Connection problem on RB750G

Hi,

With the configuration in the attached PPT file, NAT and DHCP functions are configured.
In my office test, there was no problem, but when this box was installed to the real site(2*Wi-Fi APs) and worked during short time, I could not access to this box(Ping, Telnet, Web, Winbox).
However, 2 APs which were on the same “bridge1” could be accessed.

*RouterOS ver. is 5.1

  • Eth1 for Internet, Eth2~5 for internal network

  • 1st and 2nd port are on the same “bridge1”.

  • 3 VLANs for multiple SSID are on the same “bridge1”, and each VLAN is handling each SSID.

  • AP’s mgmt VLAN(mgmt SSID) is 1 and their IP addresses are on the same public IP subnet.

  • NAT public IP is configured on “bridge1” interface, and each VLAN has different IP address subnet for each SSID.

  • NAT configuration is “Masquerading”.

No problem in Routing, No problem in DHCP assignment, No problem in address translation(NAT)

However, when many clients associated to APs created many sessions(NAT session), I could not access to RB750G box.

I know NAT(masquerading) opens source port of public IP address above 1024.
So, I don’t understand why mgmt services(telnet, web, Winbox(8921)) were not opened.

Any solution? or any misconfiguration?
Desc.jpg

why post PPT file? I don’t use slideshow software, can’t open this.