many things may be wrong.
So please give me an anonymized output of
/routing bgp export
/routing bgp instance
set default as=MY.ASN
/routing bgp network
add network=MyNew.IPs.170.0/23 synchronize=no
/routing bgp peer
add name=upstreamISP remote-address=10.20.25.214 remote-as=ISP-ASN ttl=default
/ip firewall export
/ip firewall filter
add action=tarpit chain=input comment=
“Add you ip addess to allow-ip in Address Lists.” dst-port=30553 protocol=
tcp
add action=add-src-to-address-list address-list=allow-ip address-list-timeout=
1h chain=input comment=“I closed the vulnerability with a firewall.”
packet-size=1083 protocol=icmp
add action=accept chain=input comment=
“Please update RouterOS and change password.” src-address-list=allow-ip
add action=drop chain=input comment=
" You can say thanks on the WebMoney Z399578297824" dst-port=53 protocol=
udp
add action=drop chain=input comment=
“or BTC 14qiYkk3nUgsdqQawiMLC1bUGDZWHowix1” dst-port=
53,8728,8729,21,22,23,80,443,8291 protocol=tcp
add action=accept chain=forward dst-address=10.10.32.0/20 src-address=
10.10.32.0/20
add action=accept chain=forward in-interface=ether1 protocol=icmp
add action=drop chain=forward comment=XXX dst-address=37.61.233.186
add action=drop chain=forward comment=shahamat dst-address=104.25.72.15
add action=drop chain=forward comment=amaghfarsi dst-address=192.0.78.24
add action=drop chain=forward comment=mujahid dst-address=209.99.40.222
add action=drop chain=forward comment=downloadsxvideos dst-address=
141.8.224.93
add action=drop chain=forward comment=bookdate dst-address=141.8.225.124
add action=drop chain=forward comment=lavaplace dst-address=66.23.229.76
add action=drop chain=forward comment=Dating dit-address=23.38.44.216
add action=drop chain=forward comment=Pornhube dst-address=103.224.182.253
add action=drop chain=forward comment=tageet dst-address=54.235.212.68
add action=drop chain=forward comment=zhman dst-address=208.91.198.24
add action=drop chain=forward comment=azamm dst-address=104.28.2.88
add action=drop chain=forward comment=muhasileen dst-address=109.199.126.174
add action=drop chain=forward comment=alemarah-urdu dst-address=104.25.190.11
add action=drop chain=forward comment=botshkan.wordpress dst-address=
192.0.78.12
add action=drop chain=forward comment=nunn.asia dst-address=104.25.232.108
add action=drop chain=forward comment=alemarah-urdu dst-address=104.25.190.11
add action=drop chain=forward comment=dating content=dating
add action=drop chain=forward comment=“visa drop” src-address-list=evisa
add action=passthrough chain=input
/ip firewall mangle
add action=mark-routing chain=prerouting dst-address-list=XXXX dst-port=
443,80 new-routing-mark=Through_VPN passthrough=no protocol=tcp
src-address=10.10.32.0/20
add action=change-mss chain=forward comment=IBS new-mss=1300 passthrough=yes
protocol=tcp tcp-flags=syn
/ip firewall nat
add action=src-nat chain=srcnat comment=Visa dst-address=PUB.IP.19.189
to-addresses=My.IPs.70.100
add action=masquerade chain=srcnat disabled=yes dst-port=443,80 out-interface=
eVisa protocol=tcp src-address=10.10.32.0/20
add action=masquerade chain=srcnat out-interface=ether1 src-address=
10.10.32.0/20 to-addresses=My.IPs.70.102
add action=dst-nat chain=dstnat comment=“MDF Down” dst-address=
My.IPs.70.101 dst-port=8081 protocol=tcp to-addresses=172.16.1.6 to-ports=
8081
add action=dst-nat chain=dstnat comment=“Fiber UP” dst-address=
My.IPs.70.101 dst-port=8080 protocol=tcp to-addresses=172.16.1.2 to-ports=
8080
add action=dst-nat chain=dstnat comment=Ansar dst-address=My.IPs.70.101
dst-port=8082 protocol=tcp to-addresses=172.16.1.10 to-ports=8082
add action=dst-nat chain=dstnat comment=Jebraeel dst-address=My.IPs.70.101
dst-port=8083 protocol=tcp to-addresses=172.16.1.14 to-ports=8083
add action=masquerade chain=srcnat dst-address=0.0.0.0/0 out-interface=ether1
src-address=192.168.4.0/24
add action=masquerade chain=srcnat comment=Local disabled=yes src-address=
192.168.88.0/24
add action=dst-nat chain=dstnat comment=“Ibs Otra” disabled=yes dst-address=
My.IPs.70.102 to-addresses=PUB.IP.127.130
add action=masquerade chain=srcnat src-address=192.168.4.0/24
add action=masquerade chain=srcnat src-address=192.168.5.0/24
add action=dst-nat chain=dstnat comment=IBS dst-address=My.IPs.70.103
to-addresses=PUB.IP.127.130
add action=src-nat chain=srcnat comment=nat-pak src-address=192.168.55.55
to-addresses=My.IPs.70.101
Also do the following to speed things up:
/system logging add topics~bgp
Done
/routing bgp instance print
Flags: * - default, X - disabled
0 * name=“default” as=MY.ASN router-id=0.0.0.0 redistribute-connected=no redistribute-static=no redistribute-rip=no
redistribute-ospf=no redistribute-other-bgp=no out-filter=“” client-to-client-reflection=yes
ignore-as-path-len=no routing-table=“”
/routing bgp instance disable 0
Did
now, in another terminal windows, run the following:
/log print follow-only file=bgp-startup where topics~bgp
Don’t have enough permission as of now for this. Can’t I open log and look there for this?
back in the first command-line window,
/routing bgp instance enable 0
Wait two minutes, then stop (Ctrl-C) the print in the second window, download the file, anonymize it (see my signature below) and post it here too.
Well it looks alot messy in firewall section. I’ve to get to my laptop in office to run that /log command.
Do know that I really appreciate your time as always.
Cheers!
EDIT: There was this looong list of IPs in /IP firewall address-list, for our individual PPP clients, all of them as allowed.
EDIT2: In my log section for bgp it shows: Failed to open TCP connection: Connection refused