Forum: General
Topic: 100 CPU on any mikrotik router using basic rules
Replies: 25
Views: 16582

Re: 100 CPU on any mikrotik router using basic rules

Why cant i directly bridge one LAN port with WLAN interface bypassing all ip firewall thats active on other bridge port?Why is this not possible to do on Mikrotik router? Is perfectly possible... check that "Use IP Firewall" isn't ticked on Bridge > Settings Upgrade it to ROS 6.36.3, chec...
by pukkita
Wed Sep 07, 2016 6:58 pm
Forum: Wireless Networking
Topic: How to make powerbox work with 6 antennas
Replies: 2
Views: 882

Re: How to make powerbox work with 6 antennas

You can connect to the powerboxes by mac-winbox (neighbors tab) even if they don't have any IP (plug your laptop to any ether but ether1). I assume you're powering the powerboxes by their DC input jack. To make the powerboxes plain switches: 1.- Reset both powerboxes, System > Reset Configuration, t...
by pukkita
Wed Sep 07, 2016 6:48 pm
Forum: General
Topic: Problem with hAP AC Router
Replies: 7
Views: 2451

Re: Problem with hAP AC Router

Save an export of the current config. Netinstall it with ROS 6.36.3. Once logged back into the router, check System > Routerboard Current Firmware is the same as Upgrade Firmware; press Upgrade button if isn't. Check the log for a successful upgrade message, then reboot. If problems persist, even wi...
by pukkita
Wed Sep 07, 2016 6:42 pm
Forum: General
Topic: failure on import config file
Replies: 7
Views: 2917

Re: failure on import config file

To enable RoMON: /tool romon set enabled=yes Beware some laptops may give you headaches if you try to connect using the ethernet connection while the laptop wireless interface is enabled. Try disabling wireless if you're confident RoMON is enabled, and retry. Does the router appear on main Winbox &q...
by pukkita
Wed Sep 07, 2016 3:03 pm
Forum: General
Topic: Problem with hAP AC Router
Replies: 7
Views: 2451

Re: Problem with hAP AC Router

It could be your unit is faulty, have a look at the end of the previously quoted threads.
by pukkita
Wed Sep 07, 2016 2:34 pm
Forum: General
Topic: failure on import config file
Replies: 7
Views: 2917

Re: failure on import config file

You can safely omit that last RoMON setting, default config once you enable it is to allow all interfaces anyway.
by pukkita
Wed Sep 07, 2016 2:21 pm
Forum: General
Topic: GPON ONU module no details
Replies: 9
Views: 4047

Re: GPON ONU module no details

Subquestion: I think it should work if "SFP-Modul SFP GbE-BX10-D" is on ISP site? OR? (cos I don't recieve no data) If you want to connect two sites using a fiber PTP link, you need two SFP modules, of compatible: - fiber strands - fiber mode/wavelenght - distance for it to work. The modu...
by pukkita
Wed Sep 07, 2016 1:56 pm
Forum: General
Topic: GPON ONU module no details
Replies: 9
Views: 4047

Re: GPON ONU module no details

Not sure if I got your situation right, are you trying to use two GPON modules for a PTP fiber link? GPON module should be connected to an existing FTTH network (OLT, etc) on the remote end of the fiber to work. It won't work if the fiber connects to a regular SFP module, or another GPON module on t...
by pukkita
Wed Sep 07, 2016 1:52 pm
Forum: The User Manager
Topic: What does "shared users" under "constraints" on the user details do?
Replies: 11
Views: 15611

Re: What does "shared users" under "constraints" on the user details do?

Shared users = the number of times this same user account can connect simultaneously.
by pukkita
Wed Sep 07, 2016 1:24 pm
Forum: General
Topic: Very strange behaviour after added eoip tunnel.
Replies: 2
Views: 732

Re: Very strange behaviour after added eoip tunnel.

Could be related to MTU, post exports of both routers.

Not sure if you're using the best approach, why use a EoIP inside PPTP for a LAN on an adjacent building? Isn't VLAN possible?
by pukkita
Wed Sep 07, 2016 1:19 pm
Forum: General
Topic: Sporadic connection refused on services behind nat
Replies: 13
Views: 3384

Re: Sporadic connection refused on services behind nat

Are those all the rules on ip > firewall??? (I mean, including filter, mangle...) A drop all invalid rule for all forwarded traffic not only belong to best practices, but you could use it along with logging to further diagnose this issue... Have you tried 6.36.3? Maybe this is related to *) arp - fi...
by pukkita
Wed Sep 07, 2016 1:14 pm
Forum: General
Topic: How to Limit Access to Router Services from Slave Interfaces
Replies: 16
Views: 3864

Re: How to Limit Access to Router Services from Slave Interfaces

I'm not sure about Bridge Filter because there is no information regarding IP and port at this layer. Of course there's information regarding TCP/IP at this level, I think you're looking at the OSI model backwards... I'm trying out IP Firewall. So with this turned on, will all local traffic go thro...
by pukkita
Wed Sep 07, 2016 1:11 pm
Forum: General
Topic: PCQ Instructions
Replies: 4
Views: 998

Re: PCQ Instructions

Which RouterOS version? Which Firmware version? (System > Routerboard)

Paste an export...
by pukkita
Wed Sep 07, 2016 12:43 pm
Forum: General
Topic: Sporadic connection refused on services behind nat
Replies: 13
Views: 3384

Re: Sporadic connection refused on services behind nat

FTP is an prehistoric protocol conceived even before TCP existed ('71), in an era where firewalls weren't necessary; from nowadays point of view, its design is a complete mess both in implementation, security, etc... Unless you set your FTP server to use passive connections, you'll run into problem...
by pukkita
Wed Sep 07, 2016 12:29 pm
Forum: General
Topic: PCQ Instructions
Replies: 4
Views: 998

Re: PCQ Instructions

Have a look at the Wiki in regards of PCQ.

If you want to share available BW on a fair basis, you'll need to set queues Queue tree using PCQ; if additionally you want to limit each user's maximum possible download rate, you'll need simple queues for it.
by pukkita
Wed Sep 07, 2016 12:26 pm
Forum: General
Topic: How to Limit Access to Router Services from Slave Interfaces
Replies: 16
Views: 3864

Re: How to Limit Access to Router Services from Slave Interfaces

You can either use:

specific bridge filters (Bridge > Filters tab)

or
I've been testing but apparently firewall does not distinguish the traffic from slave interfaces.
Go to Bridge , click the Settings button, and tick Use IP Firewall.
by pukkita
Wed Sep 07, 2016 11:50 am
Forum: RouterBOARD hardware
Topic: mAP lite
Replies: 58
Views: 27366

Re: mAP lite

netinstall, or flashfig.
by pukkita
Wed Sep 07, 2016 11:24 am
Forum: General
Topic: About mangle mark_packet error
Replies: 4
Views: 895

Re: About mangle mark_packet error

No, is no anything before. It's curious, another rule, located several leveles after, it's capturing this traffic in the right rate, this another rule is matching as connection-byte as 10000000-0
I said after, so in fact this is what is happening. Set the first rule to passthrough=no.
by pukkita
Wed Sep 07, 2016 11:05 am
Forum: General
Topic: Slow browsing, DNS issues
Replies: 6
Views: 6847

Re: Slow browsing, DNS issues

That rule could be read as: Drop all packets arriving at the WAN interface and traversing the router towards the LAN, unless there's a explicit dst-nat rule matching it, i.e. a port forwarding from the router to an inside host. This is an elegant and efficient way that allows for a single ip > firew...
by pukkita
Tue Sep 06, 2016 3:21 pm
Forum: General
Topic: Slow browsing, DNS issues
Replies: 6
Views: 6847

Re: Slow browsing, DNS issues

add action=accept chain=input in-interface=PPPoE-Inexio comment="Accept all connections from local network" add action=drop chain=input in-interface=PPPoE-Inexio src-address-list=NotPublic comment="Drop all packets from public internet which should not exist in public network" I...
by pukkita
Mon Sep 05, 2016 2:12 pm
Forum: Beginner Basics
Topic: NAT 2 router w/ BGP
Replies: 2
Views: 1179

Re: NAT 2 router w/ BGP

Beware OSPF/BGP could behave unexpectedly if you NAT their packets (BGP uses tcp port 179) you should exclude that port so that traffic is not "manipulated".
by pukkita
Mon Sep 05, 2016 2:03 pm
Forum: General
Topic: Switch Poe out
Replies: 1
Views: 443

Re: Switch Poe out

There aren't any Routerboard Switch with 24 PoE powered ports.

Routerboard PoE Switches are all clearly labeled in the product name, and maximum PoE-out ports available as of today on PoE out switches are 4 (ether1 is usually PoE-In).
by pukkita
Mon Sep 05, 2016 1:59 pm
Forum: Beginner Basics
Topic: [SOLVED] Change IP of router - what order to do this?
Replies: 2
Views: 3357

Re: Change IP of router - what order to do this?

Remember you can manage routerboards by mac-winbox, or RoMON (if enabled on Tools > RoMON) i.e., in pure layer 2 mode, even if the router hasn't any IPs assigned, or you change ips/routing while managing the router, your connection won't be dropped. You can also assign multiple IPs to a given interf...
by pukkita
Mon Sep 05, 2016 1:52 pm
Forum: Wireless Networking
Topic: Best practice about configure 2,4 and 5 bands as one AP
Replies: 1
Views: 876

Re: Best practice about configure 2,4 and 5 bands as one AP

It depends on application, but for a general purpose AP, same SSID is set on both wlan interfaces; it is up to the connecting client OS to choose the best band.
by pukkita
Mon Sep 05, 2016 1:50 pm
Forum: General
Topic: About mangle mark_packet error
Replies: 4
Views: 895

Re: About mangle mark_packet error

Do you have other mangle rules after that one? Bear in mind you set passthrough=yes, that implies any other mangle rules after that could change the packet marks.
by pukkita
Mon Sep 05, 2016 1:46 pm
Forum: General
Topic: Slow browsing, DNS issues
Replies: 6
Views: 6847

Re: Slow browsing, DNS issues

I assume you have set up the DNS cache on ROS and set your ISP DNS as the server to forward the queries. What ahappens if you assign your ISP DNS directly on the windows machine? If browsing is still slow, then the issue is on your ISP DNS. If not, and proper firewalling isn't set, it could be your ...
by pukkita
Mon Sep 05, 2016 1:36 pm
Forum: Beginner Basics
Topic: DHCP Server on bridged interface
Replies: 3
Views: 4583

Re: DHCP Server on bridged interface

In fact, you should set the DHCP server, and move any IPs assigned to the standalone ports to the bridge interface. Once you create a bridge, all services (DHCP, PPPoE, etc) and IP assigments should be done on top of that bridge and not to any port belonging to it; as all added ports are now in laye...
by pukkita
Mon Sep 05, 2016 1:25 pm
Forum: General
Topic: Bug with negativ tcp flags
Replies: 1
Views: 517

Re: Bug with negativ tcp flags

If using the most recent winbox version (3.5), most recent RouterOS version (either "Current" AKA "stable" branch, 6.36.2 as of today, or bugfix only, 6.34.6) still shows this problem, generate a supout.rif file (available as a main winbox toolbar button "Make supout.rif&quo...
by pukkita
Mon Sep 05, 2016 12:18 pm
Forum: General
Topic: [solved]DHCP assigning IPs out of the pool
Replies: 11
Views: 2656

Re: [solved]DHCP assigning IPs out of the pool

/ip pool add name=pool3 ranges=162.168.30.120-192.168.30.159 The typo in that pool makes the range huge, including in fact that IP in the pool: # ipcalc 162.168.30.120-192.168.30.159 deaggregate 162.168.30.120 - 192.168.30.159 162.168.30.120/29 162.168.30.128/25 162.168.31.0/24 162.168.32.0/19 162....
by pukkita
Fri Sep 02, 2016 12:19 pm
Forum: General
Topic: [solved]DHCP assigning IPs out of the pool
Replies: 11
Views: 2656

Re: DHCP assigning IPs out of the pool

post an export... maybe wrong netmask definition?
by pukkita
Fri Sep 02, 2016 10:49 am
Forum: Beginner Basics
Topic: Why no ping through bridge?
Replies: 6
Views: 1674

Re: Why no ping through bridge?

Default config firewall rules blocks access to ether1, use any other port or reconfigure the firewall on R1/R2
by pukkita
Thu Sep 01, 2016 2:18 pm
Forum: Beginner Basics
Topic: Mikrotik to replace Gargoyle routers
Replies: 4
Views: 1912

Re: Mikrotik to replace Gargoyle routers

Never mind... if you found mac-winbox useful, have a look at RoMON... there are video presentations on youtube
by pukkita
Thu Sep 01, 2016 2:06 pm
Forum: Beginner Basics
Topic: Why no ping through bridge?
Replies: 6
Views: 1674

Re: Why no ping through bridge?

Are you sure the firewall in R1 isn't blocking anything? do you see traffic reaching the bridge/ports in R2?
by pukkita
Wed Aug 31, 2016 1:08 pm
Forum: Scripting
Topic: how to get a regular ip for myisp adsl?
Replies: 9
Views: 2188

Re: how to get a regular ip for myisp adsl?

What's the 450G ROS version? firmware version?

That post is almost 10 years old... in addition, there have been lots of uPNP fixes.
by pukkita
Wed Aug 31, 2016 12:58 pm
Forum: Beginner Basics
Topic: ERROR: broken LATEST file
Replies: 15
Views: 4860

Re: ERROR: broken LATEST file

You can also upgrade it manually: First make a configuration export and store it safely. 1.- Go to System > Packages and make sure wireless-cm2 is the one enabled, and that wireless-fp is disabled. If you need to change anything, you should reboot afterwards for changes to take effect. 2.- Go to Mik...
by pukkita
Wed Aug 31, 2016 12:39 pm
Forum: Beginner Basics
Topic: Mikrotik to replace Gargoyle routers
Replies: 4
Views: 1912

Re: Mikrotik to replace Gargoyle routers

/tool mac-server mac-winbox set [ find default=yes ] disabled=yes First of all, I wouldn't disable the mac-winbox service, as that ensures you can manage the router even if there's no L3 connectivity. Turn that back to enabled, and you should see the router appearing in the "neighbors" ta...
by pukkita
Tue Aug 30, 2016 8:41 pm
Forum: RouterBOARD hardware
Topic: RBSXTG-2HnDr2 RAM Size
Replies: 5
Views: 1581

Re: RBSXTG-2HnDr2 RAM Size

Specs you posted were for v1... maybe specs were changed on v2?

Is it gigabit? license level?
by pukkita
Tue Aug 30, 2016 7:19 pm
Forum: RouterBOARD hardware
Topic: wAP AC PoE Compatibility - No Gigabit
Replies: 4
Views: 2456

Re: wAP AC PoE Compatibility - No Gigabit

Try 6.32.2, make sure to upgrade System > Routerboard Firmware afterwards and test...
by pukkita
Tue Aug 30, 2016 5:59 pm
Forum: RouterBOARD hardware
Topic: hAP lite for commercial broadband use
Replies: 5
Views: 1952

Re: hAP lite for commercial broadband use

ROS supports IGMP-Proxy, PIM and offer plenty of L2 tools to engineer a IPTV network, I doubt any serious WISP operates a "flat" L2 network.
by pukkita
Tue Aug 30, 2016 5:09 pm
Forum: RouterBOARD hardware
Topic: RB3011 internal psu?
Replies: 5
Views: 4937

Re: RB3011 internal psu?

You have all the specs at routerboard.com: the 3011 supports 10-30V DC, drawing 10W max. So in that regard you have plenty of possibilities. The simplest and safest approach you can take is the same as already done on the 1100AHx2: https://img.routerboard.com/mimg/723_l.jpg First locate PSUs whose d...
by pukkita
Tue Aug 30, 2016 4:59 pm
Forum: General
Topic: Download rate or Data Limitation on hotspot don't apply on users
Replies: 2
Views: 1382

Re: Download rate or Data Limitation on hotspot don't apply on users

Have a look at Mikrotik Documentation regarding Fasttrack : Fasttracked packets bypass firewall, connection tracking, simple queues, queue tree with parent=global, ip traffic-flow(restriction removed in 6.33), ip accounting, ipsec, hotspot universal client, vrf assignment, so it is up to administrat...
by pukkita
Tue Aug 30, 2016 4:50 pm
Forum: Beginner Basics
Topic: dhcp server does not work on an interface
Replies: 4
Views: 1369

Re: dhcp server does not work on an interface

Everything looks right, try setting ether2 as LAN and master port for ether3-4 and see if makes a difference.

What's the routerboard model? ROS version? Firmware version?
by pukkita
Tue Aug 30, 2016 3:20 pm
Forum: Wireless Networking
Topic: Ubnt vs mikrotik wireless product
Replies: 5
Views: 2953

Re: Ubnt vs mikrotik wireless product

Radio specs look pretty close, but bear in mind LBE m5 is 1 chain, while LHG is dual chain.

What's the purpose? to build a point to point link with two identical units, or to connect to an already existing AP? if so, which brand is the AP?
by pukkita
Tue Aug 30, 2016 1:36 pm
Forum: General
Topic: Block Brute Force in SMTP
Replies: 1
Views: 1407

Re: Block Brute Force in SMTP

You can use the same technique used to prevent SSH brute forcing, dynamic address lists.
by pukkita
Tue Aug 30, 2016 1:06 pm
Forum: General
Topic: Can't make RB951G-2HnD work after the removal of configuration.
Replies: 2
Views: 860

Re: Can't make RB951G-2HnD work after the removal of configuration.

Try disabling your laptop wireless interface, and keep holding the RB951 reset button until you see the 951 appear on the netinstall window. You can access the router in a "clean" state (resetted to no defaults), by using mac-winbox; once in Winbox, click the neighbors tab, you can connect...
by pukkita
Tue Aug 30, 2016 12:59 pm
Forum: Scripting
Topic: how to get a regular ip for myisp adsl?
Replies: 9
Views: 2188

Re: how to get a regular ip for myisp adsl?

Why not simply use ip > cloud?

If you have a web or other kind of server behind the mikrotik, you want to be available from outside, just create a CNAME (on your domain DNS) referring to the routerboard xxxxxxxxxx.sn.mynetname.net record.
by pukkita
Tue Aug 30, 2016 12:58 pm
Forum: RouterBOARD hardware
Topic: 911 Lite5 dual problem
Replies: 2
Views: 820

Re: 911 Lite5 dual problem

Are you keeping the reset button pressed for more than 30 seconds when waiting for it to appear on netinstall?
by pukkita
Tue Aug 30, 2016 12:53 pm
Forum: Beginner Basics
Topic: VLAN Config Confusion, Interface or Switch
Replies: 3
Views: 1130

Re: VLAN Config Confusion, Interface or Switch

Are you using VID=1 for VLAN1?. Post an export...
by pukkita
Tue Aug 30, 2016 12:40 pm
Forum: General
Topic: Linking remote network through "joining" router
Replies: 4
Views: 829

Re: Linking remote network through "joining" router

Firewall rules can refer to interfaces as input/output. In RouterOS, traffic addressed to the router itself goes to the input chain, while traffic traversing it from/to the devices in the LAN goes to the forward chain. If your goal is isolation without relying on IPs, then a better approach will be ...
by pukkita
Mon Aug 29, 2016 3:34 pm
Forum: Beginner Basics
Topic: VLAN Config Confusion, Interface or Switch
Replies: 3
Views: 1130

Re: VLAN Config Confusion, Interface or Switch

VLAN on ROS can be done:

1) By software using vlan interfaces: see Mikrotik Wiki)
2) By hardware, by using the switch chip features; this varies depending on the RB having a switch chip, and on the switch chip model features. See Switch Chip Features
by pukkita
Mon Aug 29, 2016 3:21 pm
Forum: Forwarding Protocols
Topic: Routing Wireless network
Replies: 1
Views: 1250

Re: Routing Wireless network

You need to either NAT from the mikrotik, or set routing properly between your gateway and the Mikrotik router. Option 1: add NAT srcnat masquerade rule. If your WAN interface (interface facing the internet router) is ether1-gateway, issue (replace ether1-gateway with your WAN interface): /ip firewa...
by pukkita
Mon Aug 29, 2016 3:16 pm
Forum: RouterBOARD hardware
Topic: HAP POE lite Power issues
Replies: 1
Views: 1138

Re: HAP POE lite Power issues

Guess you mean Hex POE Lite. Update ROS to 6.36.2, once upgraded check System > Routerboard, "Current" vs "Upgrade" firmware, and upgrade it if needed, Rebooting afterwards. Then try setting different POE priority values (10 for the UAC, 20 for the NBE) on their Interface > Ether...
by pukkita
Mon Aug 29, 2016 3:08 pm
Forum: General
Topic: Equipment Recommendation
Replies: 1
Views: 711

Re: Equipment Recommendation

For the first case, by order: RB3011, RB1100AHx2.

For the second: CCR1009 minimum.
by pukkita
Mon Aug 29, 2016 3:05 pm
Forum: General
Topic: Linking remote network through "joining" router
Replies: 4
Views: 829

Re: Linking remote network through "joining" router

That will be half of the equation; you should add a firewall rule on R2 to prevent H1 users to reach anything but Internet.
by pukkita
Mon Aug 29, 2016 3:03 pm
Forum: RouterBOARD hardware
Topic: HAP Lite not accessible, is it broken?
Replies: 1
Views: 1486

Re: HAP Lite not accessible, is it broken?

This looks as if the reset button is shorted, either due to the reset switch being faulty, or rusted. Try netinstalling it . Keep the reset button pressed prior to applying power, and keep it pressed for 30 secs or more, looking for the Hap lite to appears in netinstall. If it doesn't, open the Hap ...
by pukkita
Mon Aug 29, 2016 2:56 pm
Forum: Beginner Basics
Topic: Firewall high cpu on CRS112-8G-4S
Replies: 7
Views: 3327

Re: Firewall high cpu on CRS112-8G-4S

Try this: Instead of adding the ports to a bridge, set ether3-8 as slave interfaces of ether2. "Move" any IPs and services (DHCP-Server) assigned to dhcp-bridge to ether2. That way you'll be doing switching by hardware switch chip; right now you're doing it by software, which taxes the CPU.
by pukkita
Mon Aug 29, 2016 2:18 pm
Forum: RouterBOARD hardware
Topic: hAP lite for commercial broadband use
Replies: 5
Views: 1952

Re: hAP lite for commercial broadband use

Check all APs by mikrotik, all have internal antennas. I wouldn't be concerned about that, the only limiting factors: 1.- Area to provide wireless coverage. a Hap lite won't be able to provide coverage for a several story house, this is conceived for flats. 2.- CPU: Depending on bandwidth, it may or...
by pukkita
Sun Aug 28, 2016 2:34 pm
Forum: Beginner Basics
Topic: Problem in static dns
Replies: 3
Views: 1277

Re: Problem in static dns

No, You need to set two specific conditions to avoid "loops": 1.- DNS query isn't targeted at your DNS, dst-address != the mikrotik router IP and 2.- It wasn't originated by your DNS, either src-address = Your customer range, if the mikrotik IP isn't in that range, or src-address != mikrot...
by pukkita
Sat Aug 27, 2016 1:37 pm
Forum: Wireless Networking
Topic: Basebox2 + R11e-2HPnD
Replies: 8
Views: 1852

Re: Basebox2 + R11e-2HPnD

The web-proxy is a service, is run on a basebox IP. If you want wlan2 clients to go through the proxy, once the proxy is set up, you have to add a redirection to it based on source addresses (192.168.33.0/24) or in-interface (wlan2) to the ports the proxy is runing on. action=redirect is the same as...
by pukkita
Sat Aug 27, 2016 1:27 pm
Forum: Wireless Networking
Topic: RBLHG-5nD vs UBNT PowerBeam M5 400
Replies: 18
Views: 14721

Re: RBLHG-5nD vs UBNT PowerBeam M5 400

I'd upgrade the LHG to latest stable version (6.36.2) for starters. Have you done the tests switching off the other radio? (ubnt shut off while testing LHG). Wouldn't be surprised at all it the LHG is being hit by the PBE at a signal higher than -40dB, "deafening" it. Do actual TCP traffic...
by pukkita
Sat Aug 27, 2016 1:18 pm
Forum: Beginner Basics
Topic: Problem in static dns
Replies: 3
Views: 1277

Re: Problem in static dns

Maybe you're redirecting your own DNS queries back to you? Try specifying src-adress= customers blocked from facebook and dst-address != Your_DNS_Server_ip in the dstnat redirection rule.
by pukkita
Sat Aug 27, 2016 12:57 pm
Forum: Wireless Networking
Topic: Basebox2 + R11e-2HPnD
Replies: 8
Views: 1852

Re: Basebox2 + R11e-2HPnD

It will just work, as its name implies, RouterOS Routes by default. As long as you got IP addressing and routing right, it will automatically route those clients connected to wlan2. When routing, both directions should be taken into account, i.e. if routing from host A to host B, routing should be s...
by pukkita
Sat Aug 27, 2016 12:39 pm
Forum: The User Manager
Topic: Can't Install Packages In Routeros RB1100AHx2
Replies: 1
Views: 2690

Re: Can't Install Packages In Routeros RB1100AHx2

Start by updating to latest stable version, 6.36.2 as of this time. Don`t forget to go to System > Routerboard and upgrade firmware rebooting afterwards.

User manager is available for that version.
by pukkita
Sat Aug 27, 2016 12:37 pm
Forum: RouterBOARD hardware
Topic: How to choose SFP ?
Replies: 2
Views: 1143

Re: How to choose SFP ?

I have CCR 1072 as core router and I want to buy SFP for this router , how to choose the right SFP module that match the following : - LC connectors - MM -1G -less than 10M distance S-85DLC05D also I need another one that fit the following : -LC -SM -1G -about 5 KM cable distance S-31DLC20D or S-35...
by pukkita
Sat Aug 27, 2016 12:13 pm
Forum: Wireless Networking
Topic: Basebox2 + R11e-2HPnD
Replies: 8
Views: 1852

Re: Basebox2 + R11e-2HPnD

Start by removing wlan2 from the bridge, and set up (there's a wizard button) a second DHCP server over wlan2. The wizard will guide you through the correct setup. (choosing a range, assigning an ip to wlan2, and setting up the DHCP server). Same would apply for a hotspot setup if you wanted that (r...
by pukkita
Sat Aug 27, 2016 12:01 pm
Forum: Announcements
Topic: v6.37rc [release candidate] is released, only one wireless package!
Replies: 320
Views: 102556

Re: v6.37rc [release candidate] is released, only one wireless package!

To enhance those wireless values precision. They're crucial in order to tune and troubleshoot wireless links.

Remember a 3dB diference is actually a double increase or a half decrease...
by pukkita
Fri Aug 26, 2016 11:59 pm
Forum: Announcements
Topic: v6.37rc [release candidate] is released, only one wireless package!
Replies: 320
Views: 102556

Re: v6.37rc [release candidate] is released, only one wireless package!

I think I noticed that, but related to chain numbers... maybe the case as you have only one chain. Have you tested the link to see if there are actual performance differences?
by pukkita
Fri Aug 26, 2016 2:24 pm
Forum: RouterBOARD hardware
Topic: Groove 52HPn Bricked?
Replies: 6
Views: 3205

Re: Groove 52HPn Bricked?

Looks like it's damaged.

Have you opened and inspected it?
by pukkita
Fri Aug 26, 2016 2:21 pm
Forum: Announcements
Topic: v6.37rc [release candidate] is released, only one wireless package!
Replies: 320
Views: 102556

Re: v6.37rc [release candidate] is released, only one wireless package!

Have you tried resetting the wireless config and redoing it? Is your RB firmware up to date?
by pukkita
Fri Aug 26, 2016 2:12 pm
Forum: Beginner Basics
Topic: PPPoE on hAP ac for Centurylink Fiber connection
Replies: 2
Views: 1517

Re: PPPoE on hAP ac for Centurylink Fiber connection

post a complete export... open a New terminal and issue
export hide-sensitive
and paste it here.
by pukkita
Fri Aug 26, 2016 1:20 pm
Forum: Beginner Basics
Topic: Setting LAN, WIFI and Guest
Replies: 2
Views: 924

Re: Setting LAN, WIFI and Guest

You can have multiple DHCP servers as long as they're on different interfaces not belonging to the same L2 segment, no problem.
by pukkita
Fri Aug 26, 2016 12:24 pm
Forum: General
Topic: Controlling outbound interface
Replies: 4
Views: 1099

Re: Controlling outbound interface

Have a look at this Tomas Kirnak presentation there's a video at Mikrotik youtube channel . Additionaly, to create a route that "ties" the gateway through an specific interface, just add a percent sign followed by the interface: 10.10.10.10%etherX On 6.35 an experimental feature was added ...
by pukkita
Thu Aug 25, 2016 6:01 pm
Forum: Beginner Basics
Topic: Help getting WiFi to work
Replies: 5
Views: 1183

Re: Help getting WiFi to work

Most probably the problem is the LTE router doesn't know how to reach 192.168.0.0/24. First chech on Bridge > Ports if both the wlan interface and the ether interface are there; if so, disable the ether bridge port or delete it, and move the DHCP client to the ether port. Check Ip > Firewall > Nat. ...
by pukkita
Thu Aug 25, 2016 2:48 pm
Forum: RouterBOARD hardware
Topic: Super High End/Overkill Home Router Build
Replies: 13
Views: 5911

Re: Super High End/Overkill Home Router Build

You'd better devote the appropiate device to each task. You asked for overkill so money is no object, right? Router: CCR1009 Switch: CRS125 (SFP 1G) or CRS226 (SFP+ 10G) APs: As you cannot use wire, a possible solution would be using 2 Hap acs; these are double radio APs, ac triple chain, so you can...
by pukkita
Wed Aug 24, 2016 11:53 am
Forum: Beginner Basics
Topic: RBwAPG-5HacT2HnD - No connect to WLAN/AP
Replies: 2
Views: 1050

Re: RBwAPG-5HacT2HnD - No connect to WLAN/AP

Start by issuing a spectral scan to see which channels are optimal at the AP, open a New Terminal on it and issue:
/interface wireless spectral-history range=5Ghz wlan1
Leave it running for some minutes and post an screenshot.
by pukkita
Mon Aug 22, 2016 12:30 pm
Forum: Wireless Networking
Topic: Problem with defectiveness of RB911G-5HPacD
Replies: 16
Views: 3529

Re: Problem with defectiveness of RB911G-5HPacD

a Bad batch maybe?

Have you emailed pics along with defective units serial numbers to support?
by pukkita
Sat Aug 20, 2016 11:48 am
Forum: RouterBOARD hardware
Topic: Which hardware to pick?
Replies: 9
Views: 1875

Re: Which hardware to pick?

spewu, if uses DHCP then the load on the routerboard will be less than PPPoE.

A 3011 would be the absolute minimum I would pick. if it were for me, I'd use a 1100AHx2. A CCR1009 may be overkill but is an investment that will last for lots of years and you will have future speed increases covered.
by pukkita
Fri Aug 19, 2016 3:49 pm
Forum: General
Topic: Guest network can ping google.com, but not browse
Replies: 8
Views: 3388

Re: Guest network can ping google.com, but not browse

Where do you connect the laptop? To which ether interface?

Try disabling the bridge filters.

Repeat the curl test adding -v for more verbose debugging.

What IP does the laptop get?
by pukkita
Fri Aug 19, 2016 12:25 pm
Forum: RouterBOARD hardware
Topic: Which hardware to pick?
Replies: 9
Views: 1875

Re: Which hardware to pick?

All mikrotik devices supports VLANs.

How does the zyxel router get your public IP, via DHCP, or PPPoE?

RB260 is a switch.
Hex is undersized for 1GBps.
by pukkita
Fri Aug 19, 2016 12:20 pm
Forum: Wireless Networking
Topic: Issue with RB-911G-5PHnD
Replies: 5
Views: 1300

Re: Issue with RB-911G-5PHnD

Try using the 5900 frequency, note the spectral history black area, that means is "empty". Does it get better afterwards?
by pukkita
Thu Aug 18, 2016 1:55 pm
Forum: Wireless Networking
Topic: Issue with RB-911G-5PHnD
Replies: 5
Views: 1300

Re: Issue with RB-911G-5PHnD

Seems you're having interference problems, so the first to be ironed out is wireless. Start by issuing a spectral scan to see which channels are optimal at the AP, open a New Terminal on it and issue: /interface wireless spectral-history range=5Ghz wlan1 Leave it running for some minutes and post an...
by pukkita
Thu Aug 18, 2016 1:51 pm
Forum: General
Topic: Guest network can ping google.com, but not browse
Replies: 8
Views: 3388

Re: Guest network can ping google.com, but not browse

Post the full export...

Do you have the webproxy or http redirection enabled?
by pukkita
Thu Aug 18, 2016 1:40 pm
Forum: RouterBOARD hardware
Topic: wAP AC (General questions and experience)
Replies: 118
Views: 59465

Re: wAP AC (General questions and experience)

For those with 2.4GHz issues:
What's new in 6.36 (2016-Jul-20 14:09):
*) wap-ac - fixed performance problems with 2.4GHz wireless (additional reboot after upgrade required);
by pukkita
Sat Jul 16, 2016 12:12 pm
Forum: Wireless Networking
Topic: Apple devices won't connect
Replies: 60
Views: 61331

Re: Apple devices won't connect

Using lots of Apple devices myself, also on hospitality setups more than 50% are Apple devices, never had a problem. If STP or RSTP is giving you "problems", is because you probably have some kind of either a real network loop, or a "logical" network loop, e.g. you used backups (...
by pukkita
Sat Jul 16, 2016 12:01 pm
Forum: General
Topic: CLI sessions are unuseable
Replies: 6
Views: 1029

Re: CLI sessions are unuseable

Do a packet capture and use Wireshark...
by pukkita
Sat Jul 16, 2016 11:56 am
Forum: RouterBOARD hardware
Topic: communication via sfp + with ccr1036 sfp
Replies: 2
Views: 1108

Re: communication via sfp + with ccr1036 sfp

Does the problem persist after upgrading to the latest stable or bugfix RouterOS versions, along with upgrading firmware (3.27 at the moment)? What's new in 6.34.3 (2016-Mar-09 10:03): *) ccr1072 - fix traffic halting when sfp+ 1-4 or 5-8 where all disabled; What's new in 6.33 (2015-Nov-06 12:49): *...
by pukkita
Wed Jul 13, 2016 3:06 pm
Forum: General
Topic: hotspot users outside of mikrotik
Replies: 2
Views: 839

Re: hotspot users outside of mikrotik

Are you using fasttrack? if so, disable it, fasttrack bypasses simple queues. See Mikrotik Wiki
by pukkita
Wed Jul 13, 2016 3:04 pm
Forum: General
Topic: VLAN Interface not reachable (Ping)
Replies: 1
Views: 1556

Re: VLAN Interface not reachable (Ping)

Can you ping it inside the router? Are you sure no firewall filter/nat rule is acting upon? 
by pukkita
Wed Jul 13, 2016 2:54 pm
Forum: General
Topic: CLI sessions are unuseable
Replies: 6
Views: 1029

Re: CLI sessions are unuseable

This usually indicates some sort of Layer 2/3 problem like packet loss, ip address conflict, etc.

How are you accesing the router? What devices or connections  are between you and the router being managed? Is there anything relevant in the logs?
by pukkita
Wed Jul 13, 2016 2:47 pm
Forum: General
Topic: HotSpot/Vlan/DHCP Issues
Replies: 14
Views: 3905

Re: HotSpot/Vlan/DHCP Issues

Looks to me you edited the export, is this the case? When I advised to torch or do a capture for later analysis with wireshark I referred to the mikrotik router, not the users PC. Regarding horizon, do you add vlans to that bridge? try this: if you don't need that bridge, put the service on top of t...
by pukkita
Wed Jul 13, 2016 2:21 pm
Forum: Wireless Networking
Topic: Error with wifi connection
Replies: 4
Views: 2159

Re: Error with wifi connection

Complete spectrum saturation, there's little you can do unless  the rest of APs there are under your control.

What's the intended duty for this AP? How's the scenario?
by pukkita
Sun Jul 10, 2016 1:46 pm
Forum: General
Topic: core router configuration copying
Replies: 2
Views: 1268

Re: core router configuration copying

Just export the configuration using /export file=CCR1009 That will create a CCR1009.rsc file which you can transfer (drag and drop from winbox works fine) to your PC, then to the new CCR1036. Once the file is on the CCR1036, you can import it from a "blank" configuration state: /system res...
by pukkita
Sun Jul 10, 2016 12:50 pm
Forum: General
Topic: HotSpot/Vlan/DHCP Issues
Replies: 14
Views: 3905

Re: HotSpot/Vlan/DHCP Issues

As long as the ip, dhcp server and hotspot server are all set on either the same vlan or bridge interface it shouldn't make no difference vs using a bridge with just the vlan por added. BTW, why horizon=1? I have never experienced the problems with vlan interfaces you mention. What is the CCR firmwa...
by pukkita
Sat Jul 09, 2016 9:00 pm
Forum: General
Topic: How to choose the interface of an pptp client?tks!
Replies: 1
Views: 541

Re: How to choose the interface of an pptp client?tks!

PPTP client will connect to the PPTP server by using regular routing table.

Add a static route to your PPTP server through the desired gateway and it will be good to go.
  • 1
  • 3
  • 4
  • 5
  • 6
  • 7
  • 11